In today's environment of data breaches, identity theft, fraud, and increasing connectivity, HIPAA Privacy and Security rules are a responsibility to your patients and your clients. HIPAA isn't about compliance, it's about patient care.
…
continue reading

1
The Medcurity Podcast: HIPAA Compliance | Security | Technology | Healthcare
Medcurity: HIPAA Compliance
Healthcare is complicated. Joe Gellatly and Amanda Hepper are here to help, guiding us through the biggest issues and updates in healthcare security and compliance. From HIPAA Risk Assessments to the dark web, learn what factors are affecting the security of healthcare information and how to protect your data. Tune in for news, advice, and more.
…
continue reading
HIPAA compliance is complicated, confusing and easy to get wrong. Violations, data breaches and ransomware attacks are everywhere in healthcare. HIPAA Critical brings interviews with leaders in cybersecurity, InfoSec, healthcare, and compliance straight to you. Each 30-minute episode is designed to keep you informed and entertained. A new episode is released on the first three Wednesdays of every month.
…
continue reading
https://petronellatech.com and our sponsor at https://compliancearmor.com present Cybersecurity and Compliance with Craig Petronella Podcast. Learn the latest on the CMMC 2.0, DFARS, NIST, HIPAA, GDPR, ISO27001 and more. Learn about the most current IT security threats in ransomware, phishing, business email compromise, cybercrime tactics, cyberheist schemes, and social engineering scams, as well as tips and tricks from leading professionals to help you prevent hackers from penetrating your ...
…
continue reading

1
2025 HIPAA Essentials in 5 Minutes | Medcurity Live 090
5:28
5:28
Na później
Na później
Listy
Polub
Polubione
5:28In five minutes, we break down what HIPAA really expects from your organization in 2025. From your Security Risk Analysis to employee training, access controls, audit logs, and business associate agreements—this is the real-world checklist regulators are looking for. We’ll explain each core requirement, how enforcement is evolving, and offer practi…
…
continue reading

1
HSCC Makes Bold Cyber Rx Move Before Congress - Ep 505
53:52
53:52
Na później
Na później
Listy
Polub
Polubione
53:52Imagine your hospital gets hacked—the MRIs are down, billing’s frozen, and suddenly you’re faxing patient records like it’s 1999. No, that’s not a “Twilight Zone” rerun—it’s real life in health care. This week, we’re diving into what the Health Sector Coordinating Council (HSCC) is doing about it, including their recent trip to Congress to lay it a…
…
continue reading

1
The One Security Habit That Makes the Biggest Difference | Medcurity Live 089
6:31
6:31
Na później
Na później
Listy
Polub
Polubione
6:31In this episode, we’re talking about one habit that could have the biggest impact on your organization’s security posture—and it’s not a new tool or system. With phishing attacks getting more sophisticated and OCR enforcement on the rise, this one behavior can interrupt the pattern attackers rely on. We’ll unpack why it matters, how to build it int…
…
continue reading

1
Keeping It Boring and Patched - Ep 504
47:22
47:22
Na później
Na później
Listy
Polub
Polubione
47:22Forget action-packed heist movies — the real cybersecurity heroes are the ones making their auditors yawn. In this episode, we break down why "boring and patched" should be everyone's new life goal. From AI developments that won’t sit still for five minutes to real-world cyber drama featuring surprise FBI visits (no popcorn needed), we’re serving u…
…
continue reading

1
Proactive AI in Healthcare—Special Episode Featuring Dan Fox
38:00
38:00
Na później
Na później
Listy
Polub
Polubione
38:00What happens when you bring together proactive AI and healthcare communication? You get smarter outreach, stronger patient engagement, and fewer compliance gaps. In this special episode, we’re joined by Dan Fox, Managing Director of Healthcare at Drips. With over 12 years in AI-driven tech, Dan shares how conversational AI is transforming how healt…
…
continue reading

