The HITRUST Standards and Regulations Cross-Reference Matrix is a resource for organizations to understand how implementation of the HITRUST Information Security Implementation Manual relates to and addresses other standards, as well as legal, contractual and regulatory requirements. Organizations who are already certified to or have a mandate for other standards such as ISO 27001 can easily integrate this with their current framework. "I see the HITRUST CSF as an opportunity to bring some structure and consistency to the way information security is implemented in the U.S. healthcare industry," said John DiMaria, Product Manager -- Business Continuity and ITSM, BSI Management Systems of America. "Since the HITRUST Information Security Implementation Manual is prescriptive, it removes the multiple interpretations that have caused issues with inconsistent implementations and audits in the past," DiMaria added.
"As an information security professional in the healthcare industry, I have struggled to identify a practical strategy and approach that appropriately addresses risk, and which can be implemented and accepted by management, finance, internal and external auditors, and trading partners. The HITRUST CSF provides a consistent framework by which a healthcare organization can address security challenges," said Michael Frederick, Director -- Office of Information Security and Chief Information Security Officer, Baylor Health Care System.
"The development of the HITRUST CSF takes the healthcare industry a
giant step forward in
'/>"/>
| SOURCE Health Information Trust Alliance Copyright©2008 PR Newswire. All rights reserved |