Managed IT Servicesfor Healthcare
HIPAA-compliant IT infrastructure, EHR system support, and 24/7 security monitoring built for medical practices, clinics, and healthcare organizations. Protect patient data while keeping your clinical systems running at peak performance.
Key Takeaways
- Healthcare organizations must comply with HIPAA Security Rule requirements that demand specific administrative, physical, and technical safeguards for electronic protected health information (ePHI), making specialized IT support essential rather than optional.
- Petronella Technology Group delivers managed IT services for healthcare practices across the Triangle, with deep expertise in HIPAA compliance, EHR system administration, medical device network security, and telehealth infrastructure.
- Healthcare was the most targeted industry for ransomware in 2023 and 2024, with the average healthcare data breach costing $10.93 million according to IBM's Cost of a Data Breach Report, the highest of any industry for 13 consecutive years.
- PTG provides end-to-end healthcare IT: HIPAA risk assessments, EHR optimization, medical device segmentation, encrypted communications, business associate agreement management, and breach notification support.
- From solo dental practices to multi-location specialty clinics, PTG scales IT services to match the size, specialty, and compliance requirements of each healthcare organization we serve.
Why Healthcare Organizations Need Specialized IT Services
Healthcare is not like other industries when it comes to information technology. A dental practice is not a dental office that happens to have computers. A medical clinic is not a regular business with a waiting room. Healthcare organizations are custodians of the most sensitive personal data that exists: medical histories, psychiatric records, substance abuse treatment information, genetic data, HIV status, reproductive health records, and the intimate details that patients share with their providers under the expectation of absolute confidentiality.
The Health Insurance Portability and Accountability Act (HIPAA) codifies this expectation into federal law. The HIPAA Security Rule requires covered entities and their business associates to implement administrative, physical, and technical safeguards to ensure the confidentiality, integrity, and availability of electronic protected health information (ePHI). The penalties for non-compliance range from $100 per violation for unknowing breaches to $50,000 per violation for willful neglect, with maximum annual penalties reaching $1.5 million per violation category. The HHS Office for Civil Rights (OCR) has collected over $142 million in settlements and penalties since the enforcement program began.
Beyond HIPAA fines, the real cost of a healthcare data breach is devastating. IBM's 2024 Cost of a Data Breach Report found that healthcare breaches cost an average of $10.93 million per incident, more than double the cross-industry average and the highest of any sector for the thirteenth consecutive year. These costs include breach investigation, patient notification, credit monitoring, regulatory response, legal defense, lost business, and the reputational damage that follows when patients learn their most private medical information has been exposed.
Generic IT providers typically lack the specialized knowledge to properly secure healthcare environments. They may install antivirus and configure a firewall, but they do not understand how to segment medical devices on a separate VLAN, how to configure role-based access controls in an EHR system, how to handle ePHI on mobile devices used for patient rounding, or how to conduct a proper HIPAA security risk assessment. The gap between standard business IT and healthcare IT is where organizations get exposed to both cyber threats and regulatory action.
Petronella Technology Group has served regulated industries from our Raleigh headquarters for over 23 years. Our HIPAA compliance expertise goes beyond checking boxes on a compliance checklist. We understand the clinical workflows, the technology systems, the regulatory landscape, and the real-world challenges that healthcare organizations face every day. When a physician calls because their EHR is running slowly during a patient appointment, we understand that the delay is not just an inconvenience. It is a patient safety concern and a revenue loss.
Core Managed IT Services for Healthcare Organizations
Our managed IT services for healthcare cover every technology layer that touches patient data, from the network infrastructure in your facility to the cloud platforms your providers access during telehealth visits. Each service is designed around clinical workflows and HIPAA compliance requirements.
EHR and EMR System Support
Administration and optimization for Epic, Cerner (Oracle Health), eClinicalWorks, athenahealth, NextGen, Allscripts, DrChrono, Kareo, and dozens of specialty-specific EHR platforms. We handle server maintenance, database performance tuning, interface management, update deployment, and user provisioning so your clinical staff can focus on patient care.
HIPAA Security and Compliance
Comprehensive HIPAA Security Rule implementation including required risk assessments, security policies and procedures, workforce training, access controls, audit logging, encryption, and business associate agreement management. We maintain your compliance documentation and prepare your organization for OCR audits or state health department reviews.
