SlideShare a Scribd company logo
4 Part Assignment
1.
Write
a 1- to 2-page high-level executive summary of the legal and
regulatory compliance requirements for Health Coverage
Associates executives. The summary should provide
2.
Write
a 1- to 2-page concise outline of the contents of the security
management plan.
3.
Compile
a 1-to 2-page list of at least 10 of the CIS controls that provide
key alignment with the administrative (policies), physical
(secured facilities), and technical safeguards required under
HIPAA to protect against the attacks listed above. Include
corresponding NIST controls mapped to the selected CIS
controls.
4.
Write
a 1- to 2-page concise outline of the contents of the security
management plan.
Assignment Content
Your company is a security service contractor that consults with
businesses in the U.S. that require assistance in complying with
HIPAA. You advertise a proven track record in providing
information program security management, information security
governance programs, risk management programs, and
regulatory and compliance recommendations. You identify
vulnerabilities, threats, and risks for clients with the end goal of
securing and protecting applications and systems within their
organization.
Your client is Health Coverage Associates, a health insurance
exchange in California and a healthcare covered entity. The
Patient Protection and Affordable Care Act (ACA) enables
individuals and small businesses to purchase health insurance at
federally subsidized rates. In the past 6 months, they have
experienced:
A malware attack (i.e., SQL Injection) on a critical software
application that processed and stored client protected health
information (PHI) that allowed access to PHI stored within the
database
An internal mistake by an employee that allowed PHI to be
emailed to the wrong recipient who was not authorized to have
access to the PHI
An unauthorized access to client accounts through cracking of
weak passwords via the company’s website login
Health Coverage Associates would like you to
develop
a security management plan that would address the required
safeguards to protect the confidentiality, integrity, and
availability of sensitive data from the attacks listed above and
protect their assets from the vulnerabilities that allowed the
attacks to occur.
Write
a 1- to 2-page high-level executive summary of the legal and
regulatory compliance requirements for Health Coverage
Associates executives. The summary should provide
Accurate information on the HIPAA requirements for securing
PHI
FISMA and HIPAA requirements for a security plan
Scope of the work you will perform to meet the Health
Coverage Associates’ requests
Compile
a 1-to 2-page list of at least 10 of the CIS controls that provide
key alignment with the administrative (policies), physical
(secured facilities), and technical safeguards required under
HIPAA to protect against the attacks listed above. Include
corresponding NIST controls mapped to the selected CIS
controls.
Write
a 1- to 2-page concise outline of the contents of the security
management plan. Include
Policies Health Coverage Associates will need to manage,
protect, and provide access to PHI
The recommended risk management framework Health Coverage
Associates should adopt
Key elements Health Coverage Associates should include in its
plan of actions and milestones
Cite
all sources using APA guidelines.
Submit
your assignment.

More Related Content

Similar to 4 Part Assignment1.Write a 1- to 2-page high-level executive.docx

Technology Assessment and Government Regulations You are the.docx
Technology Assessment and Government Regulations You are the.docxTechnology Assessment and Government Regulations You are the.docx
Technology Assessment and Government Regulations You are the.docx
rudybinks
 
Assignment 1 Technology Assessment and Government RegulationsYo.docx
Assignment 1 Technology Assessment and Government RegulationsYo.docxAssignment 1 Technology Assessment and Government RegulationsYo.docx
Assignment 1 Technology Assessment and Government RegulationsYo.docx
trippettjettie
 
The Rookie Chief Information Security OfficerThis assignment consi.docx
The Rookie Chief Information Security OfficerThis assignment consi.docxThe Rookie Chief Information Security OfficerThis assignment consi.docx
The Rookie Chief Information Security OfficerThis assignment consi.docx
Komlin1
 
Assignment 1 Technology Assessment and Government Regulations
Assignment 1 Technology Assessment and Government RegulationsAssignment 1 Technology Assessment and Government Regulations
Assignment 1 Technology Assessment and Government Regulations
desteinbrook
 
