HITRUST Common Security Framework Continues to Advance with Updates for 2011
Comprehensiveness and usability of framework drives increasing adoption
HITRUST continues to update and enhance the CSF to maintain its relevancy and reflect the results of ongoing collaboration with leading healthcare organizations and other organizations that support the industry. Timely enhancements to the CSF ensure organizations can adapt their security processes as needed so that they may continue to address new assurance requirements such as meaningful use and those unique to the states in which they conduct business. HITRUST considers the impact updates to the CSF have on organizations and evaluates the appropriateness and benefits to be had with any cost or complexities to come from added requirements.
“HITRUST has seen great momentum in the adoption of the CSF in the healthcare industry with more organizations relying on it as a critical component of their security programs,” said
Now in its third version, the CSF is the only all-inclusive security framework available to organizations handling protected health information (PHI). Introduced in early 2009 and developed in collaboration with healthcare, professional services and information technology organizations, the CSF is a comprehensive security framework that incorporates the existing security requirements of healthcare organizations, including federal (e.g., HIPAA, HITECH), state, third party (e.g., PCI and COBIT) and other government agencies (e.g., NIST, FTC and CMS). The framework incorporates new and ongoing security requirements by interpreting emerging risks and changing standards so that organizations can focus their attention and resources on remediation efforts and other critical security initiatives. The CSF is also the foundation of the HITRUST CSF Assurance program, the most widely-used approach for measuring third-party information security assurance in the healthcare industry.
“The availability of the CSF and CSF Assurance program provide
The updates made to the CSF for 2011 incorporate feedback and best practices from the healthcare industry, including input from those organizations that have already adopted the CSF. Enhancements include updates to the CSF requirements and mappings and the integration of the recently released
“These updates continue to refine the CSF, making it more prescriptive, simpler to understand, and ultimately easier to use,” said
“Lattimore Black Morgan & Cain, PC (LBMC) remains an enthusiastic supporter of HITRUST, and we, along with our customers, are excited to see the continued maturation of the CSF,” said
To assist organizations in adopting and understanding the updates to the CSF, HITRUST will host a webcast on
The CSF is available through HITRUST Central (HITRUSTcentral.net) free of charge to healthcare organizations and their business associates. Also available in HITRUST Central with a Professional subscription is the CSF Assurance Toolkit, including the CSF Compliance Worksheet, which enables an organization to perform a compliance gap analysis against the requirements of the CSF. The toolkit is also being enhanced with the integration of the CMS ARS controls along with new features such as multi-system support and the ability to assign specific requirements to organizational personnel. To learn more about the HITRUST CSF, visit hitrustalliance.net/csf.
About HITRUST
All product and company names herein may be trademarks of their respective owners.
HITRUST
[email protected]
Source: HITRUST


Advisor News
- Your client wants to cash out an annuity. Here’s what to consider
- How student loan debt impacts 401(k) balances
- The ‘sandwich generation’ faces compounded barriers to retirement savings
- Benefit Costs Squeeze Schools, Driving Cuts, Tax Hikes And Difficult Tradeoffs
- Why client insurance needs could change even if their life doesn’t
More Advisor NewsAnnuity News
- AM Best to Discuss Its Views on Private Credit Surge and Risks at 2026 NAIC/NIPR Insurance Summit
- OID recovers $260M in life insurance benefits
- NUNN BILLS TO COMBAT PAYMENT SCAMS, CUT FINANCIAL RED TAPE PASS FINANCIAL SERVICES COMMITTEE
- SS&C Black Diamond Expands Annuities & Insurance Marketplace with New Insurance Capabilities and Carriers
- Regulators urged to sharply limit hypothetical data in annuity illustrations
More Annuity NewsHealth/Employee Benefits News
Life Insurance News