Skip to content

Comment on Ask HN: What is your linux IDS and AVS?

Comments

Where in HIPAA does it require anti-virus or IDS? Last I read it only requires encryption (both locally and on the network) and you have to have a written security policy which you will be audited against.

If you don't want AV or IDS then simply don't put it into your internal security policy. Nothing in the HIPAA says that you have to have it, unless they've amended it recently to include that.

PCI compliance does require this.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.