Skip to main content

HIPAA, regulatory requirements, and what they actually mean for health care IT operations. Coverage of the HIPAA Security Rule, OCR enforcement, risk analysis, policy requirements, and regulatory updates - with specific CFR citations so you know exactly what the rules say.

ONC's HTI-5 Proposed Rule: What the Proposed Slash to Certification Criteria Means for Your EHR Environment

In late December 2025, the Assistant Secretary for Technology Policy/Office of the National Coordinator for Health In

"I Don't Touch PHI" - The Rural Health Care Administrator's Blind Spot

The CEO sits across from the IT team and says it with confidence: "I don't have patient information on my device.

The AI Meeting Assistant Trap: Why Your Organization's Newest Productivity Tool Might Be a HIPAA Breach Waiting to Happen

Health care executives are falling over themselves to sign up for AI meeting assistants.

The Security Gaps Your Medication Dispensing Vendor Installed and Never Mentioned

Disclosure: Parts of this article were contributed by visuaFUSION Systems Solutions.

Active Directory Security Hardening: Move Beyond Default Settings Before Attackers Do

Most health care organizations deployed Active Directory years ago, configured the basics, and moved on.

Subscribe to Compliance