Can any tell or has anyone developed a way to audit staff for security/audit reporting to the level of accessing their own medical records?
If you run an individual chart access report it should give the information you are looking for since it list every entry contrubuted to that paticular chart.
We make all employees charts sensitive. Then we run a sensitive chart access report once a month. It is still a time consuming manual process of looking over the report to see if anything jumps out at you. In addition we pick a percentage of employees each month to run all charts accessed, anything out of the ordiinary is sent to their PM and our security officer. If anyone has a better process we would love to hear about it as well.
Thanks,
Dawn Duschel LPN
UAP Clinic
We submitted a request to GE for a more granular auditing process which would seem to be required to meet security and privacy requirements.
To D Duschel - your feedback that you can pick a % of employees each month to run all charts accessed would seem to be a great start. How do you run that? Thank you, Bruce
Bruce Forshay Mason City Clinic IT