OAR 333-018-0135
HAI Data Security


The Authority shall undertake precautions to prevent unauthorized disclosure of the raw data files. These precautions include but are not limited to:

(1)

Storing the raw data files on the internal storage hardware of a password-protected personal computer that is physically located within the Authority;

(2)

Restricting staff access to the raw data files;

(3)

Restricting network access to the raw data files; and

(4)

If applicable, storing patient information within a strongly-encrypted and password-protected virtual drive or using other methods to reliably achieve the same level of security.

Source: Rule 333-018-0135 — HAI Data Security, https://secure.­sos.­state.­or.­us/oard/view.­action?ruleNumber=333-018-0135 (accessed May 26, 2025).

Verified

May 26, 2025

Rule 333-018-0135's source at or​.us