Discover how Luma Health’s compliance program is differentiating them in their industry

Healthcare
SOC 2 Type 2; HITRUST; Penetration Testing; ISO 27001
Luma Health is the creator of the world’s first digital Patient Success Platform™, which connects and orchestrates all of the steps in the patient journey, along with all the operational workflows and processes in the healthcare ecosystem.
Opportunity
When Nick Lees became the Director of Information Security and Compliance at Luma Health, the company had seen an increase in client requests for their standards and compliance certifications. They already had their SOC 2 Type 2 assessment and were interested in adding in HITRUST CSF. Nick recognized the opportunity to not only do that, but to implement a more thorough and robust compliance program that could help Luma attract more clients and bigger business opportunities.
Solution
Before coming to Luma Health, Nick worked jointly with 360 Advanced to provide compliance assessments and cybersecurity services for an info security program he was building at another company. He really valued 360 Advanced’s technical knowledge and collaborative nature, and knew he wanted 360 Advanced to help him build a compliance program for Luma. Luma Health has used 360 Advanced as their trusted third-party advisor since 2021.
Results
“Our work with 360 Advanced demonstrates to our clients that we take
the security and privacy of their data very seriously, and that we’re
continuously trying to improve our program and stay on top of changes
and emerging threats.
It also boosts our business brand as well. We’re one of the only companies
in our space that has HITRUST, SOC 2 and ISO 27001, and it definitely
separates us, especially when we go into a sales meeting or talk to a
prospect’s info security team. It gets us a seat at the table with clients
who may not have considered us previously.”
Nick Lees
Director of Information Security and Compliance
360 Cyber Resources
Explore a wealth of knowledge in our client stories, insightful blogs, cutting-edge white papers, and the latest press releases—your gateway to a repository of expertise and industry insights.
Kodiak Solutions Strengthens Data Security and Compliance with Support from 360 Advanced
Indianapolis, Indiana – March 7h, 2025 – Kodiak Solutions, a leading provider of financial analytics and technology solutions for healthcare organizations, has successfully completed its latest SOC 1 Type 2...
FirstCredit, Inc. (FCI/RevCare) Achieves HITRUST i1 Certification to Manage Data Protection and Mitigate Cybersecurity Threats
Fairlawn, Ohio – March 5th, 2025 – FirstCredit, Inc. (FCI/RevCare), a leading provider of innovative, technology-driven eligibility and receivable management solutions to hospitals and health systems across the US, today...
The Dark Side of AI: New Cybersecurity Challenges for Organizations
We all love artificial intelligence (AI) for taking the work out of Photoshop and, well, homework, but the hot new technology on the tip of everyone’s tongue has a dark...