Week 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docx
Week 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docxWeek 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docx
Week 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docx
nealralix138661
 
Week 3 Assignment 1 Submission Untitled Document Assignment .docx
Week 3 Assignment 1 Submission Untitled Document Assignment .docxWeek 3 Assignment 1 Submission Untitled Document Assignment .docx
Week 3 Assignment 1 Submission Untitled Document Assignment .docx
nealralix138661
 
Assignment 1 Technology Assessment and Government RegulationsWeek.docx
Assignment 1 Technology Assessment and Government RegulationsWeek.docxAssignment 1 Technology Assessment and Government RegulationsWeek.docx
Assignment 1 Technology Assessment and Government RegulationsWeek.docx
BenitoSumpter862
 
The Rookie Chief Information Security OfficerDue Week 10 and w.docx
The Rookie Chief Information Security OfficerDue Week 10 and w.docxThe Rookie Chief Information Security OfficerDue Week 10 and w.docx
The Rookie Chief Information Security OfficerDue Week 10 and w.docx
teresehearn
 
Term Paper The Rookie Chief Information Security OfficerThis assi.docx
Term Paper The Rookie Chief Information Security OfficerThis assi.docxTerm Paper The Rookie Chief Information Security OfficerThis assi.docx
Term Paper The Rookie Chief Information Security OfficerThis assi.docx
jacqueliner9
 
ISE 620 Final Project Guidelines and Rubric Overview .docx
ISE 620 Final Project Guidelines and Rubric  Overview .docxISE 620 Final Project Guidelines and Rubric  Overview .docx
ISE 620 Final Project Guidelines and Rubric Overview .docx
christiandean12115
 
The Rookie Chief Information Security OfficerThis assignment c.docx
The Rookie Chief Information Security OfficerThis assignment c.docxThe Rookie Chief Information Security OfficerThis assignment c.docx
The Rookie Chief Information Security OfficerThis assignment c.docx
oreo10
 
Organization and Management of a Health Care Facility.docx
Organization and Management of a Health Care Facility.docxOrganization and Management of a Health Care Facility.docx
Organization and Management of a Health Care Facility.docx
stirlingvwriters
 
You are the senior manager of a large healthcare organization. T.docx
You are the senior manager of a large healthcare organization. T.docxYou are the senior manager of a large healthcare organization. T.docx
You are the senior manager of a large healthcare organization. T.docx
laquandabignell
 
The Technical Report and Executive SummaryTechnical report Your.docx
The Technical Report and Executive SummaryTechnical report Your.docxThe Technical Report and Executive SummaryTechnical report Your.docx
The Technical Report and Executive SummaryTechnical report Your.docx
gloriab9
 
CMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leasCMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leas
WilheminaRossi174
 
CYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docx
CYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docxCYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docx
CYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docx
theodorelove43763
 
Final Project Presentation requirementSelect your final project .docx
Final Project Presentation requirementSelect your final project .docxFinal Project Presentation requirementSelect your final project .docx
Final Project Presentation requirementSelect your final project .docx
lmelaine
 

Similar to 4 Part Assignment1.Write a 1- to 2-page high-level executive.docx (20)

Technology Assessment and Government Regulations You are the.docx
Technology Assessment and Government Regulations You are the.docxTechnology Assessment and Government Regulations You are the.docx
Technology Assessment and Government Regulations You are the.docx
 
Assignment 1 Technology Assessment and Government RegulationsYo.docx
Assignment 1 Technology Assessment and Government RegulationsYo.docxAssignment 1 Technology Assessment and Government RegulationsYo.docx
Assignment 1 Technology Assessment and Government RegulationsYo.docx
 
The Rookie Chief Information Security OfficerThis assignment consi.docx
The Rookie Chief Information Security OfficerThis assignment consi.docxThe Rookie Chief Information Security OfficerThis assignment consi.docx
The Rookie Chief Information Security OfficerThis assignment consi.docx
 
