Guidepost Solutions
Our team initially focused on understanding and developing best practices for ethics and compliance programs, culture, code of ethical conduct, privacy controls, data governance rules, and information security to ensure that Vori Health’s mission, vision, and purpose can be implemented effectively throughout the company.
The focus of our initial efforts included creating compliance controls to address specific regulations for HIPAA including the Privacy, Security, Breach and Retention rules, False Claims Act and anti-kickback/Stark Act controls, and ADA guidelines. We also worked on the corporate governance valuation analysis for a Fair Market Value Report for purposes of an ASA Administrative Fee.
Our team was asked to conduct a readiness assessment for potential SOC2, HIPAA, and HITRUST audits to identify policies and key controls to be included in the examination. Through this process, we identified any exceptions that could preclude certification in the SOC2 audit and HITRUST assessment. We then collaborated with the Vori team to review policies, draft procedures and enhance controls.