Basic Security Risk Assessment
A low-friction annual starting point for teams that need the core assessment and an immediate read on obvious gaps.
- Security risk assessment
- Automated gap analysis included
- Low-friction entry point
Use this page when you want a direct-buy path into one part of your HIPAA program. For broader implementation, specialty guidance, or multi-site scoping, the consulting pages still handle the heavier lift.
Pricing is grouped by buying intent: assessments, policies, documentation, training, incident response, audits, and vendor management. The goal is faster decisions and clearer checkout paths.
The entry path stays simple. Each step adds more coverage without making the buyer guess what changes from one bundle to the next.
A low-friction annual starting point for teams that need the core assessment and an immediate read on obvious gaps.
For teams that want the risk work and a clearer plan to fix what the assessment finds, without adding policies yet.
The strongest self-guided bundle on the page before stepping into managed implementation support.
This gives buyers a direct way to solve a narrow policy gap without forcing them into a larger engagement first.
This section is for buyers who need clean paperwork fast and do not need a broader system purchase to get it.
Each document can be purchased individually for $10, or bought as one discounted bundle for teams that want the full set at once.
This section is built around one core annual training system, with specialty add-ons layered on top when teams need them.
Core annual workforce training, policy attestation, admin tracking, reminders, audit logs, and department-based assignment logic in one recurring system.
Add specialty training only when you need it, without inflating the base annual package.
This works best as its own recurring system instead of being buried inside a larger plan description.
Anonymous reporting, immediate privacy officer notification, and a clean remediation workflow for incidents that should not live in email threads.
This stays a compact, low-friction add-on for teams that want internal checks without stepping into a broader consulting engagement.
Device inventory review, IT risk and network review, and physical site audit sold together as one annual bundle.
This is positioned as an ongoing workflow, not as a one-time document purchase.
Vendor tracking, BAA e-sign execution, and vendor risk questionnaires in one recurring compliance workflow.
Best for straightforward purchases, bundled systems, and recurring workflows that do not need custom scoping before checkout.
Browse Entry BundlesBest for multi-site, specialty-heavy, implementation-led, or audit-response work where discovery and scoping still matter before pricing.
Go to HIPAA ConsultingUse this page for direct-buy HIPAA bundles, documentation, training, vendor workflows, incident systems, and audit reviews.
Use the main service pages when you need broader implementation, specialty consulting, or custom scoping before a recommendation is made.