HIPAA Checklist - AICPA

Are appropriate sanctions applied against employees who failed to comply with security policies and procedures? Is there a regular review of information system activity, including audit logs, access reports, and incident tracking reports? Are there implemented policies and procedures limiting access to protected health information? ................
................