Section: 164.308 Administrative safeguards
a. (a) A covered entity must, in accordance with [164.306]:
1. (1)
i. Standard: Security management process. Implement policies and procedures to prevent, detect, contain, and correct security violations.
ii. Implementation specifications:
A. (A) Risk analysis (Required). Conduct an accurate and thorough assessment of the potential risks and vulnerabilities to the confidentiality, integrity, and availability of electronic protected health information held by the covered entity.B. (B) Risk management (Required). Implement security measures sufficient to reduce risks and vulnerabilities to a reasonable and appropriate level to comply with [164.306(a)].FusionVM delivers the ability to regularly scan critical systems against a daily updated database of vulnerabilities to insure systems are secure and applications are stable.