EasyManua.ls Logo

Lumibird Quantel ABSOLU - Contingency Plan; Access Control

Lumibird Quantel ABSOLU
70 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Service manual
Service Manual 61 / 63
XE_ABS_MT_AN_200224
16.2. Contingency plan
Regulation
Implementation
specification
Specification
Features implemented
164.308(a)(7)(ii)(A)
Data Backup
Plan
The covered entity must
"establish and implement
procedures to create and
maintain retrievable
exact copies of electronic
protected health
information."
A backup of the Quantel Medical
device can be done on network, on
DVD or external hard drive, by using
the dedicated function; which is
located in the software.
Third party software may be installed
to fill this function.
164.308(a)(7)(ii)(B)
Disaster
Recovery Plan
The covered entity must
“establish (and
implement as needed)
procedures to restore any
loss of data.”
The procedure is established in the
Service Manual of the unit to restore
the software data; this procedure has
to be only done by IT person.
Third party software may be installed
to fill this function.
16.3. Access control
Regulation
Implementation
specification
Specification
Features implemented
164.312(a)(2)(i)
Unique User
Identification
The covered entity must
“assign a unique name
and/or number for
identifying and tracking
user identity.”
This function may be controlled by
the account session of the Windows
Operating System.
164.312(a)(2)(ii)
Emergency
Access
Procedure
The covered entity must
“establish (and
implement as needed)
procedures for obtaining
necessary electronic
protected health
information during an
emergency.”
A dedicated user account may be
created and set by the IT person;
when the Quantel Medical unit is
installed and set.
This is the responsibility of the IT
person to decide the emergency
access procedure: refer to the
dedicated chapter of the HIPAA for
more details and refer to the
authentication policy of the hospital.
164.312(a)(2)(iii)
Automatic Logoff
The covered entity must
“implement electronic
procedures that
terminate an electronic
session after a
predetermined time of
inactivity.”
This function may be controlled by
the Windows operating system and
set by the IT person.
164.312(a)(2)(iv)
Encryption and
Decryption
The covered entity must
“implement a mechanism
to encrypt and decrypt
electronic protected
health information.”
Third party software may be installed
to fill in this function.

Table of Contents