Accessibility Statement Skip Navigation
  • Resources
  • Blog
  • Journalists
  • Webcasts
  • Data Privacy
  • Français
  • my CNW 
    • Login
    • Register
  • Client Login 
    • Online Member Centre
    • Next Gen Communications Cloud
    • Cision Communications Cloud®
  • Sign Up
  • Send a Release
Return to PR Newswire homepage
  • News
  • Products
  • Contact
When typing in this field, a list of search results will appear and be automatically updated as you type.

Searching for your content...

No results found. Please change your search terms and try again.
Advanced Search
  • News in Focus
      • Browse News Releases

      • All News Releases
      • All Public Company
      • News Releases Overview

      • Multimedia Gallery

      • All Multimedia
      • All Photos
      • All Videos
      • Multimedia Gallery Overview

      • Trending Topics

      • All Trending Topics
  • Business
      • Auto & Transportation

      • All Automotive & Transportation
      • Aerospace, Defense
      • Air Freight
      • Airlines & Aviation
      • Automotive
      • Maritime & Shipbuilding
      • Railroads and Intermodal Transportation
      • Supply Chain/Logistics
      • Transportation, Trucking & Railroad
      • Travel
      • Trucking and Road Transportation
      • Auto & Transportation Overview

      • View All Auto & Transportation

      • Business Technology

      • All Business Technology
      • Blockchain
      • Broadcast Tech
      • Computer & Electronics
      • Computer Hardware
      • Computer Software
      • Data Analytics
      • Electronic Commerce
      • Electronic Components
      • Electronic Design Automation
      • Financial Technology
      • High Tech Security
      • Internet Technology
      • Nanotechnology
      • Networks
      • Peripherals
      • Semiconductors
      • Business Technology Overview

      • View All Business Technology

      • Entertain­ment & Media

      • All Entertain­ment & Media
      • Advertising
      • Art
      • Books
      • Entertainment
      • Film and Motion Picture
      • Magazines
      • Music
      • Publishing & Information Services
      • Radio & Podcast
      • Television
      • Entertain­ment & Media Overview

      • View All Entertain­ment & Media

      • Financial Services & Investing

      • All Financial Services & Investing
      • Accounting News & Issues
      • Acquisitions, Mergers and Takeovers
      • Banking & Financial Services
      • Bankruptcy
      • Bond & Stock Ratings
      • Conference Call Announcements
      • Contracts
      • Cryptocurrency
      • Dividends
      • Earnings
      • Earnings Forecasts & Projections
      • Financing Agreements
      • Insurance
      • Investments Opinions
      • Joint Ventures
      • Mutual Funds
      • Private Placement
      • Real Estate
      • Restructuring & Recapitalization
      • Sales Reports
      • Shareholder Activism
      • Shareholder Meetings
      • Stock Offering
      • Stock Split
      • Venture Capital
      • Financial Services & Investing Overview

      • View All Financial Services & Investing

      • General Business

      • All General Business
      • Awards
      • Commercial Real Estate
      • Corporate Expansion
      • Earnings
      • Environmental, Social and Governance (ESG)
      • Human Resource & Workforce Management
      • Licensing
      • New Products & Services
      • Obituaries
      • Outsourcing Businesses
      • Personnel Announcements
      • Real Estate Transactions
      • Residential Real Estate
      • Small Business Services
      • Socially Responsible Investing
      • Surveys, Polls and Research
      • Trade Show News
      • General Business Overview

      • View All General Business

  • Science & Tech
      • Consumer Technology

      • All Consumer Technology
      • Artificial Intelligence
      • Blockchain
      • Cloud Computing/Internet of Things
      • Computer Electronics
      • Computer Hardware
      • Computer Software
      • Consumer Electronics
      • Cryptocurrency
      • Data Analytics
      • Electronic Commerce
      • Electronic Gaming
      • Financial Technology
      • Mobile Entertainment
      • Multimedia & Internet
      • Peripherals
      • Social Media
      • STEM (Science, Tech, Engineering, Math)
      • Supply Chain/Logistics
      • Wireless Communications
      • Consumer Technology Overview

