GRC Oversight
Glossary

HITRUST

A certifiable framework (the HITRUST CSF) widely used in healthcare that harmonizes controls from HIPAA, ISO 27001, NIST, and other sources.

HITRUST (Health Information Trust Alliance) publishes the HITRUST CSF, a certifiable framework that maps to HIPAA and dozens of other standards. It's frequently requested by healthcare payers and covered entities as a stronger assurance than a HIPAA self-attestation, though it requires an assessment through a HITRUST-authorized external assessor.

Looking for another term or the full list?