Based on NIST CSF 2.0 & the HIPAA Security Rule
Enter these details, then begin your assessment.
This helps us show you only the questions relevant to your organization.
Does your organization create, receive, maintain, or transmit electronic Protected Health Information (ePHI)?
ePHI includes things like patient names, medical records, billing details, or any health information created, stored, or sent electronically (email, EHR systems, billing software, etc.).
Enter your work email to unlock your score and download the checklist.
Your final score provides a quick snapshot of your organization's current cybersecurity posture.
Significant cybersecurity and compliance gaps may expose your organization to ransomware, data breaches and regulatory penalties.
Several foundational security controls are missing. Immediate improvements are strongly recommended.
Many essential safeguards are already implemented, but additional improvements will strengthen your security posture.
Your organization has a strong cybersecurity foundation with only minor improvements recommended.
Note: scoring bands are based on your total number of questions, which varies slightly depending on whether the HIPAA section applies to your organization.
This checklist is intended as a high-level self-assessment. A comprehensive Cybershield Advisory assessment goes further by:
Schedule a comprehensive cybersecurity assessment with CyberShield Advisory and receive a detailed risk report with actionable recommendations.