Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » HIPAA » PHI

PHI

Protected Health Information (PHI) refers to any data in a medical data record that can be used to identify an individual. This data was created, used, or disclosed during the course of offering health services to a patient. 

The Privacy Rule of HIPAA extensively covers the rights an individual has over this information. Covered entities and business associates who use and disclose PHI must do so within the guidelines of HIPAA. 

Additional reading

CCPA Compliance Checklist for 2026 [Steps, Requirements & Penalties]

Privacy laws like CCPA raise the stakes for any business that handles data from California residents. One broken opt-out link or unfulfilled data request can trigger legal action, steep fines, and loss of consumer trust. The challenge isn’t intent—it’s execution. Most companies don’t have a clear view of what personal data they collect, where it’s…

Internal Control Audit: Evaluating Your Control Environment

Amidst the dance of commerce, the internal control system is a silent watchdog. It does not always make the headlines in case of breaches or system crashes, but the consequences can be devastating when controls are not in place.  Case in point: A fine of $136 million was levied on Citigroup by the US regulatory…

Proving Compliance: Why SOC 2 Evidence Collection Matters

Years ago, collecting evidence was a walk in the park. But we can’t say the same now as most of the data is stored on the cloud. Not to mention the tedious effort involved; almost all application is constantly exposed to risk consistently. A need to secure sensitive information and demonstrate it to present a…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.