Medical Device Network Security
IoMT (Internet of Medical Things) devices like patient monitors, infusion pumps, imaging equipment, and lab analyzers require network connectivity but often run outdated operating systems that cannot be patched. PTG segments these devices onto isolated VLANs with strict firewall rules, monitors their network traffic for anomalies, and prevents them from becoming entry points for attackers.
Telehealth Infrastructure
HIPAA-compliant video conferencing, virtual waiting rooms, remote patient monitoring platforms, and secure messaging systems. We deploy and manage telehealth technology that integrates with your EHR, maintains patient privacy, and delivers the bandwidth and reliability that virtual appointments demand. All solutions include BAA coverage.
Cloud and Backup Services
HIPAA-compliant cloud hosting, encrypted backup with tested restores, and disaster recovery planning that meets your recovery time objectives. We use cloud platforms with signed BAAs (Microsoft Azure, AWS GovCloud, Google Cloud Healthcare API) and implement the encryption, access controls, and audit logging that HIPAA requires for cloud-hosted ePHI.
Endpoint and Mobile Device Management
Every workstation, laptop, tablet, and smartphone that accesses ePHI is enrolled in our endpoint management platform. We deploy full-disk encryption, enforce screen lock policies, manage application allowlists, and provide remote wipe capability for lost or stolen devices. BYOD policies are implemented with containerization that separates personal and clinical data.
Protect Your Patients' Most Sensitive Data
Schedule a confidential HIPAA IT assessment and learn where your organization's security gaps exist before a breach or an OCR audit reveals them.
HIPAA Compliance: More Than a Checkbox Exercise
Too many healthcare organizations treat HIPAA compliance as an annual paperwork exercise. They fill out a risk assessment template, hand it to their compliance officer, and file it away until next year. This approach fails catastrophically when OCR comes knocking after a breach. The first thing investigators ask for is a comprehensive, current security risk analysis. If your last risk assessment was 18 months ago and does not reflect changes to your environment, technology additions, or new threat vectors, OCR treats that as willful neglect of the Security Rule.
PTG approaches HIPAA compliance as a continuous program, not a point-in-time activity. We conduct initial security risk assessments using the NIST Cybersecurity Framework methodology that OCR has endorsed. We then implement the administrative, physical, and technical safeguards identified in the risk assessment. We track remediation progress, update policies as regulations change, and maintain the documentation trail that proves your organization is making reasonable and appropriate efforts to protect ePHI.
The HIPAA Security Rule contains 54 implementation specifications across its administrative, physical, and technical safeguard categories. Of these, 22 are required and 32 are addressable. "Addressable" does not mean optional. It means you must either implement the specification or document why it is not reasonable and appropriate for your organization and what alternative safeguard you implemented instead. PTG helps you work through every specification, implement the controls that apply to your environment, and document your decisions for the ones where alternative measures are appropriate.
Business associate management is another area where healthcare organizations frequently fall short. Every vendor that accesses, stores, processes, or transmits ePHI on your behalf must have a signed business associate agreement (BAA) in place. This includes your IT provider, your cloud hosting company, your billing service, your shredding company, your answering service, and any other entity that touches patient information. PTG maintains a BAA registry for our healthcare clients, tracks agreement renewal dates, and ensures that every vendor relationship is properly documented. We also sign our own BAA with every healthcare client, because we take our obligations as a business associate as seriously as we take our role as your IT partner.
When the worst happens and a breach occurs, HIPAA requires specific notification procedures. Breaches affecting 500 or more individuals must be reported to OCR within 60 days and require media notification. Breaches affecting fewer than 500 individuals must be reported to OCR within 60 days of the end of the calendar year. All affected individuals must receive written notification. PTG's incident response team handles the technical investigation, helps determine the scope of the breach, and supports your organization through the notification process so you meet every deadline and requirement.
Cybersecurity Threats Targeting Healthcare Organizations
Healthcare has become the single most targeted industry for cyberattacks. The combination of valuable data, legacy systems, network-connected medical devices, and historically underfunded IT security makes healthcare organizations attractive targets for ransomware gangs, data thieves, and nation-state actors. A single patient record sells for $250 to $1,000 on dark web markets, compared to $5 for a credit card number, because medical records contain everything needed for identity theft, insurance fraud, and prescription fraud.
