All assessment domains are updated with additional requirements when the AI Security factor is selected.
The scoring of Requirement Statements is used to calculate the overall Domain score.
Pre-populated default maturity level scores cannot be changed across an assessment object.
For an r2 assessment, what is the minimum number of days an organization should wait before a new or updated Policy and/or Procedure can be reconsidered for testing?
On an r2 assessment, HITRUST requires evidence to be linked to all maturity levels that score above 25% for Policy and Procedure, and over 0% for Implementation, Measured, and Managed.
An organization has identified a number of components needed for an assessment. These components cover systems/applications for customers in the states of Massachusetts and Nevada. Assuming management wants corresponding regulatory factors to be included in their assessment, which regulatory factors would apply?
(Select all that apply)
When testing, can you sample across a population of ungrouped primary components within an assessment's scope?
Which of the following does HITRUST certify?
Which AI models can be evaluated using the A1 Security Assessment?
Organizations that process sensitive data face multiple challenges relating to information security and privacy.