DEMO
You’re viewing AuditPilot with seeded data for Cedar Creek Family Medicine. Add Clerk + Neon environment variables to enable real multi-tenant data.
All controls

Policies & Procedures · AP-PO-002

Annual risk analysis on file

A documented risk analysis identifying threats, vulnerabilities, likelihood, and impact for systems that handle PHI.

PassingCritical
Remediation guidance

Complete AuditPilot's guided risk analysis. The output is auditor-ready and re-runnable annually.

Status
Last checked5 hours ago
Next check dueApr 22, 2026
Weight18
Severitycritical
Framework requirements satisfied
HIPAA
§164.308(a)(1)(ii)(A)

Risk Analysis

SOC 2
CC3.2

Risk Assessment

HITRUST
03.a

Risk Management Program Development

Linked evidence (0)
Add evidence
No evidence yet. Upload a screenshot, report, or signed document to mark this control as proven.