HHS/OCR
Skill packages tagged with “HHS/OCR”
HIPAA Security Risk Assessment (SRA)
Draft and validate the Security Risk Assessment required by the HIPAA Security Rule (45 CFR §164.308(a)(1)). Defines scope and ePHI boundaries, inventories assets and Business Associate relationships, maps threats and vulnerabilities, assesses Required and Addressable safeguards, and produces the SRA report and risk register aligned with HHS/OCR audit protocol.
HIPAA Security Rule Modernization Roadmap
Build a 180-day remediation roadmap restricted to the deltas between the current HIPAA Security Rule (45 CFR Part 164 Subpart C) and a proposed amendment (e.g., the 2024 NPRM RIN 0945-AA22). Parses both XML sources by section, generates a delta matrix with citations, and produces a narrative roadmap and phased Gantt aligned to the 180-day window.