Customer Stories / Hippo
Hippo Technologies, Inc. achieves multiple compliance frameworks critical for opening doors to new healthcare customers


CHALLENGE
A growing company required expert guidance
As a young, mission-driven company, the Hippo team had only marginal experience with the details of compliance. But Dick Kile, COO of Hippo, knew meeting compliance was a critical task for their growing business.
Compliance is a very important element of business in healthcare. The sales cycle is long in the healthcare industry, so one of the first hurdles you need to jump over is compliance.
Dick Kile
COO
Hippo
Dick knew they had to meet certain security requirements in order to win business with healthcare organizations, but needed a partner to walk them through the process. He and the Compliance Team looked for a holistic solution that combined compliance expertise, great customer service, and streamlined technology that could help Hippo not only pass its audits but also shape his team’s thinking about compliance. He found that partner in Thoropass.
SOLUTION
Hippo chose Thoropass to guide the team on its multi-framework journey
Dick and team chose Thoropass to help Hippo lock down its security and privacy areas. With the help of Thoropass’s compliance experts, they determined to move forward with three frameworks that were appropriate for Hippo’s specific business—GDPR, HIPAA, and ISO 27001—and developed a step-by-step plan to get there.
Hippo’s compliance group used Thoropass’s comprehensive compliance platform to organize the evidence and documentation of their policies in one place and match them to the requirements of each framework. The platform also made communication seamless–the Hippo team asked questions nearly every week and received quick responses. The team was especially grateful for his Thoropass Customer Success Manager, who guided the team every step of the way.
[Our CSM] was professional and responsive. We liked her because she had a good handle on what to do, and made sure everything was done right. She was the glue that held it together.
Dick Kile
Hippo
Before each of the external audits, Thoropass conducted an internal audit with the Hippo team to ensure they had everything prepared.
“I would say [the internal audit was] exceptionally good. We thought we had it nailed, and we didn’t. They were able to highlight areas where we missed the mark or didn’t have the right evidence,” said Dick Kile.
RESULTS
Increased credibility paves the way for healthcare customer acquisition
Hippo achieved its GDPR, HIPAA, and ISO 27001 certifications, raising the bar on compliance and opening the doors to conversations with potential new clients.
We are proud of our compliance designations and find them very helpful when speaking to clients, vendors, and potential clients in this space.
We probably have more compliance certifications than anybody else our size. And we’re flying those Thoropass certifications proudly on our website.
Dick Kile
Hippo
In addition to improving its security posture, the certification process helped Hippo formalize its operational policies and procedures, setting it up for future growth. The team learned a lot of valuable information in the process.
Our Compliance Team is much better versed in ISO and HIPAA and GDPR than ever before.
Dick Kile
Hippo
LOOKING AHEAD
Ensure long-term compliance with ongoing monitoring and improved processes
Hippo plans to keep its certifications up-to-date and will use future Thoropass product offerings, such pentesting, to identify and resolve any vulnerabilities.
Through its work with Thoropass, the Hippo team has a better understanding of compliance.
Thoropass completely organized our thinking about compliance to the point that we understood the major areas of corporate compliance and, even more importantly, how to train our team on them and to operationalize them.
Dick Kile
Hippo
Hippo
Featured
Product
GDPR,
HIPAA,
ISO 27001,
Industry
HealthTech
Company size
11-50
Location
Washington
Related Customer Stories

Telecom Networks Outsourcing streamlines HIPAA compliance and opens doors to growth in the healthcare industry
HIPAA,

Transforming compliance: how Allison achieved SOC 2 attestation with Thoropass and SciSpike
SOC 2,