News

HITRUST Update Regarding WannaCry Attack on Healthcare Sector

HITRUST has been following the events surrounding the global WannaCry ransomware attack since it was first reported by the UK Healthcare sector. HITRUST’s Cyber Lab, in partnership with Trend Micro Labs and in cooperation with DHS, law enforcement and our members, is gathering information on the incident and have been providing guidance by regularly updating…

Michael Parisi Joins HITRUST as Vice President, Assurance Strategy & Community Development

HITRUST is extremely pleased to announce the appointment of Michael Parisi as Vice President of Assurance Strategy and Community Development for HITRUST. Michael is a seasoned information security and privacy industry professional and joins us from PricewaterhouseCoopers where he served as a Risk Assurance Senior Director. He also served as a lead healthcare industry expert,…

HITRUST Assessment Exchange to Modernize Vendor Risk Management Process

HITRUST has announced the creation of an assessment exchange to automate and streamline the process customers engage in when requesting and receiving third-party security and privacy risk assessment information from their vendors. View the official press release here. The HITRUST Assessment Exchange replaces the inefficient, time-consuming and labor-intensive approaches often found by customers who seek…

HITRUST Establishes Assessment Exchange to Modernize Vendor Risk Management Process

Leverages HITRUST CSF Assurance Program to improve efficiencies, streamline processes and free precious resources in obtaining vendor security and privacy risk assessment information May 2, 2017—Frisco, TX: HITRUST announced today the creation of an assessment exchange to automate and streamline the process customers engage in when requesting and receiving third-party security and privacy risk assessment…

HITRUST 2017: Sessions for Small Medical Practices

For small medical practices without appropriate resources (time, knowledge, staff), the idea of implementing cybersecurity can be overwhelming. At the same time, it’s imperative that a doctor’s office be in compliance with government regulations while taking appropriate measures to avoid cyber attacks that may disclose patients’ protected health information, cause system downtime resulting in added…

Assess Once, Report Many: HITRUST 2017 Sessions Focused on Compliance

Healthcare entities and related business associates (e.g., health plans, healthcare clearinghouses, exchanges, healthcare providers, and organizations that conduct certain financial, research, and administrative functions) are being asked with increased frequency to demonstrate that they meet a variety of security and privacy requirements such as the HIPAA Security & Privacy Rules, NIST, ISO, PCI and other…

Enhance Your Professional Skills! Register for the May 1 Data De-Identification Methodology Course

According to an article in IAPP’s Privacy Perspectives online magazine, one of the main barriers to ensuring that patient privacy is protected is the lack of a sufficient number of trained and certified de-identification experts. HITRUST’s new, in-depth Data De-Identification Methodology certification program is a great way for industry professionals to begin validating their current…

HITRUST 2017 Covers Timely Information Security and Privacy Issues

2017 has already been a busy year for HITRUST and the healthcare industry, and if you’re a professional involved in the protection of your organization’s healthcare information, chances are you’re already planning to attend HITRUST 2017. But you may be particularly interested to know more about the many topics we’ll be covering during the dynamic…

HITRUST Sessions on Operational Cyber Risk

HITRUST 2017 includes a mix of general sessions, breakout sessions and networking opportunities. If you’re interested in talks, discussions, and presentations that fall under the operational category, be sure to check out those related to HIPAA compliance, cybersecurity strategy, startup certification, common pain points, risk management and sustainable security operations. Read More>>

HITRUST’s CSF Assess Once, Report Many Approach: Provides the Foundation for NIST Cybersecurity Framework Implementation, Reporting and Certification

What’s your organization’s priority when it comes to managing cybersecurity risk and demonstrating compliance? For many healthcare CISOs, the most urgent need is focusing on managing cyber threats and improving their own cyber resilience while also communicating the effectiveness of their information security program to various audiences—processes for which are significantly aided by the HITRUST…

x

Chat Now

This is where you can start a live chat with a member of our team