At Khan & Marshall we understand the onerous time commitment and financial burden of HIPAA/HITECH compliance. Our 169-point audits bring peace of mind to small and mid-size practices by covering the complete HIPAA/HITECH regulatory spectrum from information privacy to information security to breach notification.
Whether this is your first assessment, a periodic checkup, or a corrective action plan (CAP), we’re here for you at a price you can afford.
Khan & Marshall Schedule of Services

COMPLETE ANNUAL RISK ASSESSMENT SERVICE
Ensures full HIPAA/HITECH compliance. OCR expects covered entities and their business associates to continuously conduct risk assessment for ongoing HIPAA compliance. For one low fee, our annual package begins with an initial 173-point survey closely following OCR Performance Audit Protocols, a corrective action plan, 6-month follow up assessment of identified corrective actions, and includes 12 months of support.
- Document and policy review
- On-site inspection, staff interviews, security walk-through
- Full report with recommendations and corrective action plan
- Covers FTC compliance (Red Flags Rule), breach notification & enforcement
- Required policy and procedure templates customized for you
- High level health care IT advice
- Discounted fees for additional services
- Support Hotline M-F, 9-5
Practices with 1-2 providers
$3800
Each additional provider
$700
Each additional location
$500

INTERNAL AUDITS
Provide feedback for Compliance Officers. Flat fee for one-time audit with full report and recommendations
Complete assessment 1-2 providers Add $700 for each additional provider
$2100
Selected aspect audit 1-2 providers Add $300 for each additional provider
$1500

INDEPENDENT AUDITS
Demonstrate that rigorous compliance has been achieved. A complete 173-point audit following OCR Performance Audit protocols provides verification that you are on point with HIPAA/HITECH regulations.
- Provide to regulatory authorities as evidence of compliance
- Reassure patients that you care about their privacy
- Certificate of audit to post on your website and in your waiting room
Practices with 1-2 providers Add $1400 for each additional provider
$4200

OCR AUDIT SUPPORT
For confidence and expertise at your side. On-site support for consultation before, during and after an announced OCR audit or investigation to help mitigate fines and penalties stemming from non-compliance.
Annual Subscription clients
$35/hr
Internal Audit clients
$45/hr
New clients
$75/hr
Corrective Action Plan Implementation (CAP)
$75/hr

IT CONSULTATION, DESIGN, IMPLEMENTATION AND SUPPORT SERVICES
Don't waste your money on costly IT that may be unnecessary or outdated. We know what you need, and what you don't.
Initial consult to determine scope of assessment and fee quote
Free

Training
To increase adoption of IT or HIPAA/HITECH compliance protocols. You have made significant investments in staff and technology, now get the highest adoption and ROI possible.
On site-training including all training materials
$135/hr

TEMPLATES, MANUALS AND POLICIES
Designed to cover gaps in regulatory compliance.
Packages customized for your practice
$695

PUBLIC RELATIONS
Adverse incidents, image building, patient relations program -- Don't know what to say? We do.
Filtered, intelligent responses crafted for every audience
$75/hr