HECVAT v4.1.0 Documentation

Complete security assessment framework with 333 questions across 35 categories.

82
Critical
157
Standard
53
Minor
255
Scored
/
53
Unscored
217
Required
/
82
Conditional
Code
Category
Total
Critical
Required
GNRLGeneral Information926View
APPLApplication/Service Security1449View
AAAIAuthentication, Authorization, and Account Management18512View
DATAData Security23616View
VULNVulnerability Management614View
HFIHIncident Handling412View
PRGNGeneral Privacy513View
AIMLAI Machine Learning926View
AILMAI Large Language Model724View
CHNGChange Management16411View
THRDThird Party Management513View
AIGNAI Governance513View
AIPLAI Platform Security513View
AIQUAI Quality Assurance201View
AISCAI Supply Chain513View
DPAIData Privacy - AI/ML825View
DRPVData Rights and Privacy15410View
INTLInternational Privacy513View
PRPOPrivacy Policy1339View
PDATPrivacy Data Types825View
PCHGPrivacy Changes201View
PTHPPrivacy Third Party201View
PDOCPrivacy Documentation302View
PCOMPrivacy Communications412View
OPEMOperational Employee Management1037View
PCIDPCI Compliance1238View
PPPRPolicies, Procedures, and Processes15410View
FIDPFinancial and Insurance1137View
DCTRData Center Operations16411View
CONSConsulting and Professional Services926View
ITACIT Architecture and Controls18512View
DOCUDocumentation724View
REQURequirements825View
COMPCompliance513View
HIPAHIPAA Compliance29820View