Aug. 2, 2022, 3:30 p.m. | /u/squints33

cybersecurity www.reddit.com

My org is in the process of standing up an InfoSec program. We are a healthcare provider, have been around for several years, are a fairly decent size (~3500 people), and leverage third parties for nearly all of our technical and application needs.

Requirements have come down from the top to become HITRUST certified, which we are actively working towards. I am, however, having a difficult time identifying a framework to standardize on.

My thought process is utilizing NIST RMF …

cybersecurity framework information information security security security framework

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

EY GDS Internship Program - SAP, Cyber, IT Consultant or Finance Talents with German language

@ EY | Wrocław, DS, PL, 50-086

Security Architect - 100% Remote (REF1604S)

@ Citizant | Chantilly, VA, United States

Network Security Engineer - Firewall admin (f/m/d)

@ Deutsche Börse | Prague, CZ

Junior Cyber Solutions Consultant

@ Dionach | Glasgow, Scotland, United Kingdom

Senior Software Engineer (Cryptography), Bitkey

@ Block | New York City, United States