Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo

Medcurity Hipaa Compliance Podcasts

show episodes
 
Healthcare is complicated. Joe Gellatly and the Medcurity team are here to help, guiding us through the biggest issues and updates in healthcare security and compliance. From HIPAA Risk Assessments to the dark web, learn what factors are affecting the security of healthcare information and how to protect your data. Tune in for news, advice, and more. HIPAA laws continue to evolve. Go to hhs.gov for the latest information.
  continue reading
 
Loading …
show series
 
Enforcement is active, policy is tightening, and threats continue to evolve. This episode looks ahead to what 2026 will bring for healthcare compliance—how recent OCR settlements, proposed HIPAA Security Rule updates, and CMS’s 2026 payment rule all point to one clear expectation. Hear what strong compliance looks like going forward, from mapping e…
  continue reading
 
Bruce Gray joins the Medcurity Podcast to share insights from more than 20 years leading the Northwest Regional Primary Care Association (NWRPCA). He’s joined by Joe Gellatly, CEO of Medcurity, for a conversation on the unique challenges and strengths of rural healthcare and community health centers, the future of care delivery, and how a team-base…
  continue reading
 
Madelaine Yue joins the Medcurity Podcast for a great discussion on AI and human collaboration, healthcare transformation, and strategic data optimization. As a Transformation Architect, Madelaine partners with healthcare executives to navigate the complex healthcare landscape, turning their bold visions into life-saving impact. Through blending da…
  continue reading
 
A ransomware incident. A settlement. And a clear message from OCR: when the basics are missing, enforcement follows. This episode zeroes in on the expectation that applies to everyone. Providers, health plans, and vendors alike are expected to keep a current Security Risk Analysis and act on what it finds. Hear what “current” looks like in real ope…
  continue reading
 
The final months of the year move quickly, and compliance tasks often get left to the last minute. In this episode, we walk through five steps that can keep your organization ahead. Each one builds a stronger foundation for compliance and reduces the chance of scrambling when the new year begins. Learn more about Medcurity here: https://medcurity.c…
  continue reading
 
CMS (Centers for Medicare & Medicaid Services) has released the Fiscal Year 2026 Final Rule for hospital and long-term care payments, and it brings important updates for quality reporting, interoperability, and compliance. Learn what’s changing, from the end of the low wage index hospital policy to adjustments in reporting programs, and new expecta…
  continue reading
 
In a recent case, a ransomware attack revealed long-standing gaps that led to a $250,000 settlement. OCR’s recent action shows how overlooked requirements, like a Security Risk Analysis and timely breach notifications, turn an attack into enforcement. In this episode, we walk through the case, what regulators found, and the practical steps every he…
  continue reading
 
In this episode, Joe Gellatly and Daniel Schwartz discuss today’s most pressing security challenges—including zero trust, ransomware evolution, data loss prevention, and the risks tied to AI-powered “fast fashion” software. They share what teams can do now to stay secure without waiting for regulations to catch up. Connect with Daniel Schwartz on L…
  continue reading
 
In this episode, Jennifer Oelenberger, President of EHR Concepts, joins us to share the MIPS 2025 framework in plain language—along with strategies to improve category scores, avoid common pitfalls, and make MIPS part of your everyday workflow. Learn more about Medcurity: https://medcurity.com Visit EHR Concepts: https://ehrconcepts.com #Healthcare…
  continue reading
 
In this episode, we talk about Network Vulnerability Assessments (NVAs)—how they pinpoint weaknesses like open ports and unsafe accounts before attackers can exploit them, and why they’re key to shutting down easy entry points. We also walk through Medcurity’s new NVA Dashboard, now live in the platform. Instead of static PDFs, you get a real-time,…
  continue reading
 
Smart fridges, fitness trackers, fish-tank thermometers—everything is online, and every connection is a doorway. As threat actors race ahead, cybersecurity and privacy for everyday technology lags behind. Bidemi “Bid” Ologunde, a highly respected cybercrime and threat-intelligence specialist, shows how privacy erodes when data-hungry apps and IoT g…
  continue reading
 
The domain looks right. The logo checks out. Even the login page feels familiar. But it isn’t what it seems. Attackers are using subtle domain tricks—like typos, lookalike characters, and spoofed subdomains—to mimic trusted names in healthcare. These aren’t high-tech hacks. They rely on speed, habit, and trust. Once you know what to watch for, they…
  continue reading
 
Documentation isn’t enough anymore. “Reasonable and appropriate” has always been HIPAA’s standard—but that standard is shifting. In this episode, we break down how OCR is interpreting those words today, where organizations are getting into trouble, and what it actually takes to meet expectations now. Learn more about Medcurity here: https://medcuri…
  continue reading
 
