
Overview:

1) Make sure your security risk analysis encompasses all entities within your “family.”

2) Use HHS’s Security Risk Assessment Tool to identify whether corrective action should be taken.

3) Encrypt data, if at all possible.

4) Check that you have updated Business Associate (BA) Agreements in place for all BA relationships.