      • View All Consumer Technology

      • Energy & Natural Resources

      • All Energy
      • Alternative Energies
      • Chemical
      • Electrical Utilities
      • Gas
      • General Manufacturing
      • Mining
      • Mining & Metals
      • Oil & Energy
      • Oil and Gas Discoveries
      • Utilities
      • Water Utilities
      • Energy & Natural Resources Overview

      • View All Energy & Natural Resources

      • Environ­ment

      • All Environ­ment
      • Conservation & Recycling
      • Environmental Issues
      • Environmental Policy
      • Environmental Products & Services
      • Green Technology
      • Natural Disasters
      • Environ­ment Overview

      • View All Environ­ment

      • Heavy Industry & Manufacturing

      • All Heavy Industry & Manufacturing
      • Aerospace & Defense
      • Agriculture
      • Chemical
      • Construction & Building
      • General Manufacturing
      • HVAC (Heating, Ventilation and Air-Conditioning)
      • Machinery
      • Machine Tools, Metalworking and Metallurgy
      • Mining
      • Mining & Metals
      • Paper, Forest Products & Containers
      • Precious Metals
      • Textiles
      • Tobacco
      • Heavy Industry & Manufacturing Overview

      • View All Heavy Industry & Manufacturing

      • Telecomm­unications

      • All Telecomm­unications
      • Carriers and Services
      • Mobile Entertainment
      • Networks
      • Peripherals
      • Telecommunications Equipment
      • Telecommunications Industry
      • VoIP (Voice over Internet Protocol)
      • Wireless Communications
      • Telecomm­unications Overview

      • View All Telecomm­unications

  • Lifestyle & Health
      • Consumer Products & Retail

      • All Consumer Products & Retail
      • Animals & Pets
      • Beers, Wines and Spirits
      • Beverages
      • Bridal Services
      • Cannabis
      • Cosmetics and Personal Care
      • Fashion
      • Food & Beverages
      • Furniture and Furnishings
      • Home Improvement
      • Household, Consumer & Cosmetics
      • Household Products
      • Jewelry
      • Non-Alcoholic Beverages
      • Office Products
      • Organic Food
      • Product Recalls
      • Restaurants
      • Retail
      • Supermarkets
      • Toys
      • Consumer Products & Retail Overview

      • View All Consumer Products & Retail

      • Entertain­ment & Media

      • All Entertain­ment & Media
      • Advertising
      • Art
      • Books
      • Entertainment
      • Film and Motion Picture
      • Magazines
      • Music
      • Publishing & Information Services
      • Radio & Podcast
      • Television
      • Entertain­ment & Media Overview

      • View All Entertain­ment & Media

      • Health

      • All Health
      • Biometrics
      • Biotechnology
      • Clinical Trials & Medical Discoveries
      • Dentistry
      • FDA Approval
      • Fitness/Wellness
      • Health Care & Hospitals
      • Health Insurance
      • Infection Control
      • International Medical Approval
      • Medical Equipment
      • Medical Pharmaceuticals
      • Mental Health
      • Pharmaceuticals
      • Supplementary Medicine
      • Health Overview

      • View All Health

      • Sports

      • All Sports
      • General Sports
      • Outdoors, Camping & Hiking
      • Sporting Events
      • Sports Equipment & Accessories
      • Sports Overview

      • View All Sports

      • Travel

      • All Travel
      • Amusement Parks and Tourist Attractions
      • Gambling & Casinos
      • Hotels and Resorts
      • Leisure & Tourism
      • Outdoors, Camping & Hiking
      • Passenger Aviation
      • Travel Industry
      • Travel Overview

