Regulatory and Compliance Frameworks

The right expertise to keep you in compliance

Compliance with the Health Insurance Portability and Accountability Act (HIPAA) is not only required by law, but it is also essential for the proper management and profitability of healthcare providers.

HIPAA is comprised of three parts: security, privacy, and EDI (code sets, transactions, and identifiers). Since HIPAA compliance is an ongoing, dynamic process, additional areas of operation also affect your risk management.

Our team has the expertise to help you meet strict requirements for each area and maintain common cybersecurity framework and standards as your organization evolves.

Digital interface representing common cybersecurity frameworks and standards with data charts and security icons

Service when you need it

We provide support on your schedule, so our level of involvement is up to you. These are a few of the ways we can help, either on a short-term or a long-term basis:

  • Center for Internet Security (CIS) risk assessment
  • Clinical Data Management (CDM) review and analysis
  • Coding and documentation audit
  • Federal Information Security Modernization Act (FISMA) compliance assessment
  • HIPAA and HITECH risk analysis
  • HITRUST compliance and certification
  • ISO 27001 compliance assessments
  • Meaningful use consulting
  • National Institute of Standards and Technology (NIST)
  • FTC Gramm-Leach-Bliley Act (GLBA) risk analysis
  • Payment card industry (PCI) DSS compliance reviews
  • Policy reviews

The Kraft Difference

Handshake icon

People you trust

Anchored by local roots and respected in the industry, we’re proud of our people-first culture, which has set us apart for over six decades.

User icon

Industry expertise

Our team is led by experts with up-to-the-minute insight in their field. We’re accessible and ready to help when you need us most.

Bulb Icon

Independent thinkers

As one of our industry’s most established independent firms, we think critically and move quickly. Clients get answers fast and see tailored solutions.

Globe icon

Bandwidth for diversity

As a growing firm in a thriving region, we evolve to meet the needs of our diverse clientele, particularly those in the competitive middle market.

Team Leaders

Erica Hightower is a senior manager with the risk assurance and advisory services (RAAS) practice

Erica Hightower

Senior Manager

Risk Assurance and Advisory Services

KraftCPAs PLLC

Scott Mertie is the president of Kraft Healthcare Consulting, LLC

Scott R. Mertie

President

Kraft Healthcare Consulting, LLC

Scott Nalley is the member-in-charge with the risk assurance and advisory services (RAAS) group

Scott Nalley

Member-in-Charge

Risk Assurance and Advisory Services

KraftCPAs PLLC

Gina Pruitt is a member with the risk assurance and advisory services (RAAS) practice

Gina Pruitt

Member

Risk Assurance and Advisory Services

KraftCPAs PLLC