Assignment 1 Technology Assessment and Government Regulations
Assignment 1 Technology Assessment and Government RegulationsAssignment 1 Technology Assessment and Government Regulations
Assignment 1 Technology Assessment and Government Regulations
 
Week 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docx
Week 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docxWeek 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docx
Week 3 Assignment 1 SubmissionUntitled DocumentAssignment 1 Tec.docx
 
Week 3 Assignment 1 Submission Untitled Document Assignment .docx
Week 3 Assignment 1 Submission Untitled Document Assignment .docxWeek 3 Assignment 1 Submission Untitled Document Assignment .docx
Week 3 Assignment 1 Submission Untitled Document Assignment .docx
 
Assignment 1 Technology Assessment and Government RegulationsWeek.docx
Assignment 1 Technology Assessment and Government RegulationsWeek.docxAssignment 1 Technology Assessment and Government RegulationsWeek.docx
Assignment 1 Technology Assessment and Government RegulationsWeek.docx
 
The Rookie Chief Information Security OfficerDue Week 10 and w.docx
The Rookie Chief Information Security OfficerDue Week 10 and w.docxThe Rookie Chief Information Security OfficerDue Week 10 and w.docx
The Rookie Chief Information Security OfficerDue Week 10 and w.docx
 
Term Paper The Rookie Chief Information Security OfficerThis assi.docx
Term Paper The Rookie Chief Information Security OfficerThis assi.docxTerm Paper The Rookie Chief Information Security OfficerThis assi.docx
Term Paper The Rookie Chief Information Security OfficerThis assi.docx
 
ISE 620 Final Project Guidelines and Rubric Overview .docx
ISE 620 Final Project Guidelines and Rubric  Overview .docxISE 620 Final Project Guidelines and Rubric  Overview .docx
ISE 620 Final Project Guidelines and Rubric Overview .docx
 
Dental Compliance for Dentists and Business Associates
Dental Compliance for Dentists and Business AssociatesDental Compliance for Dentists and Business Associates
Dental Compliance for Dentists and Business Associates
 
The Rookie Chief Information Security OfficerThis assignment c.docx
The Rookie Chief Information Security OfficerThis assignment c.docxThe Rookie Chief Information Security OfficerThis assignment c.docx
The Rookie Chief Information Security OfficerThis assignment c.docx
 
HealthCare Compliance - HIPAA & HITRUST
HealthCare Compliance - HIPAA & HITRUSTHealthCare Compliance - HIPAA & HITRUST
HealthCare Compliance - HIPAA & HITRUST
 
Organization and Management of a Health Care Facility.docx
Organization and Management of a Health Care Facility.docxOrganization and Management of a Health Care Facility.docx
Organization and Management of a Health Care Facility.docx
 
You are the senior manager of a large healthcare organization. T.docx
You are the senior manager of a large healthcare organization. T.docxYou are the senior manager of a large healthcare organization. T.docx
You are the senior manager of a large healthcare organization. T.docx
 
The Technical Report and Executive SummaryTechnical report Your.docx
The Technical Report and Executive SummaryTechnical report Your.docxThe Technical Report and Executive SummaryTechnical report Your.docx
The Technical Report and Executive SummaryTechnical report Your.docx
 
CMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leasCMIS 320 Project 1 Write a justification paper, of at leas
CMIS 320 Project 1 Write a justification paper, of at leas
 
CYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docx
CYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docxCYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docx
CYBERLAWCompetency 423.1.5 Regulatory Requirements and Stan.docx
 
Final Project Presentation requirementSelect your final project .docx
Final Project Presentation requirementSelect your final project .docxFinal Project Presentation requirementSelect your final project .docx
Final Project Presentation requirementSelect your final project .docx
 
CST 610 RANK Remember Education--cst610rank.com
CST 610 RANK Remember Education--cst610rank.comCST 610 RANK Remember Education--cst610rank.com
CST 610 RANK Remember Education--cst610rank.com
 