Ransomware attacks against healthcare organizations have reached crisis levels. The Change Healthcare breach in February 2024 disrupted claims processing for approximately 30% of the entire U.S. healthcare system, affecting hospitals, pharmacies, and physician practices nationwide. UnitedHealth Group estimated the total cost of the incident at over $1.6 billion. Smaller practices are equally vulnerable. A ransomware attack that encrypts your EHR system, practice management platform, and backup servers simultaneously can shut down patient care operations for days or weeks.
PTG's managed detection and response service provides the 24/7 security monitoring that healthcare organizations need to detect and contain threats before they cause a breach. Our MDR analysts understand healthcare-specific attack patterns, including EHR credential theft, medical device exploitation, HL7/FHIR interface attacks, and the social engineering tactics that target clinical staff. When we detect suspicious activity in your environment, we respond in minutes, not hours.
Medical device security represents a unique challenge that general IT providers are not equipped to handle. A connected infusion pump running Windows XP Embedded cannot receive security patches. A PACS imaging system that communicates over unencrypted DICOM protocols cannot be upgraded without the manufacturer's involvement. A lab analyzer that requires network access to transmit results may have known vulnerabilities that the vendor has no timeline to fix. PTG addresses these risks through network segmentation, anomaly-based monitoring, and compensating controls that protect vulnerable devices without disrupting clinical operations.
Insider threats are also significant in healthcare settings. A front desk employee who accesses a celebrity patient's records out of curiosity violates HIPAA just as surely as an external hacker. A nurse who photographs a patient chart to share with a family member creates a reportable breach. PTG implements role-based access controls, EHR audit logging, and user behavior analytics that detect inappropriate access to patient records. When access anomalies are detected, they are flagged to your privacy officer for investigation, and we maintain the audit trail needed to demonstrate that your organization takes the minimum necessary standard seriously.
Healthcare Ransomware Is at Crisis Levels
Do not become the next headline. PTG's managed security services protect healthcare organizations from the threats that are shutting down practices across the country.
Healthcare Organizations We Support
Every healthcare specialty has different technology needs, different EHR platforms, different clinical workflows, and different compliance considerations. PTG tailors our managed IT services to the specific requirements of your practice type, patient population, and growth trajectory.
Private Medical Practices
Primary care, internal medicine, family medicine, and specialty practices with 1-20 providers. We manage your EHR environment, practice management system, patient portal, billing integrations, and HIPAA compliance program. Our cloud-first approach reduces on-premises hardware costs while maintaining the performance and security your practice requires.
- EHR optimization and support
- Patient portal management
- MIPS and quality reporting support
- Insurance credentialing system integration
Dental Offices and Oral Surgery
Dental practices have unique technology requirements including digital imaging (CBCT, panoramic, intraoral cameras), practice management platforms (Dentrix, Eaglesoft, Open Dental), and patient communication systems. We ensure your imaging systems integrate properly with your PM software, your patient reminders comply with TCPA requirements, and your HIPAA compliance covers dental-specific scenarios.
- Digital imaging system integration
- Dentrix, Eaglesoft, Open Dental support
- CBCT and panoramic X-ray networking
- Patient communication compliance
Behavioral Health and Substance Abuse
Behavioral health practices handle some of the most sensitive patient data that exists. 42 CFR Part 2 imposes stricter protections on substance use disorder treatment records than standard HIPAA rules. PTG implements the additional access controls, consent management, and audit logging required to comply with both HIPAA and Part 2 requirements, including proper segmentation of SUD records from general health information.
- 42 CFR Part 2 compliance controls
- Telehealth platform deployment
- Consent management systems
- Encrypted messaging for crisis intervention
Multi-Location Clinics and Ambulatory Care
Organizations with multiple facilities need consistent technology standards across locations, secure inter-site connectivity, centralized management, and the ability to share patient records across sites while maintaining access controls. PTG designs and manages multi-site healthcare networks with site-to-site VPN, centralized EHR hosting, unified communications, and location-specific compliance documentation.
- Site-to-site VPN and SD-WAN
- Centralized EHR and imaging
- Unified communications across locations
- Per-location HIPAA compliance documentation
Specialty Clinics and Surgical Centers
Orthopedics, dermatology, ophthalmology, cardiology, and other specialty practices often have equipment-intensive environments with connected surgical equipment, specialized imaging modalities, and procedure-specific software. Ambulatory surgery centers (ASCs) have additional requirements around patient tracking, scheduling, and anesthesia documentation systems that must integrate with the clinical workflow.
