The Health Insurance Portability and Accountability Act — US legislation including the Security Rule that governs the protection of electronic health information.
The Security Rule includes Administrative, Physical, and Technical safeguards. § 164.308(a)(8) requires periodic technical evaluation — commonly satisfied via penetration testing.
See our web application penetration testing, API security testing, network penetration testing, and cloud security audit services for how we test for and defend against this class of issue.
30-minute call with an OSCP-certified engineer. Tailored proposal in 24 hours.