Policies and Procedures and Documentation Requirements


4.21. Policies and Procedures (? 164.316(a))

Standard: Policies and procedures. Implement reasonable and appropriate policies and procedures to comply with the standards implementation specifications or other requirements of this subpart taking into account those factors specified in §?164.306(b)(2)(i) (ii) (iii) and (iv). This standard is not to be construed to permit or excuse an action that violates any other standard implementation specification or other requirements of this subpart. A covered entity or business associate may change its policies and procedures at any time provided that the changes are documented and are implemented in accordance with this subpart.


Click here to Start your FREE trial today!

Explainer video


What is a Cybersecurity Compliance Framework?

You don’t need to clutter your security and privacy programs with an ever-increasing number of tools as they become more sophisticated. The Lionfish platform offers a one-stop solution to track progress and monitor any framework, from custom-built ones to highly-specialized and in-demand top security and privacy frameworks and certifications.

With the Lionfish platform, every framework is supported with guided scoping, policies, controls, automated evidence collection, and continuous monitoring, ensuring efficient preparation for audits or attestation in minimal time.

The Lionfish platform is compatible with a wide range of security and privacy frameworks, including:

Click here to Start your FREE trial today!

Explainer video