Compass IT Compliance Blog

SSAE 16 SOC 2 Reports: How Are They Different From Other SOC Reports?

SSAE16_Wordcloud.jpg

Fact: More and more organizations are outsourcing business functions to third party providers so they can concentrate on their core business functions, reduce headcount, and ultimately save money. A great example of this is what is called Business Process Outsourcing (BPO) where compa …

Read Story

3 Reasons Why You Need a HIPAA Risk Assessment Right Now

stockvault-stethoscope127462.jpg

HIPAA is in the news all the time. Whether it is the tragedy that struck Orlando last weekend, the news of the HIPAA Audits coming, or a new healthcare breach being reported, we are constantly bombarded with why HIPAA compliance is critical. As with any organization, protecting and sa …

Read Story

The State of Security: Healthcare Security and a HIPAA Audit

stockvault-stethoscope127462.jpg

Healthcare Security, particularly IT Security, is dominating the news cycles recently, for a number of reasons. The primary reason, however, is that the healthcare sector continues to be a prime target for hackers, organized crime entities, and nation states due to the significant amo …

Read Story

Why You Need an Incident Response Plan Now!

A group of five business professionals celebrate

Two weeks ago, Compass IT Compliance had the opportunity to attend and present at the Card Not Present Conference in Orlando. This conference focuses on working with organizations that accept credit and debit cards either online, over the phone, or any other way where the credit or de …

Read Story

Critical Security Control 19: The Incident Response Plan

A flow chart showing a cycle

In the world of Information Security, we have all heard of the Center for Internet Security Top 20 Critical Security Controls (CSC's) which is formerly known as the SANS Top 20. This is a list of the 20 IT Security Controls that an organization can implement to strengthen their IT Sec …

Read Story

Don't Let Ransomware Take Your Money: Use an Incident Response Plan!

Don't Let Ransomware Take Your Money: Use an Incident Response Plan!

I feel like all I have been writing about for the past month has been Ransomware. Obviously that is due to the fact that Ransomware is in the news all the time, every day, with new trends that are happening, new "victims" that are identified, and how these organized crime entities kee …

Read Story

Subscribe by email