> I'm researching health data security issues and came across a
requirement
> for "immutable" electronic audit trails.

Ken:

If you google "HIPAA immutable audit" you'll get plenty of info, including a paper on exactly what the legal requirement is.

Ah..okay... finally. After searching through multiple circular links beginning with that search term, I got this:

http://www.markle.org/sites/default/files/nstf_IAL_020906.pdf

As I suspected, "immutable" doesn't really mean "immutable". It just means "making it really hard to modify the logs after the fact".

This is exactly what I was looking for.

Thanks, Dan.

Ken Dibble
www.stic-cil.org



_______________________________________________
Post Messages to: [email protected]
Subscription Maintenance: http://mail.leafe.com/mailman/listinfo/profox
OT-free version of this list: http://mail.leafe.com/mailman/listinfo/profoxtech
Searchable Archive: http://leafe.com/archives/search/profox
This message: 
http://leafe.com/archives/byMID/profox/[email protected]
** All postings, unless explicitly stated otherwise, are the opinions of the 
author, and do not constitute legal or medical advice. This statement is added 
to the messages for those lawyers who are too stupid to see the obvious.

Reply via email to