If the application calls for your shoppers to enter their info on their own personal devices, then you qualify for SAQ A. Substantial-quantity consumers will need to safe the services of a QSA that is registered to operate in areas where you are functioning. Requirement eight now goes past just https://www.nathanlabsadvisory.com/blog/nathan/hipaa-compliance-checklist-ensuring-data-security-in-healthcare/