Skip to main content

HIPAA, regulatory requirements, and what they actually mean for health care IT operations. Coverage of the HIPAA Security Rule, OCR enforcement, risk analysis, policy requirements, and regulatory updates - with specific CFR citations so you know exactly what the rules say.

2.7 Million Records Exposed: What the Navia Benefit Solutions Breach Means for Health Care IT

Most people have never heard of Navia Benefit Solutions. That is kind of the point.

ABC HIPAA Framework Delivers Practical Disaster Recovery That Satisfies 45 CFR 164.308(a)(7) Without the Shelf-Ware

Health care IT teams already know the requirement.

The Industry Fought Back and the Rule Is Still Moving Forward - What the May 2026 Finalization Target Means for Your Organization Right Now

Picture this. You are the sole IT person at a 20-bed Critical Access Hospital.

OCR Enforcement 2025-2026: Why Incomplete Security Risk Analyses Are Still the #1 Settlement Driver

Picture this.

Budgeting for HIPAA 2026 Compliance in Critical Access Hospitals: Realistic Line Items for a 25-Bed Facility

If you are running IT at a 25-bed Critical Access Hospital (CAH), the budget conversation about HIPAA compliance rare

ONC's HTI-5 Proposed Rule: What the Proposed Slash to Certification Criteria Means for Your EHR Environment

In late December 2025, the Assistant Secretary for Technology Policy/Office of the National Coordinator for Health In

The AI Meeting Assistant Trap: Why Your Organization's Newest Productivity Tool Might Be a HIPAA Breach Waiting to Happen

Health care executives are falling over themselves to sign up for AI meeting assistants.

Subscribe to Compliance