      • View All Travel

  • Policy & Public Interest
      • Policy & Public Interest

      • All Policy & Public Interest
      • Advocacy Group Opinion
      • Animal Welfare
      • Canadian Federal Government
      • Canadian Municipal Government
      • Canadian Provincial Government
      • Corporate Social Responsibility
      • Domestic Policy
      • Economic News, Trends, Analysis
      • Education
      • Environmental
      • European Government
      • FDA Approval
      • Federal and State Legislation
      • Federal Executive Branch & Agency
      • Foreign Policy & International Affairs
      • Homeland Security
      • Labor & Union
      • Legal Issues
      • Natural Disasters
      • Not For Profit
      • Patent Law
      • Public Safety
      • Trade Policy
      • Policy & Public Interest Overview

      • View All Policy & Public Interest

  • People & Culture
      • People & Culture

      • All People & Culture
      • Aboriginal, First Nations & Native American
      • African American
      • Asian American
      • Children
      • Diversity, Equity & Inclusion
      • Hispanic
      • Lesbian, Gay & Bisexual
      • Men's Interest
      • People with Disabilities
      • Religion
      • Senior Citizens
      • Veterans
      • Women
      • People & Culture Overview

      • View All People & Culture

  • Advanced Search
  • Overview
  • Cision Communications Cloud®
  • Monitoring
  • Distribution
  • Multimedia
  • Guaranteed Paid Placement
  • AI Tools
  • IR
  • Become a Client
  • Request a Demo
  • Editorial Bureaus
  • Partnerships
  • General Enquiries
  • Media
  • Worldwide Offices
  • Hamburger menu
  • Cision Canada
  • Send a Release
  • FR
    • Phone

    • 877-269-7890 from 8 AM - 10 PM ET

    • ALL CONTACT INFO
    • Contact Cision

      877-269-7890
      from 8 AM - 10 PM ET

  • Send a Release
  • Sign Up
  • Resources
  • Blog
  • Journalists
  • Webcasts
  • GDPR
  • News in Focus
    • Browse All News
    • Multimedia Gallery
    • Trending Topics
  • Business
    • Auto & Transportation
    • Business Technology
    • Entertain­ment & Media
    • Financial Services & Investing
    • General Business
  • Science & Tech
    • Consumer Technology
    • Energy & Natural Resources
    • Environ­ment
    • Heavy Industry & Manufacturing
    • Telecomm­unications
  • Lifestyle & Health
    • Consumer Products & Retail
    • Entertain­ment & Media
    • Health
    • Sports
    • Travel
  • Policy & Public Interest
    • Policy & Public Interest
  • People & Culture
    • People & Culture
  • Send a Release
  • Sign Up
  • Resources
  • Blog
  • Journalists
  • Webcasts
  • GDPR
  • Overview
  • Cision Communications Cloud®
  • Monitoring
  • Distribution
  • Multimedia
  • Guaranteed Paid Placement
  • AI Tools
  • IR
  • Send a Release
  • Sign Up
  • Resources
  • Blog
  • Journalists
  • Webcasts
  • GDPR
  • Become a Client
  • Request a Demo
  • Editorial Bureaus
  • Partnerships
  • General Enquiries
  • Media
  • Worldwide Offices
  • Send a Release
  • Sign Up
  • Resources
  • Blog
  • Journalists
  • Webcasts
  • GDPR

HITRUST Launches AI Security Assessment with Certification Setting Benchmark for AI Security Assurance Français

HITRUST Launches AI Security Assessment with Certification Setting Benchmark for AI Security Assurance

News provided by

HITRUST Services Corp.

Nov 19, 2024, 08:00 ET

Share this article

Share toX

Share this article

Share toX

Addresses Market Need to Comprehensively Secure AI Deployments and to Demonstrate Security to Customers and Stakeholders

FRISCO, Texas, Nov. 19, 2024 /CNW/ -- HITRUST, a leader in information security assurance for risk and compliance management, today announced the general availability of the HITRUST AI Security Assessment with Certification for AI platforms and deployed systems. This offering, developed in collaboration with leading AI industry vendors and their adopters, leverages HITRUST's trusted assurance approach paired with a relevant and prescriptive set of controls to secure AI technologies and tackle the unique risks and threats AI systems face.

