Report Security Incidents. Business Associate shall report to Covered Entity any Security Incident of which it becomes aware. For purposes of this Addendum, “Security Incident” means the successful unauthorized access, Use, Disclosure, modification, or destruction of Electronic Protected Health Information or interference with system operations in an information system, excluding: (a) “pings” on an information system firewall; (b) port scans; (c) attempts to log on to an information system or enter a database with an invalid password or user name; (d) denial-of-service attacks that do not result in a server being taken offline; or (e) malware (e.g., a worm or virus) that does not result in unauthorized access, Use, Disclosure, modification, or destruction of Electronic Protected Health Information. Business Associate agrees to mitigate, to the extent practicable, any harmful effect resulting from such Security Incident.
Appears in 1 contract
Report Security Incidents. Business Associate shall report to Covered Entity any Security Incident of which it becomes aware. For purposes of this AddendumAgreement, “Security Incident” means the successful unauthorized access, Useuse, Disclosuredisclosure, modification, or destruction of Electronic Protected Health Information or interference with system operations in an information system, excluding: (a) “pings” on an information system firewall; (b) port scans; (c) attempts to log on to an information system or enter a database with an invalid password or user name; (d) denial-of-service attacks that do not result in a server being taken offline; or (e) malware (e.g., a worm or virus) that does not result in unauthorized access, Useuse, Disclosuredisclosure, modification, or destruction of Electronic Protected Health Information. Business Associate agrees to mitigate, to the extent practicable, any harmful effect resulting from such Security Incident.
Appears in 1 contract
Sources: Remote Physiologic Monitoring Management Services Agreement
Report Security Incidents. Business Associate shall report to Covered Entity any Security Incident of which it becomes aware. For purposes of this AddendumAgreement, “Security Incident” means the successful unauthorized access, Useuse, Disclosuredisclosure, modification, or destruction of Electronic Protected Health Information PHI or interference with system operations in an information system, excluding: (a) “pings” on an information system firewall; (b) port scans; (c) attempts to log on to an information system or enter a database with an invalid password or user name; (d) denial-of-service attacks that do not result in a server being taken offline; or (e) malware (e.g., a worm or virus) that does not result in unauthorized access, Useuse, Disclosuredisclosure, modification, or destruction of Electronic Protected Health InformationPHI. Business Associate agrees to mitigate, to the extent practicable, any harmful effect resulting from such Security Incident.
Appears in 1 contract
Sources: Business Associate Agreement