Recent Articles

  • $225,000 OCR Settlement Shows Why HIPAA Risk Analysis Can’t Be Ignored

    Published On: July 8th, 2025

    The Department of Health and Human Services Office for Civil Rights (OCR) just sent another clear message to healthcare organizations: failing to conduct proper HIPAA risk analysis [...]

  • Healthcare Data Breaches in H1 2025: A Crisis Accelerating Beyond Control

    Published On: July 3rd, 2025

    The first half of 2025 has delivered a stark wake-up call to the healthcare industry. What began as a concerning trend in Q1 has exploded into a [...]

  • Florida AHCA Medical License Background Check and Compliance Verification for Healthcare Professionals

    Published On: July 2nd, 2025

    In today’s rapidly evolving healthcare environment, compliance is no longer just a matter of checking boxes. It is a proactive and strategic process that protects patient privacy, [...]

  • A Practical Guide to the ISO 27001 Risk Management Framework

    Published On: June 20th, 2025

    More than ever before, healthcare organizations are faced with increasing threats to cybersecurity and information security. From ransomware attacks to data breaches that expose sensitive information, the [...]

  • May 2025 Healthcare Breach Report: 1.8 Million Records Exposed as OCR Steps Up Enforcement

    Published On: June 16th, 2025

    The U.S. healthcare sector suffered yet another intense month of data breaches in May 2025, with 59 incidents reported to the Department of Health & Human Services [...]

  • Turning Risk Management Into a Functional Part of Healthcare Compliance

    Published On: June 11th, 2025

    Healthcare compliance teams understand the importance of regulatory risk management…the real challenge is making it actionable. It can't just show up in binders or annual assessment, it needs [...]

Blog Categories

  • 42 CFR Part 2

    42 CFR Part 2 dictates rules for the confidentiality of substance abuse records. Find out when providers are permitted to share records and when they are not.

  • Healthcare Compliance

    Healthcare compliance is complex, especially when you have to meet multiple compliance standards. Learn how to navigate HIPAA, OSHA, and SOC 2 requirements.

  • Healthcare Data Breach Report

    Each month, we review what caused healthcare data breaches and how they could have been prevented. Learn how to protect your business from breaches and fines.

  • HIPAA Compliance

    Whether you’re a healthcare provider, health plan, or healthcare vendor, you must meet HIPAA standards. Learn what’s required for HIPAA compliance and how to implement a successful program.

  • HIPAA News

    Keep up to date on HIPAA news by checking in with us. We will provide you with information on changes to HIPAA law, healthcare breaches, HIPAA violations, and OCR fines.

  • HIPAA Violation Fines

    Healthcare organizations that fail to meet HIPAA Privacy, Security, or Breach Notification Rules can face HIPAA violation fines. Find out who has been fined and how they could have prevented penalties.

  • MACRA MIPS

    To be eligible for reimbursement under the Merit-based Incentive Payment System (MIPS), you must meet Medicare Access and CHIP Reauthorization Act (MACRA) standards.

  • OCR Enforcement

    The Office for Civil Rights (OCR) is the enforcing body of HIPAA. The OCR conducts investigations into potential HIPAA violations, issuing judgments that can result in settlements.

  • OIG Compliance

    The Office of Inspector General (OIG) released guidance, referred to as the seven elements of compliance. Find out how to implement an effective compliance program.

  • OSHA Healthcare Compliance

    OSHA healthcare compliance ensures a safe and healthy environment for patients and staff. Find out how to meet various OSHA standards specific to healthcare.

  • Right of Access

    The HIPAA Right of Access standard requires healthcare providers to comply with patient record requests. This standard is the most cited in HIPAA settlements. Learn the rules.

  • SOC 2 Compliance

    The American Institute of Certified Public Accountants (AICPA) created a cybersecurity framework called Service Organization Control Type 2 (SOC 2). Learn how about SOC 2 compliance.