HIPAA · Administrative safeguards
§164.308(a)(1) Security management process
Implement policies to prevent, detect, contain and correct security violations, including a risk analysis and risk management.
Mapped across 7 provisions
Equivalent and related requirements in other frameworks and regulations.
- NIST 800-53EquivalentOfficial mapping
Source: HIPAA Security Rule / NIST SP 800-53 Rev. 5
RA-3 Risk assessmentÉvaluation et gestion des risques
- CCPA / CPRARelatedCurated§1798.150 Duty to implement reasonable security
Évaluation et gestion des risques
- DORARelatedCuratedArt. 6 ICT risk management framework
Évaluation et gestion des risques
- LGPDRelatedCuratedArt. 46 Security measures
Évaluation et gestion des risques
- NIS2RelatedCuratedArt. 21(2)(a) Risk analysis and information system security policies
Évaluation et gestion des risques
- NIST 800-171RelatedCurated3.11.1 Periodically assess risk
Évaluation et gestion des risques
- NIST CSF 2.0RelatedCuratedID.RA-01 Vulnerabilities identified and recorded
Évaluation et gestion des risques