This version integrates the department of defense dod cybersecurity maturity model cmmc version 1 0 standard into the hitrust csf and includes added language to the glossary to better clarify terms found in the framework.
Hitrust cyber security framework.
Hitrust in collaboration with private sector government technology and information privacy and security leaders has established the hitrust csf a certifiable framework that can be used by any organization that creates accesses stores or exchanges sensitive information.
Advance the implementation of the cybersecurity framework in the sector and provide a forum for discussion of cybersecurity issues related to risk management among a wide variety of hph sector stakeholders.
With hitrust v9 2 the common security framework csf continues to be a very powerful and useful security framework for any organization both inside and outside the healthcare industry.
As a result hitrust reviewed several cybersecurity related best practice frameworks including the sans 20 critical controls for cybersecurity.
Hitrust health information trust alliance cybersecurity framework addresses the various measures for enhancing security.
The hitrust csf is a scalable and extensive security framework used to efficiently manage the regulatory compliance and risk management of organizations.
Hitrust has launched a certification program for the nist cybersecurity framework that makes it easier for security teams to report on their implementation of the framework to upper management.
This publication was developed in consultation with this sg.
Rm sg members who assisted with the review of this guide include.
October 28 2014 the hitrust common security framework csf is an important tool that healthcare organizations of all sizes can use in their approach to regulatory compliance and risk.
Hitrust believes these changes are consistent with the letter and intent of the president s executive order on improving critical infrastructure cybersecurity which is to help raise the bar for security and privacy protection in the private sector and improve the nation s resilience to ever increasing cybersecurity threats.
The framework was developed to cater to the security issues organizations within the health industry face when managing it security.