Problem
Assume you are a cloud architect designing a cloud implementation for a web application that will store, process, and transmit electronic health information (ePHI), as well as process credit card payments, for a non-profit health system. What are the key components of compliance, security, and privacy you must consider for your cloud implementation? What compliance, security, and privacy standards will you use? Choose and summarize 5 key security controls you'll use in your implementation. Explain the legal and regulatory environment in which your new system must operate, and the implications of this environment in your cloud design and operations.