Level of risk profile necessary for HIPAA

The VMware Security Hardening Guide says:

"Risk Profile 2: guidelines should be implemented for the most sensitive environments, for example those who handle sensitive data, those subjected to stricter rules of respect, etc..".

If I'm the target of HIPAA compliance, should I assume that I need to comply with profile of risk 2 on all points all least, or is not as simple as that?

Hello

You MUST comply with the HIPAA regulations, however, there is nothing in there everything exceeds these requirements. If you feel that the guidelines are for you, then by all means to implement. The regulation is the bare minimum required and defined by the general Committee.  If you feel more comfortable, appropriate, according to the laws HIPAA AND risk II profile can do both, but meeting the profile of risk II does NOT mean that meet you HIPAA regulations.

Regulatory compliance is the starting point is not the end of the security. However the course being does not mean that you meet the requirements of regulatory compliance.

The VCM team did a mapping for you. Go this way.  Or if you prefer use not VCM then you can use HyTrust, mocking and many others. Depending on the tool you use, be sure to trust you with their mappings. This trust is essential. Personally, before choosing a compliance assistance tool, talk to your compliance officer and see if they have heard of the tool or would recommend to others. If 'other' does not work in a virtual environment, you must begin to educate the compliance officer, because they need to understand before they audit for compliance.

Best regards
Edward L. Haletky
VMware communities user moderator, VMware vExpert 2009-2015

Author of the books ' VMWare ESX and ESXi in the business: Planning Server Virtualization Deployment, Copyright 2011 Pearson Education. ' Of VMware VSphere and Virtual Infrastructure Security: securing the virtual environment ', Copyright 2009 Pearson Education.

Virtualization and Cloud Security Analyst: The Practice of virtualization, LLC - vSphere Upgrade Saga - virtualization security Table round Podcast

Tags: VMware

Similar Questions

  • Install a cleaning is necessary for OS Sierra?

    Install a cleaning is necessary for OS Sierra?

    N ° it has been my experience that the so-called 'clean' install is a complete waste of time.

  • Why can't change my email address in the profile change for communities?

    Why can't change my email address in the profile change for communities? I won't be able to get the email with the former in the future.

    Because the e-mail address is connected to your Apple ID, which is used to connect to the CSA. You must change the Apple ID.

  • IOS 9.3.4 is necessary for my IPad Pro?

    IOS 9.3.4 is necessary for my IPad Pro?

    It is not necessary, but updates of security it also applies to the iPad Pro - it is also a small update, it shouldn't take long to download and install (but as with any update take a backup before you start)

  • Set up a user profile specifically for the game

    Hi all

    I installed Windows 7 (64-bit) and use it mainly for work (Excel, SPSS, Word). I also have many programs start automatically with Windows and run as background processes. What I want to do is create a profile user who loads only minimum programs and services required to play video games. Currently I have to manually complete the applications and services, which is a pain in the thigh. How can I configure a user profile specifically for games?

    TYIA,

    Mark

    Hi Mark,

    You can create a new user profile, but you will need to put your computer in a clean boot for the new user account only State to play games and to disable applications/services that are not used frequently.

    New user account will inherit all startup applications and services of the administrator account.

    To create a user account , follow the steps in the link
    http://Windows.Microsoft.com/en-us/Windows7/create-a-user-account

    To put your computer in a clean boot State, follow the steps in the article.
    http://support.Microsoft.com/kb/929135

    Aziz Nadeem - Microsoft Support

  • New DC 2012 creating profiles the for all members of the AD

    I recently deployed our first DC in 2012. I am now noticing that it seems to be a local profile created for each Member of AD (most of them have never connected directly on the local machine). We do not use roaming profiles. This is not the case on our 2008 domain controller. In the applet in the user profile, all these profiles appear as (except those who actually have logged on locally). Each of these people has a folder in c:\users named with the name of the AD account.

    Is there a setting that I messed up during the deployment? What is a 'new' DC in 2012? Can I safely delete the local profiles of the domain controller? Help... (google is not)

    Thank you

    Andi

    Hello

    Post your question in the TechNet Server Forums, as your question kindly is beyond the scope of these Forums.

    http://social.technet.Microsoft.com/forums/WindowsServer/en-us/home?category=WindowsServer

    See you soon.

