You are using an unsupported browser. Please update your browser to the latest version on or before July 31, 2020.
close
You are viewing the article in preview mode. It is not live at the moment.
Home > FaxBetter FAQ’s > Corporate > Is two-factor authentication (2FA) or multifactor authentication required for HIPAA compliance?
Is two-factor authentication (2FA) or multifactor authentication required for HIPAA compliance?
print icon

"Two-factor authentication (2FA) is not a requirement of HIPAA per se. However, if a Covered Entity or Business Associate conducts a risk assessment and identifies vulnerabilities that could be addressed with 2FA, it then becomes a “reasonable and appropriate” security measure that should be implemented to comply with Security Standards relating to Workforce Security and Information Access Management (§164.308(A)(3) and §164.308(A)(4))" - The HIPAA Journal, January 1, 2023.

 

See also FaxBetter and HIPAA compliance.   

Feedback
0 out of 0 found this helpful

scroll to top icon