Free Webinar: HIPAA Compliant Email for Small Practices – What you Actually Need (Without an IT Team)

Small healthcare practices often assume their emails are HIPAA-compliant; however, security gaps are often found to exist that threaten patient privacy and put practices at risk of regulatory penalties. The security gaps in email are easy for small practices to miss, as they are focused on running their practices and often lack in-house IT staff with email security expertise.
Addressing these gaps is vital to ensure the privacy of patient information and compliance with the HIPAA Rules; however, implementing secure and HIPAA-compliant email systems can be technically challenging without an IT department, and secure email solutions can make accessing emails burdensome for patients.
In this free webinar on August 7, 2026, small healthcare practices will learn how to make their emails HIPAA-compliant without an IT team, while ensuring that patients can read securely transmitted emails without first logging into a secure portal.
The 1-hour webinar will cover what HIPAA demands for email for small practices, why free Gmail and Microsoft 365 email are not sufficient for HIPAA compliance, and what to look for in an email solution when you do not have dedicated IT staff to implement and maintain it. Attendees will learn how to easily close security gaps without complex tools that your staff won’t use or portals that your patients will simply ignore.
The webinar is intended for practice owners, office managers, and administrators at mental health, dental, chiropractic, and physical therapy practices, med spas, and other small specialty practices. No technical background is needed. Click the link below to register for the webinar. If you are unable to attend on the day, register to receive a recording of the webinar that you can watch when convenient.
LIVE WEBINAR DETAILS
HIPAA Compliant Email for Small Practices – What you Actually Need (Without an IT Team)
Friday, August 7, 2026: 1 p.m. ET | 12 p.m. CT | 11 a.m. MT | 10 a.m. PT
Click Here to Register for the Free Webinar
The webinar is eligible for one self-reported Continuing Professional Education (CPE) credit. After viewing the full webinar, you will receive a certificate of attendance that may be used as supporting documentation when submitting credits to applicable certifying bodies.
Speaker: Dawn Halpin, HIPAA Evangelist, Paubox

Dawn Halpin, a graduate of Marquette University and the University of Wisconsin-Milwaukee, is a HIPAA Evangelist at the email security firm Paubox. Paubox is a leader in HIPAA-compliant email security for the healthcare industry and is trusted by more than 8,000 organizations, including Cost Plus Drugs, Rippling, and Covenant Health.
The post Free Webinar: HIPAA Compliant Email for Small Practices – What you Actually Need (Without an IT Team) appeared first on The HIPAA Journal.
“Shut Out When It Matters Most”: FRM² Urges Missouri Legislature to Reform Crisis-Care Laws – 24-7 Press Release Newswire
Final action on HIPAA Security Rule modifications now projected for July 2027 – McDermott Will & Schulte
Is Microsoft Teams HIPAA-Compliant? – BBN Times
Final action on HIPAA Security Rule modifications now projected for July 2027 – JD Supra
All About Women’s Care Data Breach Affects Up to 12,000 Patients – The HIPAA Journal
All About Women’s Care Data Breach Affects Up to 12,000 Patients
All About Women’s Care in Colorado has notified 12,000 patients that their data has been compromised in a data breach, and Mid-South Pulmonary Sleep Specialists in Tennessee is assessing the impact of a November 2025 ransomware attack.
All About Women’s Care, Colorado
All About Women’s Care, an Englewood, CO-based obstetrics and gynecology practice, has identified unauthorized access to its IT environment. Suspicious activity was identified involving an employee VPN account. Third-party cybersecurity experts were engaged to investigate the activity and confirmed that an unauthorized actor obtained the credentials for the VPN account and used them to access its network environment. Files were copied in the attack, the review of which was completed on June 5, 2026.
The file review confirmed that the impacted data included names, dates of birth, Social Security numbers, driver’s license numbers, other ID numbers, clinical/treatment information, lab results, prescription information, provider information, medical documents, ultrasound images, copies of identification documents (such as passports), and health insurance information.
The practice is working with cybersecurity professionals to enhance security and prevent similar incidents in the future, and policies and procedures related to data privacy and security are being reviewed. The data breach was recently reported to the HHS’ Office for Civil Rights as affecting up to 12,000 patients.
Mid-South Pulmonary Sleep Specialists, Tennessee
Mid-South Pulmonary Sleep Specialists, a Memphis, Tennessee-based pulmonary and sleep medicine practice, has started notifying certain patients about a cybersecurity incident that exposed their personal and protected health information.
Suspicious activity was identified within its computer network on November 2, 2025. The network was secured, and assisted by third-party cybersecurity experts, the practice confirmed unauthorized network access and the exposure and potential theft of patient data. The data review was completed on May 18, 2026, and revealed that a wide range of data was exposed in the incident. The types varied from individual to individual, and may have included names in combination with one or more of the following: address, date of birth, date of service, driver’s license or state ID number, financial account information, health insurance information, medical diagnosis information, medical history, medical provider name, medical record number, medical treatment information, Medicare/Medicaid number, mental or physical condition, other patient identifier, patient account number, prescription information, and/or Social Security number.
Regulators have been notified, but the incident is not yet shown on the HHS’ Office for Civil Rights website, so it is unclear how many individuals have been affected. The website breach notice does not state the nature of the attack, or for how long the threat actors had access to its network.
This appears to have been a ransomware attack, as the Anubis ransomware claimed responsibility and added Mid-South Pulmonary Sleep Specialists to its data leak site in late November 2025, along with samples of data allegedly stolen in the attack. Anubis claims that the data stolen includes patient information.
The post All About Women’s Care Data Breach Affects Up to 12,000 Patients appeared first on The HIPAA Journal.