Continue Reading

Responding to Industry's Need for Trustworthy AI Security

Through a HITRUST AI certification, organizations can confidently demonstrate their security posture to stakeholders.

Post this

AI is transforming industries while introducing significant security risks that existing frameworks fail to adequately address. As organizations struggle to understand their AI system risks and security requirements, their customers, business leaders, risk managers, and regulators are seeking assurances that these systems and the sensitive information they contain are secure and trustworthy. Existing Information security standards and assurance programs do not adapt well to AI-specific risks and threats, while emergent AI frameworks and standards are lacking the prescriptiveness and assurance required for third parties to rely upon.

In response, HITRUST has delivered the HITRUST AI Security Assessment with Certification, ensuring that organizations can secure their AI systems comprehensively and demonstrate risk management, security and trustworthiness with confidence.

About the HITRUST AI Security Assessment with Certification

The HITRUST AI Security Assessment with Certification addresses the unique risks of AI systems by establishing a comprehensive control requirement targeting AI-specific security risks and threats. Paired with HITRUST's proven, rigorous assurance process, it ensures control implementation to sufficient strength and maturity to effectively mitigate risk, the resultant HITRUST certification provides AI platforms and deployers with a highly trusted means to communicate their security posture to customers, users, and other stakeholders.

"Unlike other AI assurance programs that lack sufficient specificity for mitigating cybersecurity and information risk, the HITRUST program is dedicated to addressing these needs in AI platforms and deployed systems," said Robert Booker, HITRUST Chief Strategy Officer. "Through a HITRUST AI certification, organizations can confidently demonstrate their security posture to stakeholders, establishing trust and credibility as they adopt and deploy AI technologies."

The AI controls were designed and developed by the HITRUST Standards Development, Innovation, and Research Teams in consultation with multiple AI industry working groups. These groups consist of leading providers of cloud and AI platforms, tool and security solution providers, enterprises, and industry visionaries. The development process leveraged threat research and analysis, integrating the HITRUST CSF security framework with the HITRUST Cyber Threat Adaptive (patent pending) controls evaluation engine, the HITRUST Standards Development Engine, and an open RFC process for industry input and feedback. The result is the industry's first certifiable, comprehensive, prescriptive, and practical control specification. It is aligned with and supportive of the AI security elements in ISO, NIST, and OWASP standards and publications, as well as the 2023 Executive Order on the Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence and the Department of Homeland Security's Roles and Responsibilities Framework for Artificial Intelligence in Critical Infrastructure released in November 2024.

In addition, HITRUST delivers the industry's most reliable assurances through a rigorous assessment and certification methodology. This includes Specific Definitions for Measurement, Testing, and Validation, Third-Party External Assessment, and Centralized HITRUST Review, Quality Checks, Scoring, Reporting, and Certification award.

HITRUST's certification process ensures that the right controls are implemented with sufficient strength, maturity, and completeness to mitigate risks effectively, providing organizations with either a 1-year or 2-year certification period, depending on the assessment selected.

Collectively, HITRUST has assembled all the necessary components to make strong, trusted AI security practical and efficient today. This includes the company's assessment SaaS platform, MyCSF, to manage and automate the assessment and certification process, and an electronic result distribution (RDS) to efficiently and accurately share results with relying parties. Additionally, the HITRUST AI Assessments leverages Inherited Security Controls, allowing validated controls from AI providers to be seamlessly relied upon, reducing the effort, cost, and time during the assessment process.

Who This Is For

The HITRUST AI Security Assessment and Certification is specifically designed for the creators and providers of AI systems and platforms, as well as for those building and deploying applications that utilize these AI subsystems.

The key stakeholders who should choose this solution include:

  1. Security and Risk Management Teams: Use HITRUST as a blueprint for securing deployed AI systems and as a proof point to demonstrate to stakeholders that these systems are secure.

