Search
Related topics are listed below.
Resetting MyCSF Password
HITRUST Portal » Resetting MyCSF Password
If you have forgotten your MyCSF password, please follow the steps below: From the HITRUST Portal, click the ‘Reset Password’ link adjacent to the ‘Login’ button. Enter your email address associated to your MyCSF Account and click the ‘Reset’…
Changing MyCSF Password
HITRUST Portal » Changing MyCSF Password
If you wish to change your MyCSF password, please follow the steps below: From the HITRUST Portal, click the ‘Change Password’ link on the top right corner. Enter your desired password twice and click the ‘Change Password’ button. Please note that the…
Setting Your Organization
Homepage » Setting Your Organization
Your Organization will hold all of the Assessments under this particular subscription. You can have a quick look at ‘Subscription Level’, ‘Number of Assessments Created’, and ‘Expiration Date’ for this Organization. On the MyCSF Homepage, click the…
Selecting Your Assessment
Homepage » Selecting Your Assessment
After setting your Organization an Assessment table will appear with all of the Assessments within your account. Atop the ‘Assessments’ table, is a donut chart displaying a consolidation of the statuses of your Assessments. Click on portions of the donut chart to…
Managing your Documents
Assessment Questionnaire » Completing an Assessment » Creating an Offline Assessment » Managing your Documents
All of the documents that exist in your Assessments Document Repository will be listed in the excel spreadsheet. You will have the ability to manage existing documents as well as adding new documents (without an attachment) in your Repository. !Please note that when…
Answering your Assessment’s Statements
Assessment Questionnaire » Completing an Assessment » Creating an Offline Assessment » Answering your Assessment’s Statements
Once you have downloaded the excel spreadsheet, you are now able to answer your Assessment Statements offline. 1. From the spreadsheet, click on the ‘Assessment’ sheet to select if a Statement is or not applicable, maturity scores for each maturity level, and…
Evaluating your Clients Assessment’s Statements
Assessment Questionnaire » Completing an Assessment » Creating and Importing Assessor Evaluation for an Offline Assessment » Evaluating your Clients Assessment’s Statements
Once you have downloaded the excel spreadsheet, you are now able to evaluate and validated your Assessment Statements offline. 1. From the spreadsheet, click on the ‘Assessment’ sheet to add your maturity evaluation and comments for each Assessment…
Viewing Your Organization’s CAP Repository
Corrective Action Plans (CAPs) » Viewing Your Organization’s CAP Repository
Given you have the appropriate privileges, your CAPs are always easily reachable from the Navigation Bar no matter where you are in the tool by pressing the “Corrective Action Plans” menu option. CAP Repository
Managing Your CAP Repository’s Access
Corrective Action Plans (CAPs) » Managing Your CAP Repository’s Access
By Default, only Account Administrators are permitted to both view and edit an Organization’s CAP Repository as well as add/link CAPs to an Assessment. However, an Account Administrator can delegate these privileges to Standard Users within their entity in a few…
Viewing your Internal Assessor Functions
Internal Assessors » Viewing your Internal Assessor Functions
Easily Accessible from your Administration, you are able to view all of the approved Internal Assessor functions. The individual IA Function pages will include the approved application, a status, an expiration date, and the Assessments in MyCSF that have leveraged this…
Enabling Internal Assessors On Your Assessment
Internal Assessors » Enabling Internal Assessors On Your Assessment
After your Internal Assessor application has been approved, the Name and Security page on your Organization’s Assessment will be altered to include a checkbox allowing you to mark your Assessment as having been tested by Internal Assessors. When selected, you will be…
Completing your Internal Assessor Time Sheet
Internal Assessors » Completing your Internal Assessor Time Sheet
Like External Assessors, Internal Assessors are obligated to document both the individuals who performed Internal Assessor duties on the Assessment as well as the hours they each committed. On the sidebar, click the ‘Internal Assessor Time Sheet’ label to be…
Corrective Action Plans (CAPs) in Your Assessment
Assessment Questionnaire » Corrective Action Plans (CAPs) in Your Assessment
Because CAPs can be linked to Statements within an Assessment, you may be interested in which CAPs have been associated collectively to an Assessment. This can be done by simply going to the Assessment (link to viewing an assessment) for which you wish to see the…
