The DBRA Scorecard page allows users with administrative permissions to configure and manage Data Breach Risk Assessment (DBRA) scoring criteria used during the DBRA evaluation process. The scorecard includes Federal- and state-specific weighted risk scores used to calculate assessment outcomes and reporting recommendations.
Administrators can manage scorecard versions, configure disclosure-type scoring values, add state-specific configurations and assessment questions based on organizational requirements, review activity history, and approve scorecard updates before DBRA assessments become available to users.
To access it, navigate to Admin and select the DBRA Scorecard. The DBRA Scorecard page will open.
Review the DBRA Scorecard
Review the configured weighted risk scoring values and assessment criteria displayed in the DBRA Scorecard table.
The scorecard table includes:
- Federal scorecard configuration
- State-specific scorecard configuration
- Breach Reporting Exceptions
- Data Breach Risk Assessment sections
- Disclosure-type weighted risk scoring columns
Available disclosure-type scoring columns may include:
- Electronic
- Paper
- Verbal
Available weighted risk scoring columns may include:
- Yes Weighted Risk
- No Weighted Risk
- N/A Weighted Risk
Assessment questions displayed in the scorecard are predefined and included by default. Administrators cannot modify the assessment questions in the table, but can update the configured weighted risk scoring values for available response options.
Configure Weighted Risk Values
Review and update the weighted risk-scoring values used in the Exception Analysis and DBRA assessment process. Scoring values can be configured separately for Yes, No, and N/A response options for each disclosure type, including Electronic, Paper, and Verbal.
Manage State Scorecards
The DBRA Scorecard page includes a default Federal scorecard configuration and allows administrators to manage additional state-specific scorecards.
To add a new state scorecard:
- Select the + icon next to the Federal or existing state tabs.
- Select the required state from the Select state dropdown list.
- Enter the required state-specific assessment question.
- Configure the corresponding response actions or weighted scoring values for available response options.
- Select Add Question to add additional state-specific questions, if required.
- Optional: Select the Delete State option to remove the selected state configuration.
Select Save & Approve to save and publish the updated scorecard configuration.
📝 Notes- State-specific scorecard configurations are managed independently from the default Federal scorecard.
- Changes made to state scorecards are applied to future DBRA assessments after selecting Save & Approve.
- Removing a state scorecard configuration does not affect previously completed DBRA assessments.
Review Scorecard Versions
Use the Versions dropdown to review available DBRA Scorecard versions and their associated date and time stamps. Each approved scorecard update creates a new version for future DBRA assessments.
Review the Activity Log
Select Activity Log to review scorecard-related activity history, including configuration updates, state configuration changes, version creation, and user actions.
Save and Approve
After completing scorecard updates, select Save & Approve. A confirmation message is displayed to verify that you want to save the scorecard as a new version.
Select Yes to continue.
Enter the details of the changes made to the scorecard configuration.
- Select Save. A new DBRA Scorecard Version is created and applied to future DBRA assessments.
- The DBRA module remains unavailable until a DBRA Scorecard version has been approved.
- Each Save & Approve action creates a new scorecard version with a corresponding date and time stamp.
- Historical DBRA assessments continue using the scorecard version that was active when the assessment was completed.
© Healthicity, LLC
Comments
0 comments
Please sign in to leave a comment.