Hi all,
I have received information from a vendor which states that the ONC has determined that in order to comply with meaningful use, all providers must attest that they have had a risk analysis completed. This is part of core requirement 15. Moreover, merely having a certified EHR does not meet the requirement. According to ONC, the CMS has hired auditing firm to conduct desk audits of as many as 20% of eligible providers to verify that they have conducted and completed a security risk analysis.
I am not really sure what to do about this for the clients I have using Amazing Charts (I am the IT person who supports them). Can anyone offer guidance on this?
Thanks,
John