  • That engine run time is necessary for communication series build Setup

    That engine run time is necessary for communication series build Setup

    You need NI-VISA. If you are using a National Instruments serial port card or device, then you also need OR Serial. All software can be found in the Technical Support page.

    Obviously, you have also the runtime for the software development environment itself as well. For example, for LabVIEW, you need to the LabVIEW Run-Time.

  • I did not use my PC for a while and have forgotten my user name and password. It is now necessary for me to install software on this PC, but need to log-in to do this

    Original title: Log-in question

    I did not use my PC for a while and have forgotten my user name and password.  It is now necessary for me to install software on this PC, but need to log-in to do this.  How can I better log-int?

    The software is now located on my desktop but cannot be put to use; apparently because it is not installed in a suitable place in my computer.  Using the Guest login does not work since the installation of this software is not allowed in the comments section.  Your ideas will be appreciated.

    Hello

    What account are you connected to? Administrator or guest account?

    See the following article: Microsoft's strategy concerning lost or forgotten passwords

  • "The Dell Dock language file, which is necessary for its operation, has failed to load. Please check your Dell Dock installation"

    Original title: Dell Dock

    Get a message saying: 'the Dell Dock language file, which is necessary for its operation, has failed to load. Please check your Dell Dock installation

    Try this for the restoration of the system to Vista before the problem:

    Restore point:

    http://www.howtogeek.com/HOWTO/Windows-Vista/using-Windows-Vista-system-restore/

    Do Safe Mode system restore, if it is impossible to do in Normal Mode.

    Try typing F8 at startup and in the list of Boot selections, select Mode safe using ARROW top to go there > and then press ENTER.

    Try a restore of the system once, to choose a Restore Point prior to your problem...

    Click Start > programs > Accessories > system tools > system restore > choose another time > next > etc.

    http://www.windowsvistauserguide.com/system_restore.htm

    Read the above for a very good graph shows how backward more than 5 days in the System Restore Points by checking the correct box.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    http://www.DellDock.com/

    Above is the link for redownload for him, if necessary.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    http://support.Dell.com/support/topics/global.aspx/support/DellCare/contact_technical_support

    Contact the Dell Support link re problems with their software above.

    See you soon.

    Mick Murphy - Microsoft partner

  • going on a computer: how to cancel the password which is necessary for the opening of the computer

    How to cancel the password which is necessary for the opening of the computer

    Do you mean that a password is required immediately after you turn on the computer or when you arrive at the Welcome to Windows screen? If the first case, it is a BIOS password and how you disable it depends on what type of computer you have. If the latter:

    Set up Windows to automatically connect (MVP Ramesh) -http://windowsxp.mvps.org/Autologon.htm

    If you would like more information or is not what you mean, please explain your post.

    MS - MVP - Elephant Boy computers - don't panic!

  • Warning__program error__one or more files necessary for the operation of the memorex expressit label design studio are missing or corrupt. Please use the Setup program to reinstall the software.

    Tried to update to Safari that does not work after the update. Then my printer stop working. Get the following message: 'WARNING '.
    program error
    necessary for the operation of the studio of design of memorex expressit label one or several files are missing or corrupt. Please use the Setup program to reinstall the software. »
    Already uninstalled and re-installed the software manufacturer labels several times. No luck.

    It seems it all started to go wrong after your update of Safari went wong:

    http://www.Apple.com/support/Safari/

    Link above is for Support of Safari.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    We do not know your Label program Vista compatibility.

    Check if your program is Vista Compatible:

    http://www.Microsoft.com/Windows/compatibility/Windows-Vista/default.aspx

    Windows Vista Compatibility Center

    First thing to do is to check its Vista compatibility at the link above, and if not to see what patches/solutions are available from its manufacturer...

    http://www.howtogeek.com/HOWTO/Windows-Vista/using-Windows-Vista-compatibility-mode/

    If this is not Vista compatible, read the info on the link above.
    It works for some programs, but not all.

    This applies to software programs, NOT hardware drivers.

    If it's Vista compatible > uninstall it > Re-download/save to your desktop > right click on the setup.exe > run as admin.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    It comes with Vista, upgrade install and activate Forum.