AI can’t fix a broken process—it only makes it more visible. In this episode, Ghazenfer Mansoor, CEO of Technology Rivers, shares how healthcare teams can set the right foundation before bringing AI into the mix. From workflow design to HIPAA compliance, he breaks down what it really takes to use AI well—and why security has to come first. Connect …
  continue reading
 
AI is transforming healthcare—not just by improving efficiency, but by enhancing care itself. From earlier cancer detection to smarter workflows and expanded patient access, it’s changing how healthcare works for everyone. In this episode, we talk with Dr. Sean Raj, Chief Innovation Officer at SimonMed Imaging. A nationally recognized leader in dig…
  continue reading
 
Shared workstations—especially in clinical areas—can be a blind spot in privacy and security. Whether it’s leaving PHI on the screen, shared login credentials, or lack of session timeouts, these seemingly small things can cause big issues. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA #Security…
  continue reading
 
What’s really driving breaches in healthcare? This episode breaks down key stats from the 2025 Verizon Data Breach Investigations Report—including ransomware trends, human error patterns, and how attackers are moving faster than ever. We’ll highlight what it means for your organization and where to focus your efforts this year. Learn more about Med…
  continue reading
 
More platforms means more places for PHI to slip through. When tools aren’t vetted, tracked, or covered by the right agreements, even routine workflows can create real risk. And without clear access controls, it’s hard to know who still has the keys. If you’re not sure where your gaps are, this is worth a closer look. Learn more about Medcurity her…
  continue reading
 
Readiness in healthcare compliance means more than checking a box once a year. This episode looks at how healthcare organizations can move beyond annual tasks and create routines that hold up under scrutiny. It’s a practical look at what regulators are expecting and how to be ready before they come knocking. Learn more about Medcurity here: https:/…
  continue reading
 
Still relying on antivirus alone? Think HIPAA audits are too rare to matter? These six myths are leaving healthcare organizations exposed. We’re unpacking what’s false, what’s risky, and what you should be doing instead. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA #SecurityRiskAnalysis #Myths…
  continue reading
 
OCR has been busy—and Security Risk Analyses are front and center. In this episode, we walk through three recent enforcement cases where missing or outdated SRAs led to fines and multi-year corrective action plans. From phishing incidents to system misconfigurations, you’ll see exactly what regulators flagged and what steps each organization is now…
  continue reading
 
In five minutes, we break down what HIPAA really expects from your organization in 2025. From your Security Risk Analysis to employee training, access controls, audit logs, and business associate agreements—this is the real-world checklist regulators are looking for. We’ll explain each core requirement, how enforcement is evolving, and offer practi…
  continue reading
 
In this episode, we’re talking about one habit that could have the biggest impact on your organization’s security posture—and it’s not a new tool or system. With phishing attacks getting more sophisticated and OCR enforcement on the rise, this one behavior can interrupt the pattern attackers rely on. We’ll unpack why it matters, how to build it int…
  continue reading
 
What happens when you bring together proactive AI and healthcare communication? You get smarter outreach, stronger patient engagement, and fewer compliance gaps. In this special episode, we’re joined by Dan Fox, Managing Director of Healthcare at Drips. With over 12 years in AI-driven tech, Dan shares how conversational AI is transforming how healt…
  continue reading
 
The new OCR Acting Director Anthony Archeval said that Security Risk Analyses are not only required but are the first step to limit breaches—with penalties already being issued for non-compliance. In this episode, we break down why SRAs matter more than ever, what can go wrong when they’re skipped, and how to make them manageable. With recent OCR s…
  continue reading
 
Zero trust changes how healthcare protects patient data by verifying every access, every time. We’ll explain what it is, why it’s essential for your organization’s security, and how to put it in place without extra stress. It’s a straightforward way to stay secure and keep up with HIPAA requirements. Tune in to hear how Medcurity can guide you thro…
  continue reading
 
The HIPAA Right of Access lets patients get their medical records with ease—and we’re here to help you make it happen smoothly! This episode covers the rules, from timelines to exceptions, using a recent Oregon case to show what to watch for, and shares clear steps to stay compliant. Join us to keep your processes on track and your patients happy! …
  continue reading
 
Facing an audit can feel overwhelming, but knowing the 11 key things the government might ask for can keep your healthcare organization prepared. This episode breaks down what those requests—covering security risks and compliance—mean and how to have the right documentation ready. Tune in to get the insights you need to stay ahead of HIPAA requirem…
  continue reading
 
Credential stuffing could be the silent killer of your healthcare security—imagine hackers slipping in with just one reused password, exposing patient data and triggering massive fines. We break down how these sneaky attacks exploit password habits on the dark web, why they’re a goldmine for cybercriminals targeting medical records, and the simple …
  continue reading
 