HITRUST Portal
HITRUST Portal
This topic will instruct you on how to properly login to the HITRUST Portal, setup and manage Two Factor Authentication, change and/or reset a Password, and access the MyCSF and/or Assessment XCHANGE Application(s). HITRUST Portal Sub-Topics Logging in to the…
First Login and Authentication
HITRUST Portal » Logging in to the HITRUST Portal » First Login and Authentication
If this is your first-time logging into the HITRUST Portal, follow the steps below to locate and change the temporary password associated with your MyCSF Account. Locate the email with the subject line: “HITRUST Login Registration – Account Lead Created” from…
Logging in to the HITRUST Portal
HITRUST Portal » Logging in to the HITRUST Portal
Follow the steps below on how to login to the HITRUST Portal: Using an Internet Browser, go to the web address https://portal.mycsf.net. A page will load that requires you to enter your Email Address and Password. Once entered, click the ‘Login’…
Viewing an Assessment Domain
Assessment Questionnaire » Completing an Assessment » Viewing an Assessment Domain
To view the Assessment Statements you have generated in the Scope of your Assessment click on the Clipboard in the left Nav bar so you may be able to view your Assessment Questionnaire. Choose one of your nineteen domains to begin answering one of your Assessment…
Missed My Submission Date
Reservations » Rescheduling/Cancelling a Reservation » Missed My Submission Date
If the submission date that is defined for your reservation passes without your assessment having been previously submitted, your reservation will be automatically cancelled. You may be issued a cancellation fee if the submission date fell after the “Last day to…
Home
Analytics » Dashboards » Home
Here you will see your total ‘Assessments’, ‘Avg. Maturity Score per Domain’, as well as your ‘Gap Status’, and ‘Residual Risk Rating’ charts. Home – Here is the homepage you will automatically arrive at upon…
Assessments
Analytics » Dashboards » Assessments
Here in the ‘Assessments’ tab, view statistics about each ‘Assessment Statement’ you have entered, and the relevant actions during ‘Completing an Assessment’ you may or may have not placed alongside it. Review your…
Scoping an Assessment
Pre-Assessment » Scoping an Assessment
The scope of the Assessment is the information about your organization that will be used to narrow down the most precise assessment for your compliance and security needs. Fields marked with red asterisks are mandatory. After authenticating through the HITRUST…
Corrective Action Plans (CAPs)
Corrective Action Plans (CAPs)
Corrective Action Plans (CAPs) you add through MyCSF are inherently associated with your Organization in what is called the CAP Repository. This is done in an effort to allow you to reuse previously entered CAPs, vastly simplifying the management of these Corrective…
Systems
Pre-Assessment » Scoping an Assessment » Systems
This is your catalog of systems that will be examined in your assessment. The ‘Selected Tab’ will show all of the systems that are to be assessed. The ‘Other Tab’ represents systems that have been applied to your organization previously but will not be…
Viewing Notifications and Tasks
Homepage » Viewing Notifications and Tasks
Tasks can be assigned to anyone with access to MyCSF. Provision tasks to anyone that you may feel will be an asset to completing your Assessment. From the MyCSF Homepage, there is a ‘Your Notifications’ component positioned on the right-hand side of the view.…
Diary
Analytics » Dashboards » Assessments » Assessments » Diary
Review your ‘Diary Entries’ and what you and your Assessor have conversed about regarding any Statement that you can your Assessor have spoken about. This is a useful feature for record keeping all on your ‘Diary’ function. Assessments –…
Making a Reservation
Reservations » Making a Reservation
Reservations allow you to have more awareness into when your validated assessment will be reviewed by the HITRUST Quality Assurance team. You can set one up seamlessly within your assessment. From the MyCSF Homepage, click on the i1 or r2 validated assessment for…
Submit a Domain to an Assessor
Assessment Questionnaire » Submitting an Assessment » Submit a Domain to an Assessor
When you are ready to submit your domain to your assessor for validation, press the link located in the green banner above the Assessment Statements for the Domain that you’ve finished. This link will not become available until all of the Assessment Statements have…
Assessment Domain Status Filters
Assessment Questionnaire » Completing an Assessment » Viewing an Assessment Domain » Assessment Domain Status Filters
