In my opinion, this question is poorly framed.

The correct question is what are open source's advantages with reference to HIPAA compliance?

Having read a great deal of the security reg, I am coming increasingly to the conclusion that the much if not all of the reg can be satisfied automatically. Report generation, audit, key management, etc. etc., these are all things that cry out for automation.

Read the reg and in every case think of how the task imposed by HIPAA can be accomplished automatically.

Yes, there are things that cannot be done automatically, but they have nothing to do with software and everything to do with the organization using the software. These things are best rendered unto Caesar, as they will be anyway.

John


On Tuesday, March 4, 2003, at 06:30 PM, Adrian Midgley wrote:


Generically, what would an open source medical system require in
order to maintain HIPAA compliance?
--
From one of the Linux desktops of Dr Adrian Midgley
http://www.defoam.net/




Reply via email to