More from BHANU281672

652020 Originality Reporthttpsblackboard.nec.eduweba.docx
652020 Originality Reporthttpsblackboard.nec.eduweba.docx652020 Originality Reporthttpsblackboard.nec.eduweba.docx
652020 Originality Reporthttpsblackboard.nec.eduweba.docx
BHANU281672
 
60CHAPTER THREEconsistent with the so-called performative app.docx
60CHAPTER THREEconsistent with the so-called performative app.docx60CHAPTER THREEconsistent with the so-called performative app.docx
60CHAPTER THREEconsistent with the so-called performative app.docx
BHANU281672
 
6 peer responses due in 24 hours Each set of 2 responses wil.docx
6 peer responses due in 24 hours Each set of 2 responses wil.docx6 peer responses due in 24 hours Each set of 2 responses wil.docx
6 peer responses due in 24 hours Each set of 2 responses wil.docx
BHANU281672
 
612020 Originality Reporthttpsucumberlands.blackboard.docx
612020 Originality Reporthttpsucumberlands.blackboard.docx612020 Originality Reporthttpsucumberlands.blackboard.docx
612020 Originality Reporthttpsucumberlands.blackboard.docx
BHANU281672
 
61520, 256 PMGlobal Innovation and Intellectual Property.docx
61520, 256 PMGlobal Innovation and Intellectual Property.docx61520, 256 PMGlobal Innovation and Intellectual Property.docx
61520, 256 PMGlobal Innovation and Intellectual Property.docx
BHANU281672
 
6 Developing Strategic and Operational PlansIngram Publish.docx
6 Developing Strategic and Operational PlansIngram Publish.docx6 Developing Strategic and Operational PlansIngram Publish.docx
6 Developing Strategic and Operational PlansIngram Publish.docx
BHANU281672
 
6212020 Originality Reporthttpsucumberlands.blackboar.docx
6212020 Originality Reporthttpsucumberlands.blackboar.docx6212020 Originality Reporthttpsucumberlands.blackboar.docx
6212020 Originality Reporthttpsucumberlands.blackboar.docx
BHANU281672
 
5An American in IndiaWhat is my inheritance To what am .docx
5An American in IndiaWhat is my inheritance To what am .docx5An American in IndiaWhat is my inheritance To what am .docx
5An American in IndiaWhat is my inheritance To what am .docx
BHANU281672
 
6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx
6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx
6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx
BHANU281672
 
6 peer responses due in 18 hours Each set of 2 responses will ha.docx
6 peer responses due in 18 hours Each set of 2 responses will ha.docx6 peer responses due in 18 hours Each set of 2 responses will ha.docx
6 peer responses due in 18 hours Each set of 2 responses will ha.docx
BHANU281672
 

More from BHANU281672 (20)

652020 Originality Reporthttpsblackboard.nec.eduweba.docx
652020 Originality Reporthttpsblackboard.nec.eduweba.docx652020 Originality Reporthttpsblackboard.nec.eduweba.docx
652020 Originality Reporthttpsblackboard.nec.eduweba.docx
 
64c51786.docx
64c51786.docx64c51786.docx
64c51786.docx
 
61Identify the case study you selected. Explain whether the.docx
61Identify the case study you selected. Explain whether the.docx61Identify the case study you selected. Explain whether the.docx
61Identify the case study you selected. Explain whether the.docx
 
60CHAPTER THREEconsistent with the so-called performative app.docx
60CHAPTER THREEconsistent with the so-called performative app.docx60CHAPTER THREEconsistent with the so-called performative app.docx
60CHAPTER THREEconsistent with the so-called performative app.docx
 
6 pagesThe following sections are in the final consulting .docx
6 pagesThe following sections are in the final consulting .docx6 pagesThe following sections are in the final consulting .docx
6 pagesThe following sections are in the final consulting .docx
 
600 words needed1. What do we mean by the New Public Administr.docx
600 words needed1. What do we mean by the New Public Administr.docx600 words needed1. What do we mean by the New Public Administr.docx
600 words needed1. What do we mean by the New Public Administr.docx
 