On your Table of Assessment Domains, you will be able to filter each domain within your assessment by its respective status. A corresponding count and color will appear within a badge icon for each status currently found in a domain. Here is a list of all possible…
Comparisons
Analytics » Dashboards » Assessments » Assessments » Comparisons
Compare your Assessments and create your own observations between maturity scores and on where your security stands per Domain, or Statement. Assessments – View your Assessment Result in detail and view the maturity scores by Statements in each of your…
Creating CAPs
Corrective Action Plans (CAPs) » Creating CAPs
There are two ways a CAP can be added to your Organization’s Repository: Either as a result of defining them within one of your Assessments or by adding them directly into the Repository. This topic will cover the latter. From your CAP Repository page (link), you…
Filters
Analytics » Dashboards » Filters
Use the Filters module to narrow down a search on specific Statements you may be looking for and the Assessments they may lie in. This includes filters such as Not Applicable, In Scope, Required for CSF Certification, Maturity Rating, and Gap Rating. Filters –…
CAPs
Analytics » Dashboards » CAPs
The CAPs function is prepared by your Assessor Organization and the Assessor as applicable, and will also serve to describe a ‘Corrective Action Plan (CAP)’. These measurements describe the plan to correct deficiencies identified during the Assessment for…
Assessments
Analytics » Dashboards » Assessments » Assessments
Check out each Assessment under your subscription with all of the data applicable to your Assessments under the categories ‘High Level’, ‘Responses’, ‘Results’, ‘Comparisons’, ‘Diary’, ‘Users’,…
Recreating a Validated Assessment Object
Interim Assessment (r2 only) » Recreating a Validated Assessment Object
Once an Interim Assessment has been provisioned, please note that you will have to answer all the Pre-Assessment and Assessment Questionnaire identical to your CSF Certification. *If you still have access to the Original Certified Assessment Object, you do not need to…
Internal Assessors
Internal Assessors
Organizations, that are capable of demonstrating proficiency within their Internal Audit departments, are permitted to test their own Requirement Statements and enable their External Assessor to rely on the results. Click here to learn more. Sub-topics Applying to…
Name & Security
Pre-Assessment » Creating a New Assessment » Name & Security
The Name & Security page is where you will be able to see the administrative information pertaining to the Assessment. You can navigate to this page while filling out this assessment whenever you like. 1. After authenticating through the MyCSF Portal, click on your…
Facilities
Pre-Assessment » Scoping an Assessment » Facilities
This is your catalog of facilities that will be addressed in your assessment. The ‘Selected Tab’ will show all of the facilities that will be addressed. The ‘Other Tab’ represents systems that have been applied to your organization previously,…
Related Documents
Analytics » Dashboards » Assessments » Documents & Other » Related Documents
View any of the ‘Related Documents’ under your subscription that has a document attatched to any of your ‘Statements’ . Requirements – Inspect each of the required materials in any assessment ranging from the ‘Controls’…
Metrics
Analytics » Dashboards » Metrics
The ‘Metrics’ section compiles industry data that is associated to your organization and reflects averages, standards, and patterns, to their security testing. Users can make quick comparisons on where their organization stands along with any discernment…
Compliance
Analytics » Dashboards » Assessments » Compliance
Under the ‘Controls’ category, find all of your domains maturity scores by ‘CSF Compliance’, ‘CSF Baseline’, and ‘CSF Results’. Controls – Find all of your data sorted by control level and sifted down to…
Documents & Other
Analytics » Dashboards » Assessments » Documents & Other
View all of the ‘Requirements’ that your chosen Assessment is mandated to undergo, including, relevant ‘Controls’ and ‘Authoritative Sources’ for it. Requirements – Inspect each of the required materials in any assessment…
Residual Risk
Analytics » Dashboards » Assessments » Residual Risk
The ‘Residual Risk’ you carry will be nested here and will carry statistics and charts that mark your vulnerability by ‘Residual Risk Score’, ‘CSF Compliance’ and ‘Residual Risk Rating’. ‘Residual Risk’…
CAP Status
Analytics » Dashboards » CAPs » CAP Status
Here you will find the whereabouts on where your CAPs stand as well as insightful charts that label your ‘GAP Identified’ and ‘CSF Compliant’ status. CAPs – Find all of the deficiencies you have made in your Assessment and review the…
