Hi all,

I have received information from a vendor which states that the ONC has determined that in order to comply with meaningful use, all providers must attest that they have had a risk analysis completed. This is part of core requirement 15. Moreover, merely having a certified EHR does not meet the requirement. According to ONC, the CMS has hired auditing firm to conduct desk audits of as many as 20% of eligible providers to verify that they have conducted and completed a security risk analysis.

I am not really sure what to do about this for the clients I have using Amazing Charts (I am the IT person who supports them). Can anyone offer guidance on this?

Thanks,
John


John R. Allen
HelpLink Technology Services
Network Engineer
Central Coast CA