6 peer responses due in 24 hours Each set of 2 responses wil.docx
6 peer responses due in 24 hours Each set of 2 responses wil.docx6 peer responses due in 24 hours Each set of 2 responses wil.docx
6 peer responses due in 24 hours Each set of 2 responses wil.docx
 
6 page paper onWhat is second language acquisition and why is .docx
6 page paper onWhat is second language acquisition and why is .docx6 page paper onWhat is second language acquisition and why is .docx
6 page paper onWhat is second language acquisition and why is .docx
 
600 Words1) Specify some of the ways in which human resource m.docx
600 Words1) Specify some of the ways in which human resource m.docx600 Words1) Specify some of the ways in which human resource m.docx
600 Words1) Specify some of the ways in which human resource m.docx
 
612020 Originality Reporthttpsucumberlands.blackboard.docx
612020 Originality Reporthttpsucumberlands.blackboard.docx612020 Originality Reporthttpsucumberlands.blackboard.docx
612020 Originality Reporthttpsucumberlands.blackboard.docx
 
61520, 256 PMGlobal Innovation and Intellectual Property.docx
61520, 256 PMGlobal Innovation and Intellectual Property.docx61520, 256 PMGlobal Innovation and Intellectual Property.docx
61520, 256 PMGlobal Innovation and Intellectual Property.docx
 
6 Developing Strategic and Operational PlansIngram Publish.docx
6 Developing Strategic and Operational PlansIngram Publish.docx6 Developing Strategic and Operational PlansIngram Publish.docx
6 Developing Strategic and Operational PlansIngram Publish.docx
 
6212020 Originality Reporthttpsucumberlands.blackboar.docx
6212020 Originality Reporthttpsucumberlands.blackboar.docx6212020 Originality Reporthttpsucumberlands.blackboar.docx
6212020 Originality Reporthttpsucumberlands.blackboar.docx
 
617httpsdrive.google.comdriveu0mobilefolders1e8xYisfDL.docx
617httpsdrive.google.comdriveu0mobilefolders1e8xYisfDL.docx617httpsdrive.google.comdriveu0mobilefolders1e8xYisfDL.docx
617httpsdrive.google.comdriveu0mobilefolders1e8xYisfDL.docx
 
6.2 What protocols comprise TLS6.3 What is the difference.docx
6.2 What protocols comprise TLS6.3 What is the difference.docx6.2 What protocols comprise TLS6.3 What is the difference.docx
6.2 What protocols comprise TLS6.3 What is the difference.docx
 
6.2 What protocols comprise TLS6.3 What is the difference bet.docx
6.2 What protocols comprise TLS6.3 What is the difference bet.docx6.2 What protocols comprise TLS6.3 What is the difference bet.docx
6.2 What protocols comprise TLS6.3 What is the difference bet.docx
 
6-3 Discussion Making DecisionsDiscussion Topic Starts Jun 5, 2.docx
6-3 Discussion Making DecisionsDiscussion Topic Starts Jun 5, 2.docx6-3 Discussion Making DecisionsDiscussion Topic Starts Jun 5, 2.docx
6-3 Discussion Making DecisionsDiscussion Topic Starts Jun 5, 2.docx
 
5An American in IndiaWhat is my inheritance To what am .docx
5An American in IndiaWhat is my inheritance To what am .docx5An American in IndiaWhat is my inheritance To what am .docx
5An American in IndiaWhat is my inheritance To what am .docx
 
6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx
6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx
6 PEER RESPONSES DUE IN 24 HOURS.. EACH SET OF 2 HAS ITS OWN INSTRUC.docx
 
6 peer responses due in 18 hours Each set of 2 responses will ha.docx
6 peer responses due in 18 hours Each set of 2 responses will ha.docx6 peer responses due in 18 hours Each set of 2 responses will ha.docx
6 peer responses due in 18 hours Each set of 2 responses will ha.docx
 