Rescheduling/Cancelling a Reservation
Reservations » Rescheduling/Cancelling a Reservation
Once a reservation is made on your assessment, you are entitled to modify or cancel it. Follow the steps below to accomplish this. From the MyCSF Homepage, click on the i1 or r2 Validated Assessment for which you’d like to make a reservation. On the left-hand…
Homepage
Homepage
The Homepage of MyCSF is the starting location for every user that authenticates through the HITRUST Portal. From here, you can easily locate Assessments, Subscription Information, Your Notifications, Custom Libraries and more. Subscription Information …
Sources
Analytics » Dashboards » Assessments » Assessments » Sources
View the Authoritative Sources to any one of your Assessments and browse through the page to find those that match any of your Statements. Assessments – View your Assessment Result in detail and view the maturity scores by Statements in each of your…
Scorecards
Analytics » Dashboards » Metrics » Scorecards
Determine how your Statement results comply with your average maturity scores to any of the sections of our more popular standardizing bodies. Review your outcomes and compare it to one of the ‘Authoritative Source Sections’ given to discover how secure the…
Status
Analytics » Dashboards » Assessments » Assessments » Status
View your chosen Assessment by ‘Status’ to further clarify how fast your Assessment is moving in either the ‘Self-Assessment’, ‘Validated Assessment’ or ‘Targeted Assessment Process’. Assessments – View your…
High Level
Analytics » Dashboards » Assessments » Assessments » High Level
View your chosen Assessment at the highest ‘Avg Maturity Level’ available, accompanied by two interactive charts relating to your Assessment’s ‘Status Filters’ and ‘GAP Status’ for your Statements. Assessments – View your…
Illustrative Procedures
Analytics » Dashboards » Assessments » Compliance & Procedures » Illustrative Procedures
View how your Assessor grades and establishes protocol when granting compliance levels for each maturity value at your organization by ‘Requirement Statement’. Policies & Procedures – Glimpse at the relationship between how your Assessor…
Residual Risk Rating
Analytics » Dashboards » Assessments » Residual Risk » Residual Risk Rating
Study each Statement in/out of your ‘Scope’ to find the risk you carry per Statement if it is ‘Applicable’. Residual Risk – Investigate the areas of your Assessment that may or may not require immediate attention in the ‘Scope of…
Compliance & Procedures
Analytics » Dashboards » Assessments » Compliance & Procedures
View all of your ‘Policies & Procedures’ for every ‘Related HITRUST Control’ in the CSF Library, that is used a s a guide for your Assessor. Policies & Procedures – Glimpse at the relationship between how your Assessor organization…
All Potential Requirements
Analytics » Dashboards » Assessments » Documents & Other » All Potential Requirements
Find your ‘Potential Requirements’ to the current state of your Assessment including ‘Statements; and Authoritative Sources’**. Requirements – Inspect each of the required materials in any assessment ranging from the…
Factors
Pre-Assessment » Scoping an Assessment » Factors
The inputs on the Factors tab are used to measure the risk inherent to your environment. The information provided within will be used to narrow down the list of assessment statements for your questionnaire. General Factors – These factors are used to…
Re-validating the Assessment
Interim Assessment (r2 only) » Recreating a Validated Assessment Object » Re-validating the Assessment
As you would in any Validated Assessment, you as the Assessor will need to validate all of the Assessment Questions completed by your Client. You will have to ensure the maturity scores entered are identical to their Original CSF Certification. From the Homepage,…
Adding a Diary Entry
Assessment Questionnaire » Completing an Assessment » Answering an Assessment Statement » Adding a Diary Entry
The Diary will enable you to enter comments on each of your Assessment Statements to communicate within your organization or assessor. 1. From the Assessment Domain, click on the Assessment Statement that you wish to input a Diary entry. 2. Click on the ‘Diary…
Creating and Importing Assessor Evaluation for an Offline Assessment
Assessment Questionnaire » Completing an Assessment » Creating and Importing Assessor Evaluation for an Offline Assessment
When a Validated Assessment has been submitted to an Assessor, you the Assessor has the ability to fill-out your evaluation outside of MyCSF using a spreadsheet and seamlessly import your evaluation back into the application. Follow the instructions below on Creating…