  2. Sales, Marketing, and Product Heads: Leverage HITRUST certification to assure customers and prospects that AI-powered products and services are secure, thereby removing friction and enabling adoption.

  3. Third-Party Risk Management (TPRM) Programs: Ensure that vendors employing AI are properly securing it to manage vendor security risk effectively.

  4. Boards, Owners, CEOs, and Executives: Gain confidence that the AI systems being used and developed are properly secured, with independent proof of security.

  5. Cyber-Insurance Industry: Use HITRUST as a reliable, repeatable instrument to address AI risks and understand the actual residual risks they are underwriting, thereby reducing their risk and enabling them to offer better products at lower costs.

  6. Regulators and Government Bodies: The HITRUST AI Security Assessment and Certification serves as the first comprehensive AI assurance program to address rising concerns about AI security, especially in critical infrastructure sectors. 

Supporting Quotes

"We are pleased to see the launch of HITRUST's AI Security Certification," said David Houlding, Director of Global Healthcare Security & Compliance Strategy at Microsoft. "HITRUST's ability to support shared responsibility and enable the inheritance of validated security controls is critical for simplifying and accelerating the process of securing complex AI deployments. This program sets an important benchmark for practical, trustworthy AI security and risk management."

"The HITRUST AI Assurance Working Group has brought together some of the brightest minds in AI and cybersecurity to develop this assessment," said Teresa Godfroy, AI Assurance Working Group Member and Founder, CEO of Silverthorn, LLC. "The process was rigorous and deeply collaborative, ensuring that we landed on a control specification that is both highly original and practical. It is rooted in the reality of today's AI risks without being disconnected from established security standards—truly hitting the mark for what organizations need right now." 

"Embold Health must both protect its AI offerings and prove their security to our customers. The combination of HITRUST's prescriptive controls, their proven assurance methodology, and the customer trust that comes with certification make it the clear choice," said Stephen Dufour, Chief Security & Privacy Officer, Embold Health.

"Leading an ISO 42001 certified company and helping others achieve the same, I see the HITRUST AI security certification as a key complement to the ISO standard for AI governance. It, along with emerging regulatory requirements like the European Union AI Act, requires artificial intelligence systems to be secure and robust. The HITRUST AI security certification gives organizations a clear roadmap to achieve both," said Walter Haydock, CEO of StackAware.

"Coalfire recognizes the market's need for certifications like HITRUST AI and ISO 42001, which deliver a third-party review and high assurance level for secure, responsible AI implementation. HITRUST AI and ISO/IEC 42001:2023 provide distinct but complementary frameworks for AI compliance, especially in sensitive data environments. ISO 42001 focuses on general guidelines and governance for AI systems, emphasizing transparency, accountability, and risk management for AI across industries. HITRUST offers a more specific, prescriptive risk management framework designed to be industry agnostic, while integrating other regulations (such as HIPAA, NIST, GDPR, etc.) to ensure comprehensive security and compliance. Together, an ISO/IEC 42001:2023 standard helps organizations align AI practices with ethical and transparent guidelines with the use of controls, while HITRUST would support stringent protection and regulatory alignment in data environments within its requirements, creating a robust compliance strategy that balances AI innovation with security and privacy. Both certifications fill critical unique paths around AI compliance that organizations can benefit from," said Coalfire's Vice President of Global Assurance, Booker Young. 

Why HITRUST?

HITRUST has been a pioneer in cybersecurity assurance for over 17 years. Our proven methodologies, built around a harmonized framework of over 50 authoritative sources—including NIST, and ISO—have established HITRUST as the most trusted name in information security. With a centralized review process, third-party independent testing, and gold-standard certifications, HITRUST is the only organization that provides the level of reliability, consistency, and thoroughness required to secure AI systems today.

