About GPO   |   Newsroom/Media   |   Congressional Relations   |   Inspector General   |   Careers   |   Contact   |   askGPO   |   Help  
 
Home   |   Customers   |   Vendors   |   Libraries  

The Electronic Code of Federal Regulations (e-CFR) is a regularly updated, unofficial editorial compilation of CFR material and Federal Register amendments produced by the National Archives and Records Administration's Office of the Federal Register (OFR) and the Government Printing Office.

Parallel Table of Authorities and Rules for the Code of Federal Regulations and the United States Code
Text | PDF

Find, review, and submit comments on Federal rules that are open for comment and published in the Federal Register using Regulations.gov.

Purchase individual CFR titles from the U.S. Government Online Bookstore.

Find issues of the CFR (including issues prior to 1996) at a local Federal depository library.

[2]
 
 

Electronic Code of Federal Regulations

blue pill

e-CFR Data is current as of September 26, 2014

Title 45Subtitle ASubchapter CPart 164


TITLE 45—Public Welfare

Subtitle A—DEPARTMENT OF HEALTH AND HUMAN SERVICES

SUBCHAPTER C—ADMINISTRATIVE DATA STANDARDS AND RELATED REQUIREMENTS

PART 164—SECURITY AND PRIVACY

rule

Subpart A—GENERAL PROVISIONS

§164.102
Statutory basis.
§164.103
Definitions.
§164.104
Applicability.
§164.105
Organizational requirements.
§164.106
Relationship to other parts.
rule

Subpart B—[RESERVED]

rule

Subpart C—SECURITY STANDARDS FOR THE PROTECTION OF ELECTRONIC PROTECTED HEALTH INFORMATION

§164.302
Applicability.
§164.304
Definitions.
§164.306
Security standards: General rules.
§164.308
Administrative safeguards.
§164.310
Physical safeguards.
§164.312
Technical safeguards.
§164.314
Organizational requirements.
§164.316
Policies and procedures and documentation requirements.
§164.318
Compliance dates for the initial implementation of the security standards.
Appendix
Appendix A to Subpart C of Part 164—Security Standards: Matrix
rule

Subpart D—NOTIFICATION IN THE CASE OF BREACH OF UNSECURED PROTECTED HEALTH INFORMATION

§164.400
Applicability.
§164.402
Definitions.
§164.404
Notification to individuals.
§164.406
Notification to the media.
§164.408
Notification to the Secretary.
§164.410
Notification by a business associate.
§164.412
Law enforcement delay.
§164.414
Administrative requirements and burden of proof.
rule

Subpart E—PRIVACY OF INDIVIDUALLY IDENTIFIABLE HEALTH INFORMATION

§164.500
Applicability.
§164.501
Definitions.
§164.502
Uses and disclosures of protected health information: General rules.
§164.504
Uses and disclosures: Organizational requirements.
§164.506
Uses and disclosures to carry out treatment, payment, or health care operations.
§164.508
Uses and disclosures for which an authorization is required.
§164.510
Uses and disclosures requiring an opportunity for the individual to agree or to object.
§164.512
Uses and disclosures for which an authorization or opportunity to agree or object is not required.
§164.514
Other requirements relating to uses and disclosures of protected health information.
§164.520
Notice of privacy practices for protected health information.
§164.522
Rights to request privacy protection for protected health information.
§164.524
Access of individuals to protected health information.
§164.526
Amendment of protected health information.
§164.528
Accounting of disclosures of protected health information.
§164.530
Administrative requirements.
§164.532
Transition provisions.
§164.534
Compliance dates for initial implementation of the privacy standards.


For questions or comments regarding e-CFR editorial content, features, or design, email ecfr@nara.gov.
For questions concerning e-CFR programming and delivery issues, email webteam@gpo.gov.