Statistics
Analytics » Dashboards » Metrics » Benchmarking » Statistics
Compare the top 10th or bottom 90th percentile of any one of your Assessments as well as the Avg Maturity Averages for each of your domains. Benchmarking – This option enables a user to search through data that has been collected for relevant Validated…
CSF Compliance
Analytics » Dashboards » Assessments » Compliance » CSF Compliance
View your chosen Assessment by ‘CSF Compliance’ rate and compare them to those that are ‘Fully Compliant’, ‘Partially Compliant’, or ‘Not Compliant’ Statements. Compliance – Find all of your data sorted by control…
CSF Baseline
Analytics » Dashboards » Assessments » Compliance » CSF Baseline
View the ‘CSF Baseline’ function with all of your ‘Maturity Scores’ and each of your ‘PRISMA Values’ as well in the next column over. Compliance – Find all of your data sorted by control level and sifted down to individual…
High Level
Analytics » Dashboards » Assessments » Residual Risk » High Level
This option allows us to view the ‘Table of Domains’ and the ‘Residual Risk Ratings’ that each carries for Statements ‘Completed in your Assessment’. Residual Risk – Investigate the areas of your Assessment that may or may…
Menu
Analytics » Application Bar » Menu
Export tables in the form of PDF or Excel spreadsheets to transmit any data from your Dashboards for presentation or emailing your colleagues for Powerpoint or other presentations. Menu After authenticating through the MyCSF Portal, click on ‘Analytics’ in the…
Deleting CAPs
Corrective Action Plans (CAPs) » Deleting CAPs
CAPs created in error or those that are no longer needed can be removed from your Organization’s CAP Repository all together. From your CAP Repository page (link), you will see a table cataloging all of the CAPs belonging to your Organization. Press the…
Answering an Assessment Statement
Assessment Questionnaire » Completing an Assessment » Answering an Assessment Statement
There are many components to completing an assessment. This includes: Answering a Statement, Assigning a Respondent, Related Authoritative Sources, Risk Factors, History Assessment Log, Illustrative Procedures, Adding Documents, and CAP Management. r2 Assessment: …
Unlinking CAPs
Corrective Action Plans (CAPs) » Unlinking CAPs
As your CAPs are to be designed to be associated with the Gaps present within your Assessments, MyCSF provides a simple way through the Repository to unlink a Plan from a Statement. From your CAP Repository page (link), you will see a table cataloging all of the…
Performing an Interim Review Assessment
Interim Assessment (r2 only) » Performing an Interim Review Assessment
If you are coming up on your 1-year Anniversary of your CSF Certification, you will need to perform an Interim Assessment. The Interim Assessment is to ensure that the scope of your CSF Certification is still valid. From the Homepage, click on the Assessment with…
Admin
Analytics » Dashboards » Admin
Under the ‘Admin’ tab, you can view each Assessment’s Administrative and Scoping inputs under this subscription. Click on each function at the top of the page to access one. Admin – This option allows you to review the Pre-Assessment information…
Analytics
Analytics
The ‘Analytics’ feature complements ‘MyCSF’ by delivering extensive and practical information about your Assessments in a multitude of venues ranging from viewing your Avg Maturity Scores per Assessment, Benchmarking scores with other…
Results
Analytics » Dashboards » Assessments » Assessments » Results
View your chosen Assessment by ‘Results’ along with ‘Response Status’, ‘Implementation Level’, and ‘Applicability’. Assessments – View your Assessment Result in detail and view the maturity scores by Statements in…
Configuring a User as a HITRUST CSF practitioner
Internal Assessors » Configuring a User as a HITRUST CSF practitioner
A requirement of the Internal Assessor program is that all users performing Internal Assessor duties must be an active HITRUST CSF Certified Practitioner (CCSFP). In order to have a user validated as a CCSFP, the Account Administrator from your organization must…
Interim Assessment (r2 only)
Interim Assessment (r2 only)
If you are coming up on your 1-year Anniversary of your CSF Certification, you will need to perform an Interim Assessment. The Interim Assessment is to ensure that the scope of your CSF Certification is still valid. If you have a MyCSF Subscription, click here for…
Request a Revision for an Issued Report
Reports » r2 and i1 Assessments » Request a Revision for an Issued Report
If you have discovered a spelling error or any type of inaccuracy in your ‘Draft Report’, you can request a revision by pressing the ‘Request Revision’ button. You will be able to place your comment in a text box that you can send to the HITRUST Assurance…
