Document HIPAA SIEM Use Cases
Budget / SalaryHourly project
TypeFreelance project
LocationRemote
Posted2 hours ago
I need concise, audit-ready documentation for all of our existing SIEM use cases so we can demonstrate HIPAA compliance without scrambling each time an auditor appears. The focus is firmly on the HIPAA Security Rule and Privacy Rule; other frameworks are out of scope for now.
You will walk through every alert, correlation rule, and report currently active in our SIEM, map each one to the relevant HIPAA control, and write clear explanations of its purpose, data sources, trigger logic, and expected investigator actions. Where coverage is thin, flag the gap so we can decide whether to build a new rule or accept the risk.
Deliverables:
• A structured document (Word or Markdown) that lists each use case, its mapped HIPAA Security or Privacy Rule citation, triggering criteria, response workflow, and required evidence for auditors.
• A control-to-use-case matrix for quick audit reference.
• A one-page executive summary highlighting overall HIPAA coverage, gaps, and recommendations.
I’ll provide read-only access to the SIEM and any existing policy material; you bring the regulatory insight and writing clarity to turn raw configuration into professional-grade compliance artefacts.
You will walk through every alert, correlation rule, and report currently active in our SIEM, map each one to the relevant HIPAA control, and write clear explanations of its purpose, data sources, trigger logic, and expected investigator actions. Where coverage is thin, flag the gap so we can decide whether to build a new rule or accept the risk.
Deliverables:
• A structured document (Word or Markdown) that lists each use case, its mapped HIPAA Security or Privacy Rule citation, triggering criteria, response workflow, and required evidence for auditors.
• A control-to-use-case matrix for quick audit reference.
• A one-page executive summary highlighting overall HIPAA coverage, gaps, and recommendations.
I’ll provide read-only access to the SIEM and any existing policy material; you bring the regulatory insight and writing clarity to turn raw configuration into professional-grade compliance artefacts.
Apply on Freelancer →
Project sourced from Freelancer.com. Applications happen directly on the original platform — we never collect your data.