CyberShield Advisory

Free Cybersecurity Risk Assessment

Based on NIST CSF 2.0 & the HIPAA Security Rule

Let's get started

Enter these details, then begin your assessment.

Please fill in all three fields.

One quick question

This helps us show you only the questions relevant to your organization.

Does your organization create, receive, maintain, or transmit electronic Protected Health Information (ePHI)?

ePHI includes things like patient names, medical records, billing details, or any health information created, stored, or sent electronically (email, EHR systems, billing software, etc.).

Step 10 answered
🔒 Locked
--/--
Your band

Your results are ready!

Enter your work email to unlock your score and download the checklist.

Please enter a valid work email.

No spam. Unsubscribe anytime. Your info is never sold.

--/--
Your band

⭳ Download the Full Checklist (PDF)

Understanding Your Assessment Score

Your final score provides a quick snapshot of your organization's current cybersecurity posture.

0 – 10

Critical Risk

Significant cybersecurity and compliance gaps may expose your organization to ransomware, data breaches and regulatory penalties.

11 – 20

High Risk

Several foundational security controls are missing. Immediate improvements are strongly recommended.

21 – 30

Moderate Risk

Many essential safeguards are already implemented, but additional improvements will strengthen your security posture.

31+

Lower Risk

Your organization has a strong cybersecurity foundation with only minor improvements recommended.

Note: scoring bands are based on your total number of questions, which varies slightly depending on whether the HIPAA section applies to your organization.

Ready for a Comprehensive Cybersecurity Assessment?

This checklist is intended as a high-level self-assessment. A comprehensive Cybershield Advisory assessment goes further by:

  • Mapping findings to the National Institute of Standards and Technology Cybersecurity Framework (CSF) 2.0 and the U.S. Department of Health and Human Services HIPAA Security Rule
  • Reviewing technical evidence and configurations
  • Prioritizing risks based on business impact
  • Delivering a detailed remediation roadmap
  • Providing executive-ready reporting for leadership

Need a Professional Security Assessment?

Schedule a comprehensive cybersecurity assessment with CyberShield Advisory and receive a detailed risk report with actionable recommendations.