- Surgical equipment network integration
- Specialty imaging support (OCT, EKG, ultrasound)
- ASC scheduling and tracking systems
- Device vendor coordination
Home Health and Hospice
Field-based healthcare providers face unique IT challenges. Clinicians need secure access to patient records from patient homes over cellular and Wi-Fi networks of varying quality. Devices must be encrypted, remotely manageable, and capable of offline operation when connectivity is poor. PTG deploys mobile device management, encrypted offline-capable EHR access, and cellular-based secure connectivity for home health and hospice staff.
- Mobile-first EHR access
- Offline-capable clinical documentation
- Cellular connectivity solutions
- Remote device encryption and wipe
EHR and EMR System Administration
Your electronic health record system is the backbone of your clinical operations. When the EHR goes down, patient care stops. When the EHR runs slowly, providers fall behind on appointments, documentation takes longer, and revenue decreases. When the EHR is misconfigured, clinical workflows break, reporting is inaccurate, and staff frustration drives turnover. PTG provides the dedicated EHR administration that keeps your clinical systems performing at their best.
We support both cloud-hosted and on-premises EHR deployments. For on-premises systems, we manage the server hardware, operating system, database engine, application updates, and interface connections. We monitor performance metrics continuously, identify bottlenecks before they affect clinical operations, and optimize database queries that have degraded over time as your data volume has grown. For cloud-hosted EHRs, we manage the endpoint configuration, SSO integration, bandwidth optimization, and vendor relationship to ensure your cloud platform meets its SLA commitments.
EHR interfaces are another area that requires specialized expertise. HL7 v2 messages, FHIR APIs, and CCDA document exchanges connect your EHR to labs, pharmacies, imaging centers, HIEs, public health registries, and billing systems. When an interface fails, lab results stop flowing into patient charts, prescriptions do not reach pharmacies, and claims are not submitted. PTG monitors interface engine health, troubleshoots message failures, and works with your EHR vendor and integration partners to resolve issues rapidly.
We also support EHR migrations when your organization outgrows its current platform or needs to consolidate systems after an acquisition. EHR migration is one of the most complex IT projects a healthcare organization can undertake, involving data mapping, historical record conversion, workflow redesign, staff training, and parallel operation periods. PTG has guided healthcare organizations through platform transitions with minimal clinical disruption and zero data loss.
| EHR/EMR Platform | Practice Type | PTG Services |
|---|---|---|
| Epic (community connect) | Multi-specialty, hospital-affiliated | Workstation optimization, interface monitoring, SSO |
| Oracle Health (Cerner) | Hospital-affiliated practices | Server management, performance tuning, updates |
| eClinicalWorks | Primary care, multi-specialty | Cloud/on-prem support, FHIR integration, reporting |
| athenahealth | Primary care, specialty | Network optimization, SSO, billing integration |
| NextGen Healthcare | Specialty practices, ambulatory | Server management, database optimization, interfaces |
| Dentrix / Eaglesoft | Dental | Imaging integration, backup, database maintenance |
| TherapyNotes / SimplePractice | Behavioral health | Telehealth integration, compliance configuration |
| DrChrono / Kareo / Tebra | Small practices | iPad deployment, cloud optimization, data migration |
How We Onboard Healthcare Organizations
Transitioning IT providers in a healthcare setting requires meticulous planning because clinical systems cannot tolerate extended downtime. PTG has refined our healthcare onboarding process over two decades to ensure zero disruption to patient care during the transition.
HIPAA Security Risk Assessment
We begin with a comprehensive HIPAA security risk assessment that maps every system, device, and data flow that touches ePHI. We identify vulnerabilities, compliance gaps, and security risks using the methodology endorsed by OCR. This assessment becomes the foundation for your compliance program and remediation roadmap.
Clinical Workflow Analysis
We shadow your clinical staff to understand how technology supports patient care in your specific environment. We document EHR workflows, imaging processes, lab ordering patterns, prescription routing, and patient communication channels. This ensures our IT support aligns with clinical reality, not just technical best practices.
