by Kim Singletary | Jun 3, 2026 | Blog
In HITRUST, illustrative procedures are not optional examples; they define exactly how assessors test your controls. Miss one evaluative element and your score can drop an entire tier. How Assessors Think and Why it Matters HITRUST scoring has two distinct layers that...
by Kim Singletary | May 20, 2026 | Blog
Why your high-rise lease may deserve a seat at your HITRUST r2 scoping table This post reflects the practitioner’s perspective on a scoping factor that reasonable people read differently. For authoritative guidance, consult HITRUST’s published scoping...
by Kim Singletary | May 13, 2026 | Blog
What Changed, What Assessors Will Scrutinize, and How Healthcare Organizations Should Respond HITRUST released CSF v11.8.0 on May 8, 2026, introducing targeted updates that will directly affect how healthcare organizations prepare for and defend e1, i1, and r2...
by Kim Singletary | Apr 29, 2026 | Blog
Published April 29, 2026 Anthropic’s Project Glasswing signals a structural shift in vulnerability discovery. AI models are finding and enabling the exploitation of software flaws faster than human teams can respond. Anthropic’s Project Glasswing signals an...
by Kim Singletary | Apr 24, 2026 | Blog
Published April 24, 2026 Microsoft has recently warned of an increase in real‑world cyberattacks abusing Microsoft Teams external chat to impersonate IT helpdesk personnel. In these incidents, attackers pose as trusted internal support staff and persuade users to...
by Lisa Munro | Apr 23, 2026 | Blog
HIPAA Security Rule Enforcement: Where Things Stand in 2026 Update · Jul 2026 HHS has pushed final action on the HIPAA Security Rule overhaul to at least July 2027 in its updated federal agenda, moving ahead separately with HIPAA Privacy Rule changes expected...