Blog
EMS Cybersecurity Insights & Resources
AllEMSIncident responseEms cybersecurityMFAEms complianceEpcr securityVendor riskBAACad securityEms securityFire departmentPublic safetyAccess controlEDREpcr audit logsHIPAAHipaa compliancePublic safety cybersecurity45 cfr 164 524BackupsCADChain of custodyCloud securityComplianceCredential stuffingEms patient portalePCREsoFire station securityGraduated sanctionsHipaa sanction policyHipaa security ruleImagetrendMobile device securityOcr enforcementOperational securityPatient portal securityPatient record requestsPcr accessRansomwareRbacUnauthorized phi accessZoll
Sanction Policies When a Medic Snoops in a PCR
HIPAA requires a written sanction policy for unauthorized PCR access. Here is what OCR looks for and a graduated framework that holds up in an audit.
Ems complianceGraduated sanctionsPcr accessUnauthorized phi accessOcr enforcement
Portals and HIPAA Right of Access for EMS: Timelines, Audit Logs
The HIPAA Right of Access timeline, what an EMS patient portal needs, and why ePCR audit logs might not hold up in an OCR investigation.
45 cfr 164 524Ems complianceEpcr audit logsEms patient portalPatient portal security