Templates
Information Security
HITRUST Compliance Checklist
📋

HITRUST Compliance Checklist

1
Identify all systems and data that handle Protected Health Information (PHI)
2
Evaluate existing security controls and practices
3
Identify gaps in compliance
4
Create a risk management plan
5
Implement security controls and practices to address identified gaps
6
Train employees on HIPAA/HITRUST requirements and company policies
7
Conduct regular system and security audits
8
Establish a procedure for responding to security incidents
9
Maintain documentation of all compliance efforts
10
Approval: Audit Results Review
11
Validate HITRUST compliance with an independent assessment
12
Remediate any issues found in the independent assessment
13
Approval: Remediation Plan
14
Submit documentation and assessment results to HITRUST
15
Rescan and reassess compliance annually
16
Approval: Annual Compliance Review
17
Act upon feedback and recommendations from HITRUST