Skip to main content
Security Safeguards

Automatic Logoff

A control that ends an idle session to prevent unauthorized access to PHI.

Automatic logoff is a technical safeguard that ends an electronic session after a period of inactivity, reducing the risk of unauthorized access to PHI on an unattended workstation or device. It is one of the technical safeguards named in the HIPAA Security Rule.

See how it fits alongside the other required controls in key security measures for HIPAA-compliant hosting. The full rule, and what timeout to set by workspace, is in HIPAA automatic logoff requirements.

Stay current on HIPAA hosting

Practical guidance on compliance, hosting and the rules that actually apply to your practice.

Email me occasional updates about HIPAA hosting and compliance. No more than a few times a month, and you can unsubscribe at any time.