11.1.1. Downloading the Report
Reports » r2 and i1 Assessments » 11.1.1. Downloading the Report
Once your HITRUST CSF Report is available for download, you will receive an automated notification from HITRUST, like the one below. Your report will be available in the draft state for 30 days to allow you ample time for review. Follow the steps below to download…
Modifying CAPs
Corrective Action Plans (CAPs) » Modifying CAPs
For CAPs that have already been created, MyCSF allows you to easily make changes to this CAP either to record progress or refine the information currently documented. From your CAP Repository page (link), you will see a table cataloging all of the CAPs belonging to…
High Level
Analytics » Dashboards » Assessments » Compliance » High Level
View your chosen Assessment at the highest ‘CSF Compliance per Domain’ available, partnered with ‘Maturity Rating per Domain’ for your Statements. Compliance – Find all of your data sorted by control level and sifted down to individual…
CSF Results
Analytics » Dashboards » Assessments » Compliance » CSF Results
View the ‘Results’ on each of your ‘Control Categories’ down to the ‘Unique ID’ of the Assessment at hand. Compliance – Find all of your data sorted by control level and sifted down to individual Statements. CSF Results…
Adding a New API User
Administration » Subscriber Management » Adding a New API User
If you are wishing to add a new API User to your MyCSF Account, please follow the steps below: From the Homepage, click the ‘Administration’ button at the top Menu bar or below your Subscription Information. From the Subscriber Management page, click the ‘+…
Administration
Administration
The Administration page is where you manage your Account(s). If you are an Account Administrator for one or multiple accounts, this is where you can access each account. If you are an Account Administrator for one account, then you will be directed to your…
Benchmarking
Analytics » Dashboards » Metrics » Benchmarking
This option enables a user to search through data that has been collected for relevant Validated Assessments to allow our users to do a quick comparison check against their industry standards. Metrics – The ‘Metrics’ section compiles industry data…
CAP Steps
Analytics » Dashboards » CAPs » CAP Steps
This section allows you to see all of the information placed when entering ‘Adding a Corrective Action Plan’, including ‘Milestones’, ‘Status’, ‘Residual Risk’, and ‘Points of Contact (POC)’. CAPs –…
CAP Management
Analytics » Dashboards » CAPs » CAP Management
View all of the statuses of each Statement that have been issued a ‘CAP Management’ and the maturity scoring from these Statements. CAPs – Find all of the deficiencies you have made in your Assessment and review the CAPs placed by your users within…
Answering CAPs & Generating an Interim Assessment
Interim Assessment (r2 only) » Recreating a Validated Assessment Object » Answering CAPs & Generating an Interim Assessment
If you had CAPs identified within your Original CSF Certification, you will have to add the same corrective action plan identical to your Original CSF Certification. If you do not have any mandatory Corrective Action Plans, you can immediately generate the Interim…
Assessment Questionnaire
Assessment Questionnaire
After completing the Scope of your Assessment, you can begin answering the questions that have been generated based on your scope. Topics range from: Completing an Assessment, Marking Not-Applicable, Assigning a User, CAP Management, Authoritative Sources, Assessment…
Required Controls
Analytics » Reports » Internal Reports » Required Controls
Find the maturity scores for each of your Related Controls in any of your Assessments that are required for certification. Required Controls After authenticating through the ‘MyCSF Portal’, click on ‘Analytics’ in the top Menu bar. Once pressed,…
Adding a New Custom Role
Administration » Subscriber Management » Adding a New Custom Role
If you have a Corporate Level Subscription or above and you are wishing to add a new custom role to your MyCSF Account, please follow the steps below: From the Homepage, click the ‘Administration’ button at the top Menu bar or below your Subscription…
Manually Generating an Interim Assessment
Interim Assessment (r2 only) » Manually Generating an Interim Assessment
If you are coming up on your 1-year Anniversary of your CSF Certification and have a MyCSF Subscription, please note that your Interim Assessment will auto-generate 90 days prior to the Anniversary of the Certification Date of your Original Assessment. If you wish to…
Bookmarks
Analytics » Application Bar » Bookmarks
