One Guy Consulting Portal Help Center

For Privacy Officers

Incident management

Log security and privacy incidents, then review, investigate, and resolve them (Step 11).

An incident is something like an unauthorized disclosure of Protected Health Information (PHI). Incidents need to be tracked and handled correctly, and the portal makes that a breeze.

Scroll to the bottom-most option on your left and select Incident Management System (or click dashboard Step 11). From the landing page you can Report or Review incidents. While that page is open, new reports pop up as a notice.

Report an incident

Privacy Officers use Incident Management > Report. Employees use Report Incident in their sidebar (see Reporting an incident).

Top to bottom, here's what you fill in:

  1. Incident Title: a good, explanatory title.
  2. Description: what occurred, in general terms.
  3. Date Discovered: when you became aware of a potential violation.
  4. Date Reported: today.
  5. Date Privacy Officer Made Aware: usually today.
  6. Location: in the office? A remote office?
  7. Affected Systems: a computer? An unencrypted email that got sent?
  8. Number of Affected Individuals: how many people were affected.
Bottom of the incident report form with Location, Affected Systems, and Number of Affected Individuals fields and a Submit Incident Report button

Hit Submit Incident Report. Your report is filed and your Privacy Officer is alerted by email.

The report form attaches the reporter's name, and there's no file upload on it. You set the severity during review.

Review and manage incidents

  1. Open Review

    Incident Management > Review. Tiles show Open, Investigating, Resolved, and Critical counts. Filter by status, severity, and category.

  2. Open an incident

    Click it and a panel slides in from the right so you can review what happened quickly.

  3. Add findings

    Note findings with Add a comment... and Add (comments are internal), or hit Edit in the upper right.

  4. Update or close it

    In edit mode, set Severity (Low, Medium, High, Critical) and Status (Open, Investigating, Resolved, Closed), and write Resolution Notes. To close an incident, change the status dropdown to Closed and hit Save.

What the portal does and doesn't do

The portal records incidents and tracks their status. It doesn't decide whether an incident is a reportable breach or calculate notification deadlines. That call depends on the facts.

Each year on December 27, if your organization logged incidents in the past 12 months, the portal emails your Privacy Officer and admin accounts a reminder about submitting to the HHS OCR portal.

On this page