Security Standards Matrix
The Security Rule contains a useful chart or matrix that summarizes the Security Rule's requirements. The matrix is divided into three sections:
The administrative safeguards section addresses organizational controls, such as policies and procedures, risk analysis, training, incident reporting, disaster recovery planning, and contracts with business associates.
The physical safeguards section covers issues, such as access to buildings and workstations (locks and keys), disposal of computers and hard drives, and data backup and storage requirements.
The technical safeguards section addresses topics such as authentication of users, audit logs, data integrity checks, and transmission security (encryption).