    Try the Vista programs Forum:

    http://social.answers.Microsoft.com/forums/en-us/vistaprograms/threads

    See you soon.

    Mick Murphy - Microsoft partner

  • Administrator log - on: can someone tell me why Windows Vista Premium does not create a user profile ADMINISTRATOR for me by default

    Can someone tell me why Windows Vista Premium does not create a user profile ADMINISTRATOR for me by default, as I am the main user and why he keeps me access to many programs and features in Windows, including installation and view and edit privileges?  How can I set up my profile as ADMINISTRATOR rather than another user profile and get rid of all the other profiles?  Please write to * address email is removed from the privacy * for your answer.

    Steve

    Can someone tell me why Windows Vista Premium does not create a user profile ADMINISTRATOR for me by default, as I am the main user and why he keeps me access to many programs and features in Windows, including installation and view and edit privileges?  How can I set up my profile as ADMINISTRATOR rather than another user profile and get rid of all the other profiles?  Please write toEmail removed privacy for your answer.

    Steve

    Let me soce entry details:

    1. all computers need to have at least one administrator account. It will not work without it.
    It does NOT, however, create a profile For YOU defaultAdmin. It belongs to the user or the owner to create and decide who is Admin, and who is a regular user.
    2. even an admin account will not get to install and change the settings automatically. UAC (user account control) always appears to ask for confirmation of the task by clicking on continue, or by typing the admin password.
    3 be the main user is not to be an administrator. It is up to the user/owner of the computer to be configured as such.
    That said, now my question... How do you know that you're not an admin?

    t-4-2

  • It is necessary for taking the image of windows 7 upgrade windows 10?

    I want to ask is it necessary for the filming of system windows 7 if there is not all the files in the computer. (As no document)

    Can be installed by the dvd of windows 7 then it is necessary to make the image of the system?

    If something goes wrong while the upgrade to windows 10 can then I installed windows 7 on dvd or not

    Is not necessary.

    See also: http://answers.microsoft.com/en-us/windows/forum/windows_10-win_upgrade/windows-10/bdef4f4b-eb93-453b-9efc-f7f558cc9928

    FAQ for Windows 10-

    https://www.Microsoft.com/en-AU/Windows/Windows-10-FAQ

    If something is wrong you can reformat and reinstall Windows 7 DVD and run all the updates, but would it not easier to make an image of the system? Your choice.

  • RMAN-08137: WARNING: log archived not deleted, necessary for intelligence or upstream collection procedure

    Hi Oracle Community,

    I have a few databases (11.2.0.4 POWER 2 block and 12.1.0.2) with Data Guard. Back up this database with RMAN to ribbons, only on the primaries.

    During the backup, sometimes I got RMAN-08137: WARNING: log archived not deleted, necessary for intelligence or upstream collection procedure

    By reason of this global warning to backup status is "COMPLETED WITH WARNINGS". Is it possible to remove this warning, or perhaps change RMAN configuration to avoid the appearance of this warning?

    Concerning

    J

    Where is the problem on these warnings? If you do not want to see such warnings, why not simply to perform the removal of the archivelogs in a separate step? For example:

    RMAN> backup database plus archivelog;
    RMAN> delete noprompt archivelog all completed before 'sysdate-1';
    
  • I would like to have the best possible experience for the games on my laptop and I want to download everything that is necessary for the performance of the games.

    I bought a new laptop which has Windows 8. I heard that Windows 8 is new, it only is not automatically provided some 'things' - forgive me for my lack of knowledge in technology. I intend to play games on my new laptop, but according to my knowledge, Windows 8 does not support things like Visual C++ and Directx 9. I am very uncertain about this subject, however. If anyone understands this as am I mean, can you please correct and/or explain more on this topic? I would like to have the best possible experience for the games on my laptop and I want to download everything that is necessary for the performance of the games.

    Original title: what's missing in Windows 8?

    Jack

    We were all new at one point, so don't worry what you know.  Win 8 is compatible with all previous OS.  It supports C++, and depends on your video card supports DIrectX 9, 10 and 11.

    The only thing that doesn't come with win 8 (and since you bought it, it may already be installed) is windows media player.

    What exactly are you trying to do, or can you give us more information for we can help you better?

Maybe you are looking for