HITRUST AI Security and AI Risk Management: Which Option Fits Your Assessment?

January 23, 2026

Artificial intelligence is quickly becoming part of the operational fabric for healthcare organizations, SaaS providers, and business associates. From automation…

Read More

HHS Issues System Hardening Guidance for Healthcare Organizations

January 23, 2026

The HIPAA Security Rule requires covered entities and business associates to ensure the confidentiality, integrity, and availability of all electronic…

Read More

HITRUST Adds AI Options to Validated Assessments

January 6, 2026

Artificial intelligence (AI) is now embedded across healthcare and regulated industries, supporting analytics, automation, decision support, and customer-facing tools. As…

Read More

Protecting Electronic Health Records

November 3, 2025

Electronic Health Records (EHRs) have enhanced data accessibility, improved care coordination, and increased efficiency across the healthcare industry. However, these…

Read More

The HIPAA Breach Notification Rule: Requirements and Compliance Strategies

September 24, 2025

The HIPAA Breach Notification Rule requires healthcare organizations and their business associates to notify affected individuals, the Department of Health…

Read More

The Steps to HIPAA Compliance

August 21, 2025

If your organization comes into contact with Protected Health Information (PHI), it needs to comply with HIPAA. Noncompliance puts covered…

Read More

ARC-AMPE Replacing MARS-E for ACA Cybersecurity Compliance

August 8, 2025

The Centers for Medicare & Medicaid Services (CMS) has introduced a new cybersecurity and privacy framework: Acceptable Risk Controls for…

Read More

Performing a HIPAA Security Risk Assessment

June 24, 2025

Under HIPAA, a covered entity or business associate must perform an annual HIPAA Security Risk Assessment. However, the Rule does…

Read More

Cybersecurity in Healthcare: Going Beyond the HIPAA Security Rule

May 28, 2025

Cybersecurity in healthcare comes with an extra layer of complexity. Healthcare organizations must protect electronic protected health information (ePHI) to…

Read More

Blue Shield of California Says Google Analytics Behind PHI Data Breach

April 14, 2025

Blue Shield of California is notifying members of a potential data breach, which stemmed from the use of Google Analytics…

Read More

Finding a credible expert with the appropriate background, expertise, and credentials can be difficult. CompliancePoint is here to help.