Chapter 13

Security Rule: Security Awareness Training


The objectives of this chapter are as follows:

  • ■  Understand how to set up a training strategy and plan.
  • ■  Determine what type of content, materials, or methods to provide in security awareness training.
  • ■  Determine how to implement security awareness training.
  • ■  Understand what is involved with monitoring and evaluating the security awareness training plan.
  • ■  Determine how to develop an outline for security awareness training to include all necessary elements.


Under 45 § CFR 164.308(a)(5), security awareness training needs to be addressed as part of the Security Rule requirements. It is completely up to the covered entity how this security awareness training ...

Get The Definitive Guide to Complying with the HIPAA/HITECH Privacy and Security Rules now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.