Outdated systems are a major security risk—but modern solutions can bridge the gap. In this episode, we explore how legacy tech leaves healthcare organizations vulnerable and what steps you can take to strengthen security without a complete overhaul. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPA…
  continue reading
 
How does HIPAA work when every second counts? Learn how emergency provisions let healthcare providers quickly share the essential patient info they need—using treatment exceptions and the “minimum necessary” rule—while still keeping privacy in check. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPA…
  continue reading
 
Insider threats are a big risk to healthcare security, whether caused by simple mistakes or intentional misuse of access. Patient data can be exposed in ways many organizations don’t even realize. Learn how HIPAA addresses these risks and the best strategies to keep sensitive information secure. Learn more about Medcurity here: https://medcurity.co…
  continue reading
 
AI is here, and with it come big responsibilities. Learn the benefits and risks of this emerging technology and why it’s important for the healthcare industry to stay informed. Technology is powerful, but it’s how we use it that matters the most. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA…
  continue reading
 
Artificial intelligence is reshaping healthcare, and the new HHS AI Strategic Plan hopes to pave the way for safer, smarter innovation. This framework focuses on fostering trust, promoting equity, and empowering healthcare teams to responsibly integrate AI into their work. Curious about how AI is set to transform patient care and public health? Tun…
  continue reading
 
Proposed HIPAA updates could redefine how healthcare handles cybersecurity. From mandatory encryption to multi-factor authentication, these changes aim to tackle modern threats head-on. In this episode, we’re breaking down what’s changing and what it means for compliance in 2025. Learn more about Medcurity here: https://medcurity.com #Healthcare #C…
  continue reading
 
The new year is here, but cybersecurity threats and compliance challenges never take a holiday. This week, we’re talking about the risks of leaving your systems unprotected during downtime and the steps you can take to ensure everything is up to date and secure. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Comp…
  continue reading
 
There’s a new HIPAA Rule that went into effect on Monday, and it’s something every healthcare professional needs to know. In this episode, we’re talking about new restrictions on sharing patient data, the introduction of an attestation requirement, and what these changes mean for healthcare organizations. Learn more about Medcurity here: https://me…
  continue reading
 
HIPAA compliance isn’t always where you expect it. Online forms, patient reviews, and digital apps can all create potential risks for HIPAA incidents. In this episode, we’re uncovering hidden compliance pitfalls and giving you practical tips to safeguard patient data in these overlooked areas. Learn more about Medcurity here: https://medcurity.com …
  continue reading
 
Your employees are your first line of defense against cybersecurity threats and HIPAA violations. In this episode, we’re talking about practical ways to train your staff, create a compliance-first mindset, and keep patient data secure. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA…
  continue reading
 
Healthcare organizations are facing increased scrutiny as the government ramps up enforcement of Security Risk Analyses (SRAs). Many are still using inadequate methods, leaving gaps in compliance and exposing themselves to penalties. Completing a detailed, comprehensive SRA is critical—watch the video to learn how to protect your organization and s…
  continue reading
 
Healthcare organizations face growing pressure to strengthen security measures, as highlighted in the recent HHS and NIST conference. What does this mean for your organization, and what steps should you take now? Get the latest insights and practical tips in the newest Medcurity Podcast. Learn more about Medcurity here: https://medcurity.com #Healt…
  continue reading
 
With the end of the year approaching, now’s the time to take a close look at any potential vulnerabilities within your organization. An annual Security Risk Analysis demonstrates your commitment to data and system protection, while also reassuring customers and meeting compliance standards. Tune in to the latest episode of The Medcurity Podcast to …
  continue reading
 
Securing your vendor relationships is necessary for protecting patient data under HIPAA. Third-party services can introduce vulnerabilities into your system. In this episode, we’ll show you how to close those gaps. Ready to safeguard your network and secure patient trust? Hit play and let’s get started. Learn more about Medcurity here: https://medc…
  continue reading
 
Your organization’s biggest risk may come from within. In this episode, we discuss how insider breaches—whether malicious or accidental—can be just as devastating as external attacks, because insiders already have access to critical systems. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA…
  continue reading
 
What is Zero Trust in cybersecurity? For this Cybersecurity Awareness Month, we’ll be going over several key elements of a good cybersecurity strategy, and today’s topic covers the Zero Trust method. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA
  continue reading
 
In this episode of The Medcurity Podcast, we’re talking about building an Incident Response Plan, why it matters, and how often you should review it to stay ahead of threats. Plus, we share practical tips to make sure your plan is ready when you need it most. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Complia…
  continue reading
 
How should Protected Health Information (PHI) be disposed of? In order to avoid stolen data and/or HIPAA violations, learn how to properly dispose of PHI, follow regulations, and keep your staff updated on effective disposal methods. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA…
  continue reading
 
Loading …
Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play