SOC 2 and HITRUST

Why SOC 2 + HITRUST?

Organizations are feeling increasing pressure to demonstrate these system and data characteristics.

customers.png
Customers

partners.png
Business partners

lenders.png
Lenders

investors.png
Investors

Compliance should be a critical part of your growth plan – don’t let it become a barrier to revenue, access to funding or regulatory approval.

What is SOC 2?

  • Addresses system security, availability, processing integrity, confidentiality and/or privacy.
  • Presents evidence that your controls are in place, meet appropriate pre-defined criteria, and controls are operating and effective.

What is HITRUST?

  • Security and privacy framework; organizations can become compliant with and certified.
  • Used by organizations that create, access, store and exchange sensitive data.

Benefits of combining SOC 2 and HITRUST assessment

  • Time efficiencies and cost reductions through synergies in the assessments
  • Leverage HITRUST CSF controls in SOC 2 engagements
  • Increase transparency and strengthen communication to stakeholders through a single deliverable.

Your Team for SOC Guidance and SOC Audits

Let’s start a conversation. Our team’s expertise and collaboration is helping business leaders and organizations navigate regulatory compliance - from startups to Fortune 100 companies in a variety of industries. Contact us to learn more.

Siegrist-Kate-ab.jpg Bodner-Bill-ab.jpg Redman-James-banner_AB.jpg Fowler-Anna-banner_AB.jpg

Kate Siegrist
Partner

Kate Siegrist is a Partner with over 20 years of combined experience advising CEOs, CISOs and CIOs. She helps her clients navigate highly regulated industries to ensure business opportunities are not missed due to compliance burden.

Bill Bodner
Director

Bill Bodner is Director providing guidance for businesses for Statutory Audits, ISO, NIST, SOC 1/2/3, HIPAA Security and Privacy Rules, HITRUST.

James Redman
Director

James Redman is Director who specializes in readiness consulting and assessments related to a variety of IT compliance standards, including, but not limited to, NIST, SOC 1/2/3, HITRUST, PCI, HIPAA and Sarbanes-Oxley.

Ana Fowler
Manager

Ann Fowler is an Manager providing cybersecurity and consulting services focused on HIPAA compliance, risk assessments, and incident response.