1 min read

HITRUST RightStart (BTS): Audit logging & monitoring

Paubox customers at a HITRUST RightStart social event

With the exception of Sundays, we've been pushing hard on HITRUST every day in 2019 to date. Yesterday was no exception: We got into the office early again to crank on HITRUST before the busy Monday meetings began. This post is what it's like behind the scenes (BTS) for a startup participating in the HITRUST RightStart program.

 

Audit Logging & Monitoring

I spent most of my HITRUST activity yesterday in Section 12, Audit Logging & Monitoring. The section has 28 controls within it. Here's what I worked on within Audit Logging & Monitoring:
  • Audit records (Records in scope vs records not in scope)
  • Audit logging of privileged user activity
  • Audit log retention policy
  • Audit log Availability

Paubox Monday (BTS)

Team members in a meeting discussion

It was a welcomed challenge yesterday to hit our self-imposed HITRUST quota requirements. For starters, we welcomed our new Director of Customer Success, Peter Kirsheman, at 9am. Welcome Pete! Everyone loved the energy and enthusiasm Pete brought on day one. Then we held our weekly staff meeting at 10am. By 11:23am, I arrvied early at Bun Mee on Market Street for an 11:30am lunch with Scott Regenstein from Optum Technology.

Person drawing a pyramid diagram on a whiteboard labeled with business strategy elements

Discussing the 2019 Paubox V2MOM with Ryan Williams (SalesCollider) I arrived back in the office by 12:45pm and put in another hour on HITRUST before my monthly 2pm SaaS sales mentorship meeting with Ryan Williams of SalesCollider. Mind you, I'm constantly (re)fueling on caffeine at each opportunity throughout the day. By 4:30pm, we met our daily HITRUST quota on completed controls. Tyler "Commish" Dornenburg talked me into joining ClassPass so we left the office before 5pm. About an hour later, I did my first Kettlebell class at Swing Kettlebell School. My quads promptly got thrashed. Back in the office again early this morning, gait lurching, ready to keep cranking on HITRUST.

 

HITRUST

Founded in 2007, HITRUST Alliance is a not-for-profit organization whose mission is to champion programs that safeguard sensitive information and manage information risk for organizations across all industries and throughout the third-party supply chain. In collaboration with privacy, information security and risk management leaders from both the public and private sectors, HITRUST develops, maintains and provides broad access to its widely adopted common risk and compliance management and de-identification frameworks; related assessment and assurance methodologies; and initiatives advancing cyber sharing, analysis, and resilience.

 

Try Paubox Email Suite for FREE today.
Paubox employees at a casual office gathering with coffee and drinks

HITRUST RightStart: Configuration management

HITRUST Fatigue set in last night at the office as we worked on punching out our HITRUST assessment. Tyler "Commish" Dornenburg and I put in a robust...

Read More
Two people at a coffee shop counter with laptops

HITRUST RightStart (BTS): Audit monitoring and IDS

At the risk of redundancy, Tyler "Commish" Dornenburg and I got in the office early again today to solely put in work on HITRUST. Working six days a...

Read More
People at a casual indoor gathering

HITRUST (BTS): Password management & network protection

As part of our journey on the HITRUST RightStart program, we once again arrived in the office early to push on HITRUST certification. Today we dove...

Read More

Subscribe to Paubox Weekly

Every Friday we bring you the most important news from Paubox. Our aim is to make you smarter, faster.