Select Page

CMMC and Health Care Organizations: Applicability, Risk, and Readiness

AHLA’s Speaking of Health Law | Sponsored by Clearwater

The Cybersecurity Maturity Model Certification (CMMC) is gaining attention. Although CMMC originated within the Department of Defense, its reach is expanding into the health care ecosystem, often in ways that health care organizations don’t fully anticipate. Dave Bailey, Vice President of Consulting Solutions & Strategy, Clearwater, speaks with Jenifer McIntosh, Of Counsel, Stinson LLP, about when CMMC applies, how it differs from familiar health care compliance frameworks, and why third-party and supply chain risk are central to CMMC readiness. They also explore where health care organizations may be underestimating their CMMC exposure and what practical steps they can take to prepare.

    👉 Listen Now

    About the Guests

    Dave Bailey
    Vice President, Consulting Solutions and Strategy, Clearwater

    Jennifer McIntosh
    Of Counsel, Stinson LLP

    Podcast originally hosted and published by AHLA

    About Clearwater & Redspin

    Clearwater is the leading provider of cybersecurity and compliance solutions for the healthcare industry, helping organizations align privacy, security, and business objectives to achieve resilience and trust.

    Redspin, a division of Clearwater specializes in security assessments and is an authorized CMMC Third Party Assessor Organization (C3PAO). Together, Clearwater and Redspin support healthcare and related organizations through CMMC readiness, control validation, and formal certification, bringing practical experience in both preparing for and executing against rigorous federal requirements.

    Related Blogs

    No results found.