Free Tool · Cybersecurity Advisory Group

Risk Analysis or IT Report?

12-Point Practice Review

Is your risk analysis actually a risk analysis?

A vulnerability scan, penetration test, or IT report is genuinely useful evidence. It just isn't the whole picture on its own. Answer 12 short questions about the document your practice calls a risk analysis and see where it stands.

This is here to help you think, not to grade you. It doesn't determine or certify HIPAA compliance. Takes about 3 minutes.
Your Results

Practice Review Summary

0 Clear
0 Needs follow-up
0 Not sure

Want to talk through your results?

I'll walk through what stood out and what I'd look at first, at no cost.

Discuss my results with Melissa →
Educational resource only. Not legal advice or a determination of HIPAA compliance. — Cybersecurity Advisory Group