Entity Authorization:
Entity Authorization is the process of providing individuals with unique credentials (user names and passwords) for entry into the system.
Access to the database can be reasonably controlled by creating a policy requiring all users to log in and out of Noah System as unique Noah users. This is accomplished using the User Administration tools in Noah System.
Information Access Controls:
Noah System provides a mechanism for granting two levels of access to healthcare information on a need-to-know basis (user based security). Permissions available for Level 1 and Level 2 Noah System users are shown in the figure below. Features which were added specifically for HIPAA security rules compliance are marked with the word “NEW.” Users with administrative privileges, of course, have access to all of these functions.