1
The Real Cost of Skipping Your SRA | Medcurity Live 088
6:37
6:37
Na później
Na później
Listy
Polub
Polubione
6:37The new OCR Acting Director Anthony Archeval said that Security Risk Analyses are not only required but are the first step to limit breaches—with penalties already being issued for non-compliance. In this episode, we break down why SRAs matter more than ever, what can go wrong when they’re skipped, and how to make them manageable. With recent OCR s…
…
continue reading

1
AI Has A Patient Safety Problem - Ep 503
48:52
48:52
Na później
Na później
Listy
Polub
Polubione
48:52AI in healthcare is kind of like an overenthusiastic intern—it’s full of potential, but someone probably should be watching it a little closer. In this episode, we dive into why artificial intelligence might be more “oops” than “awesome” when it comes to patient safety. A recent ECRI report flagged AI as a top safety concern and offered up smart re…
…
continue reading

1
10 Security & Privacy Metrics to Keep Your SMB in the Black - Ep 502
47:31
47:31
Na później
Na później
Listy
Polub
Polubione
47:31Think your once-a-year vulnerability scan is enough? That’s adorable. Waiting to check your security metrics until something goes wrong is like only checking your smoke alarm after the house starts smelling like burnt toast. In this episode, we peel back the layers on the top 10 security and privacy metrics every business should be tracking—whether…
…
continue reading

1
Zero Trust in Healthcare—What It Is and Why It Matters | Medcurity Live 087
6:00
6:00
Na później
Na później
Listy
Polub
Polubione
6:00Zero trust changes how healthcare protects patient data by verifying every access, every time. We’ll explain what it is, why it’s essential for your organization’s security, and how to put it in place without extra stress. It’s a straightforward way to stay secure and keep up with HIPAA requirements. Tune in to hear how Medcurity can guide you thro…
…
continue reading

1
HIPAA, Hackers, and Havoc – A Cybersecurity Reality Check - Ep 501
56:16
56:16
Na później
Na później
Listy
Polub
Polubione
56:16Buckle up, folks—this episode is a rollercoaster of cyber chaos! We kick things off with a quick chat about the upcoming PriSec Boot Camp (because let’s be real, who doesn’t love a good security boot camp?). But then, we dive headfirst into the madness: a fresh HIPAA smackdown over right-of-access failures, a rogue IT guy who locked down an entire …
…
continue reading

1
Right of Access: HIPAA Done Right | Medcurity Live 086
7:15
7:15
Na później
Na później
Listy
Polub
Polubione
7:15The HIPAA Right of Access lets patients get their medical records with ease—and we’re here to help you make it happen smoothly! This episode covers the rules, from timelines to exceptions, using a recent Oregon case to show what to watch for, and shares clear steps to stay compliant. Join us to keep your processes on track and your patients happy! …
…
continue reading

1
500 Episodes Later – The Threats Are Worse But So Are Our Jokes - Ep 500
44:55
44:55
Na później
Na później
Listy
Polub
Polubione
44:55500 episodes. A whole decade. Countless cybersecurity threats (and just as many dad jokes). Somehow, we’re still talking about the same cybersecurity nightmares—only now with fancier threats and AI-powered scams. In this milestone episode of Help Me With HIPAA, we take a trip down memory lane—reminiscing about our early struggles, the evolution of …
…
continue reading

1
11 Things the Government Might Ask For in an Audit | Medcurity Live 085
7:58
7:58
Na później
Na później
Listy
Polub
Polubione
7:58Facing an audit can feel overwhelming, but knowing the 11 key things the government might ask for can keep your healthcare organization prepared. This episode breaks down what those requests—covering security risks and compliance—mean and how to have the right documentation ready. Tune in to get the insights you need to stay ahead of HIPAA requirem…
…
continue reading
Cybersecurity: It’s like flossing—we all know we should do it, but a shocking number of people just…don’t. This week, we’re digging into the annual cybersecurity attitudes and behaviors report, which reveals just how careless people are with their passwords, personal info, and, well, basic online survival skills. But don’t worry, AI is here to save…
…
continue reading

