Road to HIPAA Compliance: Using the NIST Cybersecurity Framework to Protect PHI

by KirkpatrickPrice / December 19, 2022

The NIST Cybersecurity Framework: A Common Language for Cybersecurity Issues The cybersecurity realm is overwhelming – the issues, the regulations, the changes, the threats, the persistence. We’re living in a world where we hear about new breaches every day. None of us can possibly know everything about all cybersecurity issues, and that’s okay. We’re all vulnerable and overwhelmed, but that’s no excuse not to prepare and continually develop your organization’s…

PCI Readiness Series: PCI Requirement 12

by KirkpatrickPrice / December 19, 2022

PCI Requirement 12: Maintaining an Information Security Policy When creating an information security policy, an organization must create a policy that addresses information security for all personnel. Let’s emphasize “all” – this policy is not just for the IT department but is for anyone that would/could be involved in some capacity with storing, processing, and transmitting cardholder data. PCI Requirement 12 helps oversee and govern an organization's PCI DSS compliance…

Road to HIPAA Compliance: Incident Response

by KirkpatrickPrice / December 19, 2022

Security, Incident, Response, Repeat There are several challenges when it comes to understanding security incidents and incident response. Our goal for this webinar is to answer several questions that occur while considering your organization’s incident response plan and creating policies and procedures to accompany your plan.  How would you define “security incident” for a practical, real-world setting? The regulatory definition of a “security incident” includes the access, use, disclosure,…

PCI Readiness Series: PCI Requirement 11

by KirkpatrickPrice / December 19, 2022

PCI Requirement 11: Validating Your Security Program This session in our PCI Readiness series focuses on Requirement 11. This requirement requires regular monitoring and testing of security systems and processes, which validates an organization’s risk/threat management program and determines if it’s functioning correctly. To successfully validate your system, scans should validate your risk identification and risk ranking program. Internal scan results should be used to address risk through your risk…

Road to HIPAA Compliance: Training the Workforce

by KirkpatrickPrice / December 19, 2022

4 Key Elements of HIPAA Compliance Training This webinar discusses training your workforce for HIPAA compliance. You may feel some push-back or a lack of enthusiasm from your workforce about HIPAA training, but it may be helpful to remind them that training is not only required, but it’s the key to HIPAA compliance. An effective workforce training program makes an effective HIPAA compliance program. Although it’s a challenge, it is…