Security News > 2019 > September > HITRUST issues guidance for relying on work of internal audit departments in CSF assessments

HITRUST issues guidance for relying on work of internal audit departments  in CSF assessments
2019-09-16 02:15

HITRUST, a leading data protection standards development and certification organization, released updated guidance for placing reliance on the results of previously performed audits, assessments, and inspections. These policy and methodology updates create opportunities for greater assessment efficiency and customer cost savings. HITRUST has historically afforded two opportunities for External Assessors (formerly referred to as HITRUST CSF Assessors) to rely on the results of previously performed control testing, one being Inheritance of the results of other … More → The post HITRUST issues guidance for relying on work of internal audit departments in CSF assessments appeared first on Help Net Security.


News URL

http://feedproxy.google.com/~r/HelpNetSecurity/~3/jttqHjwino4/