1
Are Your Passwords an Open Door? | Medcurity Live 084
4:18
4:18
Na później
Na później
Listy
Polub
Polubione
4:18Credential stuffing could be the silent killer of your healthcare security—imagine hackers slipping in with just one reused password, exposing patient data and triggering massive fines. We break down how these sneaky attacks exploit password habits on the dark web, why they’re a goldmine for cybercriminals targeting medical records, and the simple …
…
continue reading

1
Big Money Breaches & Bad Security Grades - Ep 498
45:03
45:03
Na później
Na później
Listy
Polub
Polubione
45:03Cybersecurity report cards are in, and let’s just say—most companies would be grounded if their IT security grades were real school grades. With over 80% of Fortune 500s scoring a D or F, and healthcare companies hovering around the danger zone, it's clear that many organizations are securing data about as well as a cardboard vault. Just ask Warby …
…
continue reading

1
Outdated Systems, Modern Solutions | Medcurity Live 083
11:58
11:58
Na później
Na później
Listy
Polub
Polubione
11:58Outdated systems are a major security risk—but modern solutions can bridge the gap. In this episode, we explore how legacy tech leaves healthcare organizations vulnerable and what steps you can take to strengthen security without a complete overhaul. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPA…
…
continue reading

1
DeepSeek, Deepfakes and AI’s Big Game Moment - Ep 497
40:21
40:21
Na później
Na później
Listy
Polub
Polubione
40:21AI just leveled up, and we’re here to talk about it! In this episode, we dive into DeepSeek—the AI model that shook up the stock market, gave OpenAI a run for its money (literally), and is both insanely cheap to run and totally open-source (which is equal parts exciting and terrifying). We also break down the rise of deepfake scams, AI’s growing ro…
…
continue reading

1
HIPAA in Crisis: Preparing for Emergencies | Medcurity Live 082
10:42
10:42
Na później
Na później
Listy
Polub
Polubione
10:42How does HIPAA work when every second counts? Learn how emergency provisions let healthcare providers quickly share the essential patient info they need—using treatment exceptions and the “minimum necessary” rule—while still keeping privacy in check. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPA…
…
continue reading

1
Healthcare Has A Kick Me Sign - Ep 496
45:17
45:17
Na później
Na później
Listy
Polub
Polubione
45:17Imagine leaving your front door wide open in a neighborhood full of burglars, then acting shocked when your TV disappears. That’s basically what’s happening in healthcare cybersecurity. This week, we’re talking about why hackers are running rampant, how small healthcare practices are prime targets (no, you’re not “too small to matter”), and what ba…
…
continue reading

1
The Threats From Within | Medcurity Live 081
10:19
10:19
Na później
Na później
Listy
Polub
Polubione
10:19Insider threats are a big risk to healthcare security, whether caused by simple mistakes or intentional misuse of access. Patient data can be exposed in ways many organizations don’t even realize. Learn how HIPAA addresses these risks and the best strategies to keep sensitive information secure. Learn more about Medcurity here: https://medcurity.co…
…
continue reading

1
AI In Healthcare: Friend or Foe? | Medcurity Live 080
3:37
3:37
Na później
Na później
Listy
Polub
Polubione
3:37AI is here, and with it come big responsibilities. Learn the benefits and risks of this emerging technology and why it’s important for the healthcare industry to stay informed. Technology is powerful, but it’s how we use it that matters the most. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA…
…
continue reading

1
Bare Minimum Isn’t a Security Strategy - Ep 495
36:48
36:48
Na później
Na później
Listy
Polub
Polubione
36:48If you’ve ever wondered what it’s like to scream into the cybersecurity void, this episode might feel oddly relatable. We dive into why “bare minimum” isn’t a security strategy—it’s more like playing Russian roulette with your data. From regulatory head-scratchers to the harsh reality that a “bare minimum” security strategy is about as effective as…
…
continue reading