This year, for the first time, HITRUST released the company's inaugural and annual Trust Report. In this report, we revealed key insights about our assurance program, including the fact that our Cyber Threat Adaptive engine and processes cover 100% of the addressable TTPs in the MITRE ATT&CK framework. Even more notably, we reported that over the past two years, only 0.64% of HITRUST-certified systems experienced breaches. This remarkable figure not only demonstrates the effectiveness of our assurance program but also reflects our ability to measure, analyze, and improve through our centralized processes. As a result, HITRUST represents a measurable benchmark for security programs, their efforts, and return on investment (ROI).

Availability and Next Steps

The HITRUST AI Security Assessment and Certification is available for purchase today and complements the HITRUST AI Risk Management Assessment released earlier this year.

Current HITRUST customers can add this certification to their existing assessments and certifications, while new customers can also take advantage of this offering. Early adopter promotions are available for both current and new customers.

For more information about the AI Security Assessment and Certification, visit our website.

For access to updates about HITRUST's work in AI, stay up to date with our AI Hub.

For a private briefing and demonstration please contact [email protected].

To find an independent HITRUST AI assessor firm, visit the Find an Assessor tool on our website.

HITRUST Academy courses are being updated for AI and are available for sale now, with classes starting in January 2025. Contact [email protected] to learn more.

About HITRUST

HITRUST, the leader in cybersecurity assurance used in risk management and compliance, offers certification programs for the application and validation of security, privacy, and AI controls. Informed by over 50 standards and frameworks, the company's threat-adaptive approach delivers the most relevant and reliable solution, including multiple selectable and traversable assessments and certifications, an ecosystem of over 100 independent assessment firms, centralized quality reviews, reporting and certification, and a powerful SaaS platform enabling its program and process. For over 17 years, HITRUST has led the assurance industry and today is widely recognized as the most trusted solution to establish, maintain, and demonstrate security capabilities for risks management and compliance.

SOURCE HITRUST Services Corp.

Modal title

Organization Profile

HITRUST Services Corp.

    Also from this source

  • HITRUST Quarterly Threat Analysis Confirms CSF v11.2 Addresses 100% of MITRE ATT&CK® Techniques

  • HITRUST 2025 TRUST REPORT DEMONSTRATES IMPROVED CYBERSECURITY OUTCOMES FOR CERTIFIED ORGANIZATIONS

  • HITRUST Delivers on Commitment to Make Third Party Risk Management Practical and Efficient

Contact Cision

  • 866-245-2317
    from 8 AM - 10 PM ET
  • Become a Client
  • Request a Demo
  • Editorial Bureaus
  • Partnerships
  • General Enquiries
  • Media

Products

  • Cision Communications Cloud®
  • Media Monitoring
  • Content Distribution
  • Multimedia Distribution
  • Measurement & Analytics
  • Investor Relations

About

  • About Cision Canada
  • About Cision
  • Media Partners
  • Careers
  • Accessibility Statement
  • APAC
  • APAC - Simplified Chinese
  • APAC - Traditional Chinese
  • Brazil
  • Canada
  • Czech
  • Denmark
  • Finland
  • France
  • Germany
  • India
  • Indonesia
  • Israel
  • Japan
  • Korea
  • Mexico
  • Middle East
  • Middle East - Arabic
  • Netherlands
  • Norway
  • Poland
  • Portugal
  • Russia
  • Slovakia
  • Spain
  • Sweden
  • United States
  • Vietnam

My Services

  • All News Releases
  • Online Member Centre
  • Next Gen Communications Cloud
  • Cision Communications Cloud®
  • my CNW

Do not sell or share my personal information:

  • Submit via [email protected] 
  • Call Privacy toll-free: 877-297-8921

Contact Cision

Products

About

My Services
  • All News Releases
  • Online Member Centre
  • Next Gen Communications Cloud
  • Cision Communications Cloud
  • my CNW
877-269-7890
from 8 AM - 10 PM ET
  • Terms of Use
  • Information Security Policy
  • Site Map
  • Cookie Settings
  • Accessibility Statement
Copyright © 2025 CNW Group Ltd. All Rights Reserved. A Cision company.