Phased Migration
We migrate systems in a sequence that protects clinical operations: endpoints first, then servers, then network infrastructure, then cloud services. Each phase is executed during off-hours with tested rollback procedures. Critical systems like EHR, lab interfaces, and prescription routing are migrated with parallel operation periods to verify functionality before cutover.
HIPAA Training and Policies
We deploy role-specific HIPAA training for your workforce: clinical staff receive training focused on ePHI handling, mobile device security, and phishing recognition. Administrative staff learn about minimum necessary access, social engineering, and breach identification. Management receives policy review and incident response role assignments. Training is tracked and documented for compliance evidence.
Ongoing Managed Services
After onboarding, your organization receives 24/7 monitoring, proactive maintenance, priority help desk access, quarterly HIPAA compliance reviews, and monthly executive reports. We conduct annual risk assessment updates, manage your BAA registry, and prepare documentation for OCR audits, payer audits, and accreditation surveys.
Your Patients Trust You with Their Data
Make sure your IT infrastructure deserves that trust. PTG builds healthcare IT environments that protect patient data, support clinical excellence, and maintain HIPAA compliance.
Telehealth Infrastructure and Remote Care Technology
Telehealth has evolved from an emergency pandemic measure to a permanent component of healthcare delivery. Patients expect the option of virtual visits. Providers recognize the efficiency gains of remote consultations for follow-ups, medication management, behavioral health sessions, and chronic disease monitoring. But telehealth introduces significant IT and compliance challenges that many healthcare organizations have not adequately addressed.
Not every video conferencing platform is HIPAA-compliant. Consumer tools like standard Zoom, FaceTime, and Google Meet do not sign BAAs and do not provide the encryption, access controls, and audit logging that HIPAA requires. PTG deploys HIPAA-compliant telehealth platforms that integrate with your EHR, provide virtual waiting rooms, support screen sharing for reviewing test results with patients, and maintain the privacy and security standards that federal regulations demand.
Remote patient monitoring (RPM) is another growing area where healthcare IT expertise is essential. Connected devices that track blood pressure, glucose levels, pulse oximetry, weight, and cardiac rhythm transmit data back to the clinical team for ongoing monitoring. These data streams must be encrypted in transit, stored in HIPAA-compliant systems, and integrated into the patient's EHR record. PTG manages the entire RPM technology stack, from device provisioning and patient onboarding to data integration and alert routing.
Bandwidth and network reliability become critical when clinical decisions depend on video quality. A telehealth visit where the provider cannot see the patient clearly, where audio drops frequently, or where screen sharing does not work properly is worse than no visit at all. PTG designs healthcare networks with dedicated bandwidth for telehealth traffic, quality of service (QoS) policies that prioritize clinical communications, and redundant internet connections that ensure virtual visits are not interrupted by a single provider outage.
Why Healthcare Organizations Choose PTG
23+ Years in Regulated Industries
Founded in 2002, PTG has spent over two decades serving clients in healthcare, legal, defense contracting, and financial services. We understand that compliance is not a project. It is an ongoing program that requires constant attention and expertise.
HIPAA and Multi-Framework Compliance
Our compliance team holds expertise across HIPAA, HITECH, 42 CFR Part 2, CMMC, PCI DSS, SOC 2, and NIST 800-171. Healthcare organizations that handle government or defense-related data benefit from our ability to map controls across multiple frameworks simultaneously.
Full-Stack IT, Security, and Forensics
Unlike niche healthcare IT consultants, PTG provides comprehensive managed IT, managed security, compliance documentation, digital forensics, and AI services under one roof. When a breach occurs, we handle the investigation, containment, and compliance response without involving additional vendors.
Craig Petronella: Published Author and Expert
PTG's founder is a published author on cybersecurity, a CMMC Registered Practitioner, and a trusted advisor to healthcare organizations across North Carolina. His leadership ensures that every healthcare engagement receives senior-level strategic guidance.