1
From $10K to $3M: The Price Tag of Neglecting Cybersecurity - Ep 494
40:23
40:23
Na później
Na później
Listy
Polub
Polubione
40:23If ignoring cybersecurity was a sport, some companies would be gold medalists—until they realize the prize is a hefty fine and years of regulatory headaches. It’s like leaving your car unlocked in a sketchy part of town with a neon sign that says, “Free Stuff Inside.” What could possibly go wrong? Well, in this episode, we break down six real-life …
…
continue reading

1
So, You're a Compliance Officer | Medcurity Live 079
4:45
4:45
Na później
Na później
Listy
Polub
Polubione
4:45What does it take to protect patient data, handle ever-changing regulations, and keep your organization audit-ready? In this episode, we break down the day-to-day reality of healthcare compliance. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA
…
continue reading

1
HHS Releases Strategic Plan for AI in Health Care | Medcurity Live 078
3:15
3:15
Na później
Na później
Listy
Polub
Polubione
3:15Artificial intelligence is reshaping healthcare, and the new HHS AI Strategic Plan hopes to pave the way for safer, smarter innovation. This framework focuses on fostering trust, promoting equity, and empowering healthcare teams to responsibly integrate AI into their work. Curious about how AI is set to transform patient care and public health? Tun…
…
continue reading

1
Cavity of Lies: Westend Dental’s HIPAA Coverup - Ep 493
41:37
41:37
Na później
Na później
Listy
Polub
Polubione
41:37Buckle up, folks, because this week’s episode is a wild ride through the Cavity of Lies—where HIPAA violations, ransomware attacks, and outright absurdity collide. What happens when a dental group tries to sweep a massive breach under the rug (or, you know, hide servers in bathrooms)? Let’s just say it doesn’t end well. From a 3-year-long cover-up …
…
continue reading

1
HIPAA Security Changes Are Here: We Saw This Coming - Ep 492
56:43
56:43
Na później
Na później
Listy
Polub
Polubione
56:43Hold onto your compliance hats—big changes are brewing for HIPAA’s Security Rule! The Notice of Proposed Rulemaking (NPRM) is officially out for public comment, and it’s clear HHA and OCR are on a mission to modernize and tighten the safeguards for electronic protected health information (ePHI). From clarifying risk analysis expectations to making …
…
continue reading

1
New Proposed Updates to the HIPAA Security Rule | Medcurity Live 077
3:59
3:59
Na później
Na później
Listy
Polub
Polubione
3:59Proposed HIPAA updates could redefine how healthcare handles cybersecurity. From mandatory encryption to multi-factor authentication, these changes aim to tackle modern threats head-on. In this episode, we’re breaking down what’s changing and what it means for compliance in 2025. Learn more about Medcurity here: https://medcurity.com #Healthcare #C…
…
continue reading
Ready to kick off 2025 with a bang? We’re diving into the must-dos for your Q1 2025 compliance and cybersecurity checklist, sprinkling in some risk management wisdom, and why Windows 10 is about as fashionable as shoulder pads in the 2020s. Plus, we sprinkle in a hearty dose of snark to keep you entertained while you get your compliance game strong…
…
continue reading

1
Supply Chain Attacks: The Risks Keep Growing - Ep 490
50:45
50:45
Na później
Na później
Listy
Polub
Polubione
50:45Ah, supply chain attacks—the gift that keeps on giving... headaches, fines, and catastrophic data breaches. In this episode, we unwrap three cautionary tales of organizations caught in the tangled web of digital supply chain chaos. From unpatched vulnerabilities and sneaky software backdoors to hackers casually buying network access like it’s an eB…
…
continue reading

