Governance, Risk & Compliance: GRC

Your one-stop hub for strategic frameworks and best practices that integrate governance, risk management, and compliance into daily operations. Explore insights and real‑world examples that turn complex mandates into clear, resilient programs.

IT Governance Policy Management: 3 Recommendations for CIOs

To successfully meet their compliance objective, Chief Information Officers (CIOs) must implement a risk-adjusted information technology (IT) governance policy framework.   Having good IT risk mandates in place enables you to better understand what your enterprise policies need to look like, and why.  If done effectively and efficiently, having an appropriate framework in place in the right way safeguards your organization from risk and helps you ...

What’s Next for Operational Resilience and EU DORA

The European Union (EU) Digital Operational Resilience Act (DORA), like Spring, is in full swing. I’ve had the good fortune in my role at SAI360 to meet with the Swiss Risk Association, speak at a CeFPro (Center for Financial Professionals) event in London, and participate in a DORA lunch briefing with Luxembourg’s Institute of Internal Auditors and consultants from Deloitte.   EU DORA talk ...

Healthcare Organizations Must Do More to Protect Patient Data from Breaches

Healthcare data breaches are on the rise. In March 2023, there were 63 healthcare data security breaches each impacting more than 500 patients reported to the U.S. Department of Health and Human Services' Office for Civil Rights (OCR). For comparison, February 2023 had 43 and January had 40, reports HIPAA Journal.  This is a 46 percent increase from February, nearly seven percent more than the 12-month average, ...

By |2025-04-28T02:20:19+00:00May 1st, 2023|Compliance, Healthcare GRC, IT Risk & Cybersecurity|

Risk and Compliance Trends: Hot Topics at HCCA

We thought we’d analyze the topics, keynotes, and speaking tracks at the Health Care Compliance Association's (HCCA) 27th Annual Compliance Institute in Anaheim, California this week.   The word cloud below—which we created off the speaking tracks at the conference—shows the most common topics are HIPAA (Health Insurance Portability and Accountability Act) compliance, data privacy and security, employee training, and organizational culture. Each of these ...

By |2025-08-21T21:02:41+00:00April 24th, 2023|Compliance, Healthcare GRC|

SAI360 Releasing New Research and Insights at HCCA’s Compliance Institute

SAI360 will be attending next week’s HCCA’s 27th Annual Compliance Institute (CI) event, in Anaheim, California. CI is a key event for healthcare compliance professionals, covering compliance issues, emerging trends, and practical applications to strengthen healthcare compliance.   With our experience of helping hundreds of healthcare organizations to reduce risk, maximize resources, and stay audit-ready, we’re excited to attend this event--and are ready to see customers, partners, ...

By |2025-04-28T02:17:08+00:00April 20th, 2023|Compliance, SAI360|

Why Millennium Physician Group Chose SAI360

We recently interviewed Tina Tolliver, Chief Compliance, Ethics & Risk Office at Millennium Physician Group, about her experience with SAI360. Millennium Physician Group is one of the largest comprehensive physician groups in the U.S., serving over 750 healthcare providers across 300 locations.  Tina shares some reasons why they chose to work with SAI360. 1. Confidently handle the complexity of compliance As an Accountable Care Organization ...

By |2025-04-28T02:16:54+00:00April 14th, 2023|Compliance, Governance, Risk & Compliance: GRC, Healthcare GRC|

Millennium Physician Group Grows Compliance & Ethics Structure with SAI360

Case study at-a-glance Millennium Physician Group, founded in 2008, has grown to become one of the largest comprehensive independent physician groups in the USA, with more than 750 healthcare providers across 300 locations in Florida, Texas and North Carolina. In 2014, the group became an Accountable Care Organization (ACO), contracted to deliver work under the Centers for Medicare and Medicaid Services (CMS). Alongside being a ...

By |2025-04-28T23:00:35+00:00April 14th, 2023|Compliance, Governance, Risk & Compliance: GRC, Healthcare GRC|

Smart Cyber Defenses Demand a Strategic Approach and Recognized Best Practices (PDF)

Thank you for your interest in the Smart Cyber Defense Whitepaper. Download Healthcare executives are facing significant cybersecurity challenges. This is due to the highly digitized industry landscape. And healthcare’s larger attack surface compared to other industries. In the meantime, cyberattacks are becoming increasingly sophisticated and strategic. These often involve organized criminals and cyber gangs that are highly trained, well-funded, and sometimes even protected by ...

The Compliance Officer of the Future

SAI360 and Strategic Management Services, LLC, conducted the 14th annual Healthcare Compliance Benchmark Survey to evaluate the current state and advancement of compliance program development and the chief compliance officer landscape in the healthcare industry.   This survey—analyzed by Richard P. Kusserow, former DHHS Inspector General—aimed to gather valuable insights around the state of compliance officer roles, including 2023 trends related to experiences, education levels, ...

By |2025-04-28T02:15:59+00:00April 10th, 2023|Compliance|