Recently uploaded

Industrial Training Report- AKTU Industrial Training Report
Industrial Training Report- AKTU Industrial Training ReportIndustrial Training Report- AKTU Industrial Training Report
Industrial Training Report- AKTU Industrial Training Report
Avinash Rai
 
IATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdffIATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdff
17thcssbs2
 
Neurulation and the formation of the neural tube
Neurulation and the formation of the neural tubeNeurulation and the formation of the neural tube
Neurulation and the formation of the neural tube
SaadHumayun7
 
ppt your views.ppt your views of your college in your eyes
ppt your views.ppt your views of your college in your eyesppt your views.ppt your views of your college in your eyes
ppt your views.ppt your views of your college in your eyes
ashishpaul799
 

Recently uploaded (20)

Operations Management - Book1.p - Dr. Abdulfatah A. Salem
Operations Management - Book1.p  - Dr. Abdulfatah A. SalemOperations Management - Book1.p  - Dr. Abdulfatah A. Salem
Operations Management - Book1.p - Dr. Abdulfatah A. Salem
 
Danh sách HSG Bộ môn cấp trường - Cấp THPT.pdf
Danh sách HSG Bộ môn cấp trường - Cấp THPT.pdfDanh sách HSG Bộ môn cấp trường - Cấp THPT.pdf
Danh sách HSG Bộ môn cấp trường - Cấp THPT.pdf
 
slides CapTechTalks Webinar May 2024 Alexander Perry.pptx
slides CapTechTalks Webinar May 2024 Alexander Perry.pptxslides CapTechTalks Webinar May 2024 Alexander Perry.pptx
slides CapTechTalks Webinar May 2024 Alexander Perry.pptx
 
NCERT Solutions Power Sharing Class 10 Notes pdf
NCERT Solutions Power Sharing Class 10 Notes pdfNCERT Solutions Power Sharing Class 10 Notes pdf
NCERT Solutions Power Sharing Class 10 Notes pdf
 
Open Educational Resources Primer PowerPoint
Open Educational Resources Primer PowerPointOpen Educational Resources Primer PowerPoint
Open Educational Resources Primer PowerPoint
 
Gyanartha SciBizTech Quiz slideshare.pptx
Gyanartha SciBizTech Quiz slideshare.pptxGyanartha SciBizTech Quiz slideshare.pptx
Gyanartha SciBizTech Quiz slideshare.pptx
 
Morse OER Some Benefits and Challenges.pptx
Morse OER Some Benefits and Challenges.pptxMorse OER Some Benefits and Challenges.pptx
Morse OER Some Benefits and Challenges.pptx
 
An Overview of the Odoo 17 Discuss App.pptx
An Overview of the Odoo 17 Discuss App.pptxAn Overview of the Odoo 17 Discuss App.pptx
An Overview of the Odoo 17 Discuss App.pptx
 
B.ed spl. HI pdusu exam paper-2023-24.pdf
B.ed spl. HI pdusu exam paper-2023-24.pdfB.ed spl. HI pdusu exam paper-2023-24.pdf
B.ed spl. HI pdusu exam paper-2023-24.pdf
 
Industrial Training Report- AKTU Industrial Training Report
Industrial Training Report- AKTU Industrial Training ReportIndustrial Training Report- AKTU Industrial Training Report
Industrial Training Report- AKTU Industrial Training Report
 
Salient features of Environment protection Act 1986.pptx
Salient features of Environment protection Act 1986.pptxSalient features of Environment protection Act 1986.pptx
Salient features of Environment protection Act 1986.pptx
 
The Art Pastor's Guide to Sabbath | Steve Thomason
The Art Pastor's Guide to Sabbath | Steve ThomasonThe Art Pastor's Guide to Sabbath | Steve Thomason
The Art Pastor's Guide to Sabbath | Steve Thomason
 
IATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdffIATP How-to Foreign Travel May 2024.pdff
IATP How-to Foreign Travel May 2024.pdff
 
