Michael T. Williams is a Senior Associate at Schellman, where he serves as a HITRUST Common Security Framework (CSF) certified assessor for a diverse array of client organizations. Prior to joining Schellman in February 2020, Michael was a Senior Consultant with a national audit firm where he delivered security assessment and advisory services in its Healthcare and Life Sciences practice for four years. Preceding this, Michael performed security remediation and information assurance work for several component agencies of the US government. Michael is thus well-versed in the Federal Information Security Management Act (FISMA) and Federal Risk and Authorization Management Program (FedRAMP) frameworks, as well as the HITRUST CSF and Health Insurance Portability and Accountability Act (HIPAA) Security, Privacy, and Breach Notification Rules.
Healthcare Assessments | HITRUST
By:
Michael Williams
April 23rd, 2024
For any organization committed to robust cybersecurity hygiene, due diligence isn’t just for your interior systems, operations, facilities, and people—it also requires vetting your service relationships with suppliers to ensure they’re also secure. This is something Microsoft clearly understands, given their rigorous Supplier Security & Privacy Assurance (SSPA) Program they require. And for said suppliers participating in the SSPA Program, there are benefits to further extending your security compliance through HITRUST certification.