Skip to content

Security Risk Analysis for Meaningful Use, MIPS/MACRA and HIPAA

Our certified privacy and security professionals can help your organization comply with the requirements in an efficient and cost-effective way. Or, simply leverage our DIY toolkit to complete the risk assessment and meet the MIPS/MACRA requirements in less than an hour.

Why Does Security Risk Analysis for Meaningful Use, MIPS/MACRA and HIPAA Matter?

Protecting patient health information is a base score measure for MIPS/MACRA eligible clinicians to receive positive or downward payment adjustments in 2019. Any organization that is a Covered Entity or Business Associate under HIPAA regulations MUST also complete an annual security risk assessment, then maintain a supporting risk management plan for a potential HHS/OCR audit. In addition, NCQA PCMH program provides 2 credits (TC5) recognition for completing an annual security risk assessment.

MIPS/MARA audits are actively being conducted by Figliozzi and Company on pre-payment and post-payment basis, and several firms have forfeited large sums of incentive payments by failing to produce proper supporting documentation. In addition, the quality payment program a.k.a MACRA/MIPS requires security risk analysis measure to be completed in 2019. Also, HIPAA OCR audits are specifically being focused on comprehensive security risk assessment of all ePHI produced, stored or transmitted. Theft and unauthorized transfer of medical records have paralyzed small physician offices’ efficiency, and reported data breaches have resulted in severe financial loss; risk assessment is one of the most effective methods to avoid these incidents. In addition, risk analysis is the first step in HIPAA security rule compliance efforts. Lastly, NCQA Patient-Centered Medical Home(PCMH) provides 2 Credits (TC5) for the practices which use an EHR system (or modules) that has been certified and issued an ONC Certification ID, conducts a security risk analysis, and implements security updates as necessary correcting identified security deficiencies. databrackets (formerly known as EHR 2.0) certified privacy and security professionals can help your organization comply with the requirement in a most efficient and cost-effective way or leverage our DIY toolkit to complete the risk assessment and meet the MIPS/MACRA requirements in less than an hour.

Why databrackets?

Prioritized Security Risks

Our Deliverables

Interested in trying our DIY platform ?

Some of Our Happy Customers

Choose Your Package

SRA DIY online toolkit

SRA DIY online toolkit

$499Per site report/year

  • Best for small practices
  • Security Risk Assessment Report
  • Customized Policies And Procedures
  • Customized Staff Training
  • Network And Web Vulnerability Scan

Risk analysis consulting

Risk analysis consulting

$800Starting at

  • Best for medium and large practices
  • Includes Everything In DIY Option +
  • Reports Prepared By Certified Consultants
  • Audit Support Guarantee
  • Secured Online Portal Access

Managed compliance services

Managed compliance services

$600Per month starting at

  • Best for all types of practices
  • Incl. Everything In Consulting Option +
  • Virtual Security Officer
  • Quarterly Risk Management Update
  • Security Incident Support

Security Risk Analysis Showcase

Additional Resources

Related Blogs

Also, the visitors of our website have an option to use the SRA tool provided by ONC/NIST. Please read their disclaimer section thoroughly. In addition, the free tool doesn’t include network assessment, training and policies, and procedures. Ensure you complete a comprehensive security risk analysis and audit-proof your report. Our toolkit has been designed to help busy medical professionals like you to complete the risk assessment in less than an hour.