PTG vs. Generic IT Providers for Healthcare
| Capability | Generic MSP | Petronella Technology Group |
|---|---|---|
| HIPAA Risk Assessment | Basic checklist | OCR-endorsed NIST methodology with remediation tracking |
| EHR System Support | General application support | Platform-specific EHR administration and optimization |
| Medical Device Security | Not offered | IoMT segmentation, anomaly monitoring, compensating controls |
| BAA Management | Signs own BAA only | Complete BAA registry with tracking and renewal management |
| Breach Response | Refer to third party | In-house forensics with HIPAA notification support |
| Telehealth Infrastructure | Standard video conferencing | HIPAA-compliant platforms with EHR integration and BAA coverage |
| Compliance Documentation | Generic templates | Healthcare-specific policies, procedures, and audit preparation |
| 24/7 Security Monitoring | Basic alerts | MDR with healthcare-specific threat intelligence |
Frequently Asked Questions About Healthcare IT Services
How much do managed IT services cost for a healthcare practice?
Pricing varies based on the number of providers, staff, devices, and the complexity of your clinical systems. Most healthcare practices invest between $175 and $400 per user per month for comprehensive managed IT with HIPAA compliance included. When you consider that the average healthcare breach costs $10.93 million and that HIPAA penalties can reach $1.5 million per violation category per year, the investment in proper healthcare IT management pays for itself by preventing a single incident. Contact PTG at 919-348-4912 for a custom quote.
Do you sign a business associate agreement (BAA)?
Absolutely. PTG signs a comprehensive BAA with every healthcare client before any work begins. Our BAA covers all services we provide, including help desk support (where our technicians may encounter ePHI during troubleshooting), backup and disaster recovery, security monitoring, and any cloud services we manage on your behalf. We take our obligations as a business associate seriously and maintain our own HIPAA compliance program internally.
Can you help us pass a HIPAA audit?
Yes. PTG prepares healthcare organizations for OCR audits, state health department reviews, payer audits, and accreditation surveys (AAAHC, Joint Commission). We maintain current documentation including your security risk assessment, policies and procedures, training records, BAA registry, incident response plan, and evidence of remediation activities. When an audit occurs, we work alongside your compliance team to respond to information requests and demonstrate your organization's compliance posture.
How do you handle medical device security?
Medical devices present unique security challenges because many run outdated operating systems, cannot be patched without manufacturer involvement, and require network connectivity for clinical function. PTG addresses this through network segmentation (placing devices on isolated VLANs), micro-segmentation with next-generation firewalls, anomaly-based monitoring that detects unusual device behavior, and compensating controls that protect the network even if a device is compromised. We coordinate with device manufacturers on firmware updates and maintain an inventory of all connected medical devices with their associated risk profiles.
What EHR systems do you support?
PTG supports all major EHR and EMR platforms including Epic (community connect deployments), Oracle Health (Cerner), eClinicalWorks, athenahealth, NextGen Healthcare, Allscripts, DrChrono, Kareo/Tebra, Dentrix, Eaglesoft, Open Dental, TherapyNotes, SimplePractice, and dozens of specialty-specific platforms. Our support includes server administration, database optimization, interface monitoring, update deployment, user provisioning, and vendor coordination. We also manage EHR migrations when practices need to transition between platforms.
Do you support telehealth platforms?
Yes. PTG deploys and manages HIPAA-compliant telehealth solutions that integrate with your EHR system. We support platforms including Zoom for Healthcare (with BAA), Doxy.me, Updox, and EHR-native telehealth modules. Our services include platform deployment, provider training, bandwidth optimization, QoS configuration for video traffic, and ongoing support for both providers and patients experiencing technical issues during virtual visits.
How quickly can you respond to IT emergencies during patient care?
PTG provides tiered response times based on impact severity. Critical issues that affect patient care (EHR down, lab interface failure, complete network outage) receive immediate response with a target resolution of under one hour. High-priority issues affecting multiple users receive response within 15 minutes. Standard support requests are acknowledged within 30 minutes and resolved within 4 hours. Our 24/7 monitoring means we often detect and resolve issues before your clinical staff notices them.
Can you support multiple practice locations?
Absolutely. PTG manages IT for multi-location healthcare organizations across the Triangle and beyond. We design site-to-site connectivity using encrypted VPN tunnels or SD-WAN, implement centralized EHR and imaging services, deploy unified communications across locations, and maintain per-location HIPAA compliance documentation. Our remote monitoring and management tools provide visibility into every device across all locations from a single management platform, ensuring consistent security standards regardless of physical location.
Ready to Secure Your Healthcare Practice?
Join the healthcare organizations across the Triangle that trust Petronella Technology Group with their IT infrastructure, HIPAA compliance, and patient data protection. Schedule your confidential assessment today.