Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » HIPAA » Electronic Media

Electronic Media

Electronic Media refers to storage systems such as hard drives, computers, USB, optical disk or any medium in which data can be stored in the digital format. Additionally, any medium used to transmit data such as the internet, extranet, dial up lines, private networks are considered as electronic media.

Additional reading

Difference between PCI DSS and HIPAA Compliance

TL,DR: PCI DSS protects cardholder data during transactions while HIPAA protects patient health information. Healthcare organizations accepting credit card payments must comply with both simultaneously HIPAA violations carry penalties from $127 to $250,000 per violation. PCI DSS fines range from $5,000 to $100,000 per month based on severity and duration of non-compliance Key overlaps include…

Audit Risk Model: Risk Types, Formula, Calculation, Score

TL;DR The Audit Risk Model (ARM) helps auditors evaluate the likelihood of errors in audits using three components: Inherent Risk (IR), Control Risk (CR), and Detection Risk (DR). The core formula is Audit Risk = IR × CR × DR, used to estimate the probability of material misstatements going undetected. Higher inherent or control risks…

Recovery Point Objective for Costs, Risks, and Resilience

TL,DR: Recovery Point Objective (RPO) is the maximum acceptable data loss measured in time during an unexpected event. It works alongside RTO, which determines how quickly systems must be restored RPO is calculated from 3 factors: data recovery cost, required system performance, and overall risk tolerance. Critical systems require near-zero RPO with continuous replication, while…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.