1
Stay Compliant: Security Never Takes a Holiday | Medcurity Live 076
4:31
4:31
Na później
Na później
Listy
Polub
Polubione
4:31The new year is here, but cybersecurity threats and compliance challenges never take a holiday. This week, we’re talking about the risks of leaving your systems unprotected during downtime and the steps you can take to ensure everything is up to date and secure. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Comp…
…
continue reading

1
Phishing Fails, SRA Woes and the OCR Hammer - Ep 489
51:16
51:16
Na później
Na później
Listy
Polub
Polubione
51:16It’s the final countdown, folks—the last episode of the year! And OCR decided to end 2024 with a bang, handing out settlements like candy at a Christmas parade. But here’s the twist: the candy comes with a price tag, and it’s not cheap. This episode hones in on OCR’s new enforcement initiative targeting incomplete and outdated risk analyses. So, be…
…
continue reading

1
New HIPAA Rule Changes Patient Privacy Protections | Medcurity Live 075
4:18
4:18
Na później
Na później
Listy
Polub
Polubione
4:18There’s a new HIPAA Rule that went into effect on Monday, and it’s something every healthcare professional needs to know. In this episode, we’re talking about new restrictions on sharing patient data, the introduction of an attestation requirement, and what these changes mean for healthcare organizations. Learn more about Medcurity here: https://me…
…
continue reading
Welcome to the 2024 Blooper Show, where we prove once again that even after nine years, perfection is overrated and laughter is mandatory! Big shoutout to Bojan, our long suffering audio engineer extraordinaire, who turns our chaos into coherence. And of course, we can’t forget you—our amazing listeners—who tune in each week, send us your thoughts …
…
continue reading

1
Finding HIPAA Compliance in Unexpected Places | Medcurity Live 074
3:59
3:59
Na później
Na później
Listy
Polub
Polubione
3:59HIPAA compliance isn’t always where you expect it. Online forms, patient reviews, and digital apps can all create potential risks for HIPAA incidents. In this episode, we’re uncovering hidden compliance pitfalls and giving you practical tips to safeguard patient data in these overlooked areas. Learn more about Medcurity here: https://medcurity.com …
…
continue reading

1
Incident Panic to Plan for SMB Execs - Ep 488
50:09
50:09
Na później
Na później
Listy
Polub
Polubione
50:09Cybersecurity incidents can feel like a punch in the gut, but with the right plan, you can roll with the hits instead of flailing in panic. In this episode, we’re diving into executive strategies for tackling the unexpected, from building response teams to keeping business operations afloat when chaos strikes. Along the way, we also cover a recent …
…
continue reading

1
Access Delayed, Ransom Paid, Cyber Aid Conveyed - Ep 487
54:46
54:46
Na później
Na później
Listy
Polub
Polubione
54:46Is your healthcare organization ready for a triple threat, or are you playing a risky game of cybersecurity roulette with delayed access, ransomware demands, and a missing incident response plan? Today, we explore three tales in healthcare that are equal parts cautionary and compelling. We kick things off with the Healthcare and Public Health Secto…
…
continue reading

1
Building a Culture of Compliance Through Employee Training | Medcurity Live 073
5:30
5:30
Na później
Na później
Listy
Polub
Polubione
5:30Your employees are your first line of defense against cybersecurity threats and HIPAA violations. In this episode, we’re talking about practical ways to train your staff, create a compliance-first mindset, and keep patient data secure. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA…
…
continue reading
Feeling thankful this season? Us too—especially when it comes to dodging data disasters! In this episode, Donna and David dive headfirst into some eyebrow-raising cybersecurity tales, from job application breaches exposing sensitive information to the ever-creepy risks of unsecured IoT devices (yes, even your vacuum might be plotting against you). …
…
continue reading

