Skip to Main Content

Health Care Law and Policy (2020)

Governance, Risk, and Compliance

According to Ken Reiher, a governance, risk, and compliance strategy allows a healthcare institution or practitioner to protect "all types of protected healthcare information, including protected healthcare information." He notes five unique features of a GR strategy.

  • GRC provides a universal strategy.
  • GRC is more comprehensive ("different") than healthcare compliance.
  • GRC is for individual medical professionals, as well as healthcare institutions, since both must protect personal healthcare information.
  • "GRC is particularly complex" -- especially for large institutions which must deal with multiple jurisdictions ("geographically dispersed')
  • Helpful resources include:
    • risk registries
    • GRC software
    • consultants 

 

 

 

 

GRC: Books and Book Chapters