SOC 2 Report Quality: Does Your Report Hold Up?

March 18, 2026

For businesses operating in the current B2B environment, being asked for a SOC 2 report (or compliance with a similar…

What is a SOC 2 Bridge Letter?

July 21, 2025

A SOC 2 bridge letter, also known as a gap letter, is a document organizations provide to customers to assure them they are…

HSCC Proposes Alternative to the HIPAA Security Rule Update

April 8, 2025

The Health Sector Coordinating Council (HSCC) Cybersecurity Working Group (CWG) is urging the Trump administration to halt proposed updates to…

SOC 2 Audit 101

March 14, 2025

A SOC 2 audit is designed to show your customers that you have implemented security controls that will result in…

Healthcare Groups Ask for Proposed HIPAA Security Rule to be Rescinded

February 27, 2025

The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) issued a Notice of Proposed Rulemaking…

Avenues for HITRUST and SOC 2 Compliance

January 13, 2025

If you have a HITRUST Assessment you may be wondering how much more effort would be required to also obtain…

Changes to the HIPAA Security Rule Could be on the Way

January 6, 2025

In December 2024, the U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) issued a Notice…

The Risks of Claiming HIPAA Certification

September 19, 2024

The HIPAA Privacy and Breach rules apply to healthcare providers, health plans, and healthcare clearinghouses that transmit data electronically. So…

HITRUST Introduces e1 and i1 Combined Assessments

August 30, 2024

HITRUST introduced a “combined assessment” option for e1 and i1 assessments. This option allows organizations to have authoritative source requirements…

Alert Issued for Healthcare Supply Chain Cybersecurity

August 9, 2024

Healthcare supply chain organizations and their partners have been issued a cybersecurity alert after a string of Russian ransomware attacks…

Finding a credible expert with the appropriate background, expertise, and credentials can be difficult. CompliancePoint is here to help.