Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » HIPAA » OCR

OCR

The Office for Civil Rights (OCR) promotes medical excellence throughout the nation by ensuring equal access to certain health and human services while protecting the privacy and security of health information.

Additional reading

Standard Contractual Clauses: A Guide for International Data Transfers

TL,DR: Standard Contractual Clauses support lawful international data transfers under GDPR requirements. They define obligations between data exporters and importers when personal data moves across borders. Businesses should review transfer risks, contracts, safeguards, and vendor responsibilities. Data is sensitive, and ensuring the integrity and security of the personal data of the citizens of the European…

Cyber Risk Quantification: Assessing and Prioritizing Cyber Threats

TL,DR: Cyber risk quantification measures IT risks in financial terms, calculating frequency of occurrence, potential business impact, and disruption to key operations. It replaces guesswork with data-driven prioritization for CISOs and IT teams The U.S. Department of Defense states that threats, vulnerabilities, and impacts must be evaluated together to identify trends and allocate effort toward…

What is SOC 2 Type 1? A Complete Guide to the Audit, Cost, and Timeline

TL;DR SOC 2 Type 1 is often the fastest way to demonstrate to customers that your security controls are properly designed and ready for review. It’s useful when a prospect, investor, or enterprise customer requests SOC 2 proof before your team has completed the longer Type 2 observation period. A Type 1 report doesn’t prove…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.