Stop at any area of the dashboards by bookmarking your spot to start back at the exact URL including any modifications you have been making while examining your data on the Dashboards whenever you sign in. Bookmark After authenticating through the MyCSF Portal,…
Linking Statements and Documents
Assessment Questionnaire » Completing an Assessment » Creating an Offline Assessment » Linking Statements and Documents
If you have documents in your Document Repository and/or have added new documents in the excel spreadsheet, you have the ability to link them to your Assessment Statements. *Please note that Account Admins, Assessment Leads, and Assessors can do the below. 1. From…
Edit Existing User in the Portal
Administration » Organization Consolidation » User Management » Edit Existing User in the Portal
Follow the instructions below to edit an existing user in your Portal Account: From the User Management table, click the edit icon adjacent to the user’s name. From the modal, you will have the option to edit the user’s first name, last name, role, toggle…
Scoring Extract Profile
Analytics » Reports » Internal Reports » Scoring Extract Profile
Find the Scoring patterns for all of your Statements and each of your maturity percentage by each domain color coded with green signifying passing, yellow requires CAPs, and red being failing. Scoring Extract Report After authenticating through the ‘MyCSF…
Assessment Options
Pre-Assessment » Scoping an Assessment » Assessment Options
Answer the dropdowns provided to determine what kind of assessment will be generated by MyCSF. This includes Targeted, CSF Security, CSF Security & Privacy, CSF Comprehensive Security, and CSF Comprehensive Security & Privacy Assessments. The level of validation will…
Setting IP Restrictions
Administration » Subscriber Management » Setting IP Restrictions
The IP Whitelist can be used to allow an Organization to specify a permitted range of IP Addresses that can be used to access your Organization’s information. To enable IP restrictions, follow the steps below: From the Homepage, click the ‘Administration’…
Adding a New Person to the Portal
Administration » Organization Consolidation » User Management » Adding a New Person to the Portal
Follow the instructions below to add a new person to your Portal Account: From the Portal Administration page, click the ‘Add Person’ button on the User Management table. From the modal, enter the ‘First Name’, ‘Last Name’, and ‘Email’. Click the…
Attaching the Organizational Overview and Scope
Documents » Attaching the Organizational Overview and Scope
Uploading the details on the ‘Scope of Your Assessment’ along with the information regarding your ‘Company Profile’ can be placed here. 1. On the sidebar, click the ‘Organizational Overview & Scope label to be rushed to the Organizational Overview & Scope…
Systems
Analytics » Dashboards » Admin » Systems
View your System inputs. This is the information you entered in your Assessment under the Administrative & Scoping section of ‘MyCSF’. Systems After authenticating through the MyCSF Portal, click on ‘Analytics’ in the top Menu bar. Once pressed,…
Facilities
Analytics » Dashboards » Admin » Facilities
View your Facility inputs. This is the information you entered in your Assessment under the Administrative & Scoping section of ‘MyCSF’. Facilities After authenticating through the MyCSF Portal, click on ‘Analytics’ in the top Menu bar. Once…
Factors
Analytics » Dashboards » Admin » Factors
View your Factor inputs. This is the information you entered in your Assessment under the Administrative & Scoping section of ‘MyCSF’. Factors After authenticating through the MyCSF Portal, click on ‘Analytics’ in the top Menu bar. Once pressed,…
Downloading the Report
Reports » bC Assessments » Downloading the Report
Once your bC Report is available for download, you will receive an automated notification from HITRUST like the one shown below: Follow the steps below to download your report: From the MyCSF Homepage, click on the Assessment name of the report you would like to…
Adding a Related Document
Assessment Questionnaire » Completing an Assessment » Answering an Assessment Statement » Adding a Related Document
If you wish to document evidence for an Assessment Statement, use the related documents functionality. You can either reference items previously uploaded or new items that are not yet in your Document repository. From the MyCSF Homepage, click the Assessment…
Library
Library
Located at the top of the Menu bar, the Library can be viewed and/or exported as a template, based on the any of your downloaded versions. You can interact with the HITRUST CSF in a top to bottom structure starting from the Control Category, Control Objective, Control…