You are using an unsupported browser. Please update your browser to the latest version on or before July 31, 2020.
close
Home > FaxBetter FAQ’s > Corporate > Is two-factor authentication (2FA) or multifactor authentication required for HIPAA compliance?
Is two-factor authentication (2FA) or multifactor authentication required for HIPAA compliance?
print icon

"Two-factor authentication (2FA) is not a requirement of HIPAA per se. However, if a Covered Entity or Business Associate conducts a risk assessment and identifies vulnerabilities that could be addressed with 2FA, it then becomes a “reasonable and appropriate” security measure that should be implemented to comply with Security Standards relating to Workforce Security and Information Access Management (§164.308(A)(3) and §164.308(A)(4))" - The HIPAA Journal, January 1, 2023.

 

See also FaxBetter and HIPAA compliance.   

Feedback
0 out of 0 found this helpful

scroll to top icon