Skip to main content
U.S. flag

An official website of the United States government

Return to Search

HIPAA Security Rule Crosswalk to NIST Cybersecurity Framework

This crosswalk document identifies “mappings” between the NIST Cybersecurity Framework and the HIPAA Security Rule.

Download the Guidance Document


Issued by: Office for Civil Rights (OCR)

Issue Date: July 08, 1905

DISCLAIMER: The contents of this database lack the force and effect of law, except as authorized by law (including Medicare Advantage Rate Announcements and Advance Notices) or as specifically incorporated into a contract. The Department may not cite, use, or rely on any guidance that is not posted on the guidance repository, except to establish historical facts.