1
The Government Cracks Down on SRAs | Medcurity Live 072
6:24
6:24
Na później
Na później
Listy
Polub
Polubione
6:24Healthcare organizations are facing increased scrutiny as the government ramps up enforcement of Security Risk Analyses (SRAs). Many are still using inadequate methods, leaving gaps in compliance and exposing themselves to penalties. Completing a detailed, comprehensive SRA is critical—watch the video to learn how to protect your organization and s…
…
continue reading

1
First SRA Violation Settlement - Ep 485
45:20
45:20
Na później
Na później
Listy
Polub
Polubione
45:20Doing a half-baked risk analysis is like locking your front door but leaving all the windows wide open. What’s the point? Today, we dive into the first-ever Security Risk Assessment (SRA) violation settlement—a juicy topic for compliance nerds and healthcare pros alike. We’re talking ransomware, compliance checklists (the kind you actually need), a…
…
continue reading

1
Pressure Mounts on The Healthcare Industry to Strengthen Security | Medcurity Live 071
5:30
5:30
Na później
Na później
Listy
Polub
Polubione
5:30Healthcare organizations face growing pressure to strengthen security measures, as highlighted in the recent HHS and NIST conference. What does this mean for your organization, and what steps should you take now? Get the latest insights and practical tips in the newest Medcurity Podcast. Learn more about Medcurity here: https://medcurity.com #Healt…
…
continue reading
Buckle up for Part 2 of our breakdown on the HHS OCR NIST healthcare security conference - because, yes, 16 hours of deep dives into AI, HIPAA compliance, and cybersecurity priorities can’t be tackled in just one episode! From wild projections about AI’s future in healthcare to OCR’s “tough love” on compliance standards, this episode peels back the…
…
continue reading

1
Why Now’s the Time to Get Your Security Risk Analysis Done | Medcurity Live 070
6:03
6:03
Na później
Na później
Listy
Polub
Polubione
6:03With the end of the year approaching, now’s the time to take a close look at any potential vulnerabilities within your organization. An annual Security Risk Analysis demonstrates your commitment to data and system protection, while also reassuring customers and meeting compliance standards. Tune in to the latest episode of The Medcurity Podcast to …
…
continue reading
Buckle up, folks! Today, Donna and David are here with Part 1 of their deep dive into the recent HHS OCR NIST healthcare security virtual conference, and they're spilling all the cyber-tea. With experts from HHS, OCR, NIST, FTC, and FDA presenting, this conference covered a ton. From AI-powered hackers and QR code scams to unpatched medical devices…
…
continue reading

1
Securing Vendor Relationships in Healthcare Under HIPAA Compliance | Medcurity Live 069
5:05
5:05
Na później
Na później
Listy
Polub
Polubione
5:05Securing your vendor relationships is necessary for protecting patient data under HIPAA. Third-party services can introduce vulnerabilities into your system. In this episode, we’ll show you how to close those gaps. Ready to safeguard your network and secure patient trust? Hit play and let’s get started. Learn more about Medcurity here: https://medc…
…
continue reading
Ever heard someone say you need a pen test but then start wondering if they meant a pen from a spy movie? There typically is a lot of confusion between penetration testing and vulnerability assessments—a common mix-up with big consequences for your cybersecurity game. We will walk through different types of pen tests, explain how they help you spot…
…
continue reading

1
Growing Cybersecurity Threats in Healthcare: What to Prepare for in 2025 | Medcurity Live 068
4:36
4:36
Na później
Na później
Listy
Polub
Polubione
4:36As we wrap up Cybersecurity Awareness Month, we are looking to the future. What lies beyond 2024 and how can you stay ahead? Tune in to learn more! Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA
…
continue reading

1
Phishing, Quishing, Vishing, Smishing and More | Medcurity Live 067
5:08
5:08
Na później
Na później
Listy
Polub
Polubione
5:08For Cybersecurity Awareness Month, we’re focusing on tactics commonly used by hackers today. Train your staff on phishing, quishing, vishing, and more to stay safe in today’s digital world. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA
…
continue reading