search
Search...
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Illustration of a building with two windows with three individuals inside with thought bubbles of locks.
PCI Council Security Awareness Guidance
PCI

Teach employees to care about the security at your organization, and you will avoid a lot of potential heartache.

'5 Healthcare Security Lessons From the Field' with a big yellow number 5.
HIPAA Security Tip: Understand Your Data Flow
HIPAA

Fully understanding where PHI resides takes a lot of interdepartmental communication.

Illustration of an animal on a black background.
Nature's 7 Hacker Defense Mechanisms
Forensics

Find out how to use nature's defense mechanisms to protect your business.

Illustration of a road with road sign that says 'Welcome to PCI DSS 3.0' on the side of the road.
PCI DSS 3.0: 10 Commonly Asked Questions
PCI Trends

Because PCI 3.0 introduces more SAQs, SecurityMetrics offers combination SAQs when more than one SAQ applies.

Illustration of robber stealing technology.
Is Your Business Prepared for the Physical Security Threat?
Data Security

Train employees to stop and question anyone who does not work for the company, especially if the person tries to enter back office or network areas.

Abstract illustration of four people with paper bags over their heads.
Healthcare's Password Security is Embarrassing
HIPAA

Make the simple change to require unique usernames and passwords on the network level for each one of your staff members.

Image of a poodle with pink lettering.
SSL 3.0: POODLE Vulnerability Update
Data Security

If you have any questions, please contact SecurityMetrics support, 801.705.5700.

Yellow 'OCR Audit Survival Kit' illustration.
My OCR Audit, and How I Survived: a HIPAA Audit Checklist
HIPAA Audit

Doreen Espinoza answers some tough questions about her audit with the HHS.

Illustration of multiple grey locks.
Securing Keys and Certificates: A PCI Auditor's Perspective
PCI Audit

Businesses must ensure their key servers, certificate authorities, open SSL libraries, and server updates are secure.

Illustration of waiting in a waiting room with different technology devices.
Could Your Waiting Room Wi-Fi Be Sabotaged?
HIPAA

The problem is, many offices don’t have their Wi-Fi set up correctly, turning that free patient asset into a liability.

Illustration of a credit card with the name 'Mrs. Brown.'
Plug-and-Play POS: Can It Ever Be Secure?
Data Security

The plug-and-play mindset is ruining Point-of-Sale (POS) security.

Green illustration of a gavel and a lock on white background.
Your HIPAA Privacy Requirements Might Not Be Completed
HIPAA

Understand HIPAA Privacy and Security Rules, and how they apply to your organization.

Illustration of a robber wearing red clothing holding a lock on a fence.
Seven Tips to Avoid Costly Data Breaches
Forensics

Neglecting the simple security measures is what allows hackers into a business network and allows them to steal your sensitive information.

5 Most Bizarre HIPAA Breaches with red background.
5 Most Bizarre HIPAA Violation Cases
HIPAA

Choose your vendors wisely and make sure you have a Business Associate Agreement (BAA) in place.

Gray background with 'Shellshock' in yellow letters.
Shellshock: Be Wary, But Don't Panic
Data Security

Shellshock, also known as the Bash Bug, is a software vulnerability that could make your systems vulnerable.

Security Q: Security Fundamentals
PCI Compliance Scanning Requirements
Vulnerability Scanning

Learn about PCI compliance scanning requirements.

Illustration of clipboard with symbol.
5 Minimum Necessary HIPAA PHI Tips
HIPAA

The HIPAA minimum necessary rule helps covered entities manage healthcare information by requiring them to limit access to and disclosure of PHI.

Security Q Episode
Cross-Site Scripting, Explained
Data Security

Cross-site scripting allows bad guys to embed malicious code into a legitimate website to ultimately steal user data.

Illustration holding a red file with signature at the bottom.
You Can't Hide Behind a HIPAA Business Associate Agreement
HIPAA

Covered entities don’t have the option to hide behind BAA if a Health and Human Services (HHS) auditor comes knocking.

What To Do If Your Business Is Hacked
Forensics

Learn what to do when you are hacked (or suspect you’ve been hacked).

Text saying 'Password' with the A and O as pizza.
Security Blunder Case Studies
Forensics

Businesses around the world call us in a panic, needing to decipher what went wrong with their security.

Illustration showing comparison between silhouettes of a medical professional and someone working at a computer.
Role Based Access Control for HIPAA Security
HIPAA

Healthcare providers are responsible to make sure those with access to ePHI require that access to adequately do their jobs.

Illustration of red folder filled with white cards on black background.
Unencrypted Data: A Security Plague
Data Discovery

Unencrypted payment card data is relatively simple for a hacker to detect, scoop up, and steal.

Illustration of a red hospital building with a medical professional and patient inside.
HHS HIPAA Audit Requirements
HIPAA Audit

Don’t forget to document every HIPAA compliance effort as evidence to present to the OCR if your entity is chosen for auditing.