The Last Leaf, a short story by O. Henry
The Last Leaf, a short story by O. HenryThe Last Leaf, a short story by O. Henry
The Last Leaf, a short story by O. Henry
 
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
 
Neurulation and the formation of the neural tube
Neurulation and the formation of the neural tubeNeurulation and the formation of the neural tube
Neurulation and the formation of the neural tube
 
Incoming and Outgoing Shipments in 2 STEPS Using Odoo 17
Incoming and Outgoing Shipments in 2 STEPS Using Odoo 17Incoming and Outgoing Shipments in 2 STEPS Using Odoo 17
Incoming and Outgoing Shipments in 2 STEPS Using Odoo 17
 
ppt your views.ppt your views of your college in your eyes
ppt your views.ppt your views of your college in your eyesppt your views.ppt your views of your college in your eyes
ppt your views.ppt your views of your college in your eyes
 
2024_Student Session 2_ Set Plan Preparation.pptx
2024_Student Session 2_ Set Plan Preparation.pptx2024_Student Session 2_ Set Plan Preparation.pptx
2024_Student Session 2_ Set Plan Preparation.pptx
 
Application of Matrices in real life. Presentation on application of matrices
Application of Matrices in real life. Presentation on application of matricesApplication of Matrices in real life. Presentation on application of matrices
Application of Matrices in real life. Presentation on application of matrices
 

4 Part Assignment1.Write a 1- to 2-page high-level executive.docx

  • 1. 4 Part Assignment 1. Write a 1- to 2-page high-level executive summary of the legal and regulatory compliance requirements for Health Coverage Associates executives. The summary should provide 2. Write a 1- to 2-page concise outline of the contents of the security management plan. 3. Compile a 1-to 2-page list of at least 10 of the CIS controls that provide key alignment with the administrative (policies), physical (secured facilities), and technical safeguards required under HIPAA to protect against the attacks listed above. Include corresponding NIST controls mapped to the selected CIS controls. 4. Write a 1- to 2-page concise outline of the contents of the security management plan. Assignment Content Your company is a security service contractor that consults with businesses in the U.S. that require assistance in complying with HIPAA. You advertise a proven track record in providing information program security management, information security
  • 2. governance programs, risk management programs, and regulatory and compliance recommendations. You identify vulnerabilities, threats, and risks for clients with the end goal of securing and protecting applications and systems within their organization. Your client is Health Coverage Associates, a health insurance exchange in California and a healthcare covered entity. The Patient Protection and Affordable Care Act (ACA) enables individuals and small businesses to purchase health insurance at federally subsidized rates. In the past 6 months, they have experienced: A malware attack (i.e., SQL Injection) on a critical software application that processed and stored client protected health information (PHI) that allowed access to PHI stored within the database An internal mistake by an employee that allowed PHI to be emailed to the wrong recipient who was not authorized to have access to the PHI An unauthorized access to client accounts through cracking of weak passwords via the company’s website login Health Coverage Associates would like you to develop a security management plan that would address the required safeguards to protect the confidentiality, integrity, and availability of sensitive data from the attacks listed above and protect their assets from the vulnerabilities that allowed the attacks to occur.
  • 3. Write a 1- to 2-page high-level executive summary of the legal and regulatory compliance requirements for Health Coverage Associates executives. The summary should provide Accurate information on the HIPAA requirements for securing PHI FISMA and HIPAA requirements for a security plan Scope of the work you will perform to meet the Health Coverage Associates’ requests Compile a 1-to 2-page list of at least 10 of the CIS controls that provide key alignment with the administrative (policies), physical (secured facilities), and technical safeguards required under HIPAA to protect against the attacks listed above. Include corresponding NIST controls mapped to the selected CIS controls. Write a 1- to 2-page concise outline of the contents of the security management plan. Include Policies Health Coverage Associates will need to manage, protect, and provide access to PHI The recommended risk management framework Health Coverage Associates should adopt
  • 4. Key elements Health Coverage Associates should include in its plan of actions and milestones Cite all sources using APA guidelines. Submit your assignment.