Recent Articles

  • Is AI HIPAA Compliant? What Healthcare Organizations Must Know

    Published On: August 4th, 2026

    A physician turns to ChatGPT to summarize a patient note. An office manager opens Claude to draft patient communications. A biller wonders if Gemini could help draft an [...]

  • DOJ’s 2026 Unified Enforcement Policy: What Healthcare Compliance Teams Need to Know

    Published On: August 3rd, 2026

    The DOJ's 2026 Unified Corporate Enforcement Policy (CEP) replaces a patchwork of district-by-district rules with one national standard for how healthcare organizations should self-disclose fraud, cooperate with investigators, [...]

  • How to Improve Compliance in Healthcare

    Published On: July 29th, 2026

    Healthcare compliance can feel like a moving target. Regulations change, new risks emerge, and even well-run organizations can struggle to keep policies, training, and documentation current. The [...]

  • What Is the Best Healthcare Compliance Platform? Top 10 Solutions Compared (2026)

    Published On: July 21st, 2026

      Table of Contents Summary For most healthcare organizations, Compliancy Group stands out as the top choice. It holds the #1 rating on G2 among 157 [...]

  • Healthcare Data Breach Statistics in 2026

    Published On: July 16th, 2026

    In 2025, U.S. healthcare organizations reported 772 large breaches to the Office for Civil Rights (OCR), a new annual record. All told, roughly 138.5 million records were exposed [...]

  • Using a Healthcare Compliance Work Plan Template

    Published On: July 9th, 2026

    A healthcare compliance plan is not just a document to file and forget. It is the foundation of a defensible, ongoing program that guides how your organization [...]

Blog Categories

  • 42 CFR Part 2

    42 CFR Part 2 dictates rules for the confidentiality of substance abuse records. Find out when providers are permitted to share records and when they are not.

  • Healthcare Compliance

    Healthcare compliance is complex, especially when you have to meet multiple compliance standards. Learn how to navigate HIPAA, OSHA, and SOC 2 requirements.

  • Healthcare Data Breach Report

    Each month, we review what caused healthcare data breaches and how they could have been prevented. Learn how to protect your business from breaches and fines.

  • HIPAA Compliance

    Whether you’re a healthcare provider, health plan, or healthcare vendor, you must meet HIPAA standards. Learn what’s required for HIPAA compliance and how to implement a successful program.

  • HIPAA News

    Keep up to date on HIPAA news by checking in with us. We will provide you with information on changes to HIPAA law, healthcare breaches, HIPAA violations, and OCR fines.

  • HIPAA Violation Fines

    Healthcare organizations that fail to meet HIPAA Privacy, Security, or Breach Notification Rules can face HIPAA violation fines. Find out who has been fined and how they could have prevented penalties.

  • MACRA MIPS

    To be eligible for reimbursement under the Merit-based Incentive Payment System (MIPS), you must meet Medicare Access and CHIP Reauthorization Act (MACRA) standards.

  • OCR Enforcement

    The Office for Civil Rights (OCR) is the enforcing body of HIPAA. The OCR conducts investigations into potential HIPAA violations, issuing judgments that can result in settlements.

  • OIG Compliance

    The Office of Inspector General (OIG) released guidance, referred to as the seven elements of compliance. Find out how to implement an effective compliance program.

  • OSHA Healthcare Compliance

    OSHA healthcare compliance ensures a safe and healthy environment for patients and staff. Find out how to meet various OSHA standards specific to healthcare.

  • Right of Access

    The HIPAA Right of Access standard requires healthcare providers to comply with patient record requests. This standard is the most cited in HIPAA settlements. Learn the rules.

  • SOC 2 Compliance

    The American Institute of Certified Public Accountants (AICPA) created a cybersecurity framework called Service Organization Control Type 2 (SOC 2). Learn how about SOC 2 compliance.