The Colorado Department of Healthcare Policy and Financing is dedicated to improving healthcare access and outcomes for Coloradoans. In order to protect the privacy of the people it serves, the State engaged CSG to perform an independent security and privacy controls assessment and evaluation of its health insurance marketplace and integrated eligibility system’s shared connection to the Federal Data Services Hub.
MARS-E v2.0 Security Assessments
CSG applied CMS’ Minimum Acceptable Risk Standards for Exchanges 2.0 (MARS-E 2.0) and tested each of the more than 350 security and privacy controls. CSG produced a Security Assessment Report with findings and recommendations, which was incorporated into the State’s Plan of Action and Milestone document. CSG also provided an Annual Security and Privacy Attestation for ACA Systems for submission to CMS.