FrameworkGlobal

HITRUST CSF

The HITRUST CSF is a comprehensive, threat-adaptive control framework harmonizing 60+ frameworks and standards, enabling tailored, risk-based cybersecurity assessments and certifications (e1, i1, r2), plus dedicated AI Security and AI Risk Management controls aligned with ISO/NIST.

Who it applies to

Organizations seeking to demonstrate, assess and certify their cybersecurity and information risk management practices, including third-party/vendor risk management, and organizations deploying AI systems that need to secure and certify them.

Read the official text