HIPAA Compliance Pros Featured Articles

Free Webinar: A Practical Guide to a HIPAA Security Risk Assessment

Security Risk Assessment for HIPAA ComplianceA missing or inadequate HIPAA Security Risk Assessment can leave a major gap in your HIPAA compliance program. It is also one of the issues most frequently identified in OCR enforcement actions.

Yet many practices remain uncertain about what an SRA should cover, how often it should be updated, and what distinguishes a genuine risk analysis from a simple checklist.

Join Bradley King, Senior Compliance Consultant, for a practical 30-minute webinar that will explain the role of the SRA and help you identify your next steps. Whether you are completing an SRA for the first time or reviewing your existing documentation, you will leave with a clearer understanding of what your practice needs to do.

You will discover:

Get The FREE
HIPAA Compliance Checklist

Immediate Delivery of Checklist Link To Your Email Address

Please Enter Correct Email Address

Your Privacy Respected

HIPAA Journal Privacy Policy

  • What is-and is not-a HIPAA Security Risk Analysis
  • Where the SRA fits within your wider HIPAA compliance program
  • When your SRA should be reviewed and updated
  • Why SRA deficiencies are a recurring focus of OCR enforcement
  • The practical steps your organization can take to strengthen its approach

If you can’t attend the live event then register anyway, and we will send you the recording.


Date of Live Webinar: October 28, 2026

Time: 12-12:30 PM ET, 11-11:30 AM CT, 10-10:30 AM MT, 09-09:30 AM  PT

Duration: 00:30 Hour

Can’t join live? Register and we’ll send you the recording. 


 

This webinar is presented by Abyde in partnership with The HIPAA Journal.

Speaker: Bradley King, Senior Compliance Consultant

Bradley King has many years of experience in HIPAA and OSHA compliance consulting. He has spoken at national conferences and delivered continuing education webinars on HIPAA and OSHA compliance best practices, and has worked directly with thousands of practices, from solo, owner-operator practices to multi-location, multistate healthcare organizations, on building and maintaining compliance programs.

Abyde is a leader in the compliance software industry, streamlining HIPAA & OSHA requirements for thousands of practices across the United States.

 


Date of Live Webinar: October 28, 2026

Time: 12-12:30 PM ET, 11-11:30 AM CT, 10-10:30 AM MT, 09-09:30 AM  PT

Duration: 00:30 Hour

Can’t join live? Register and we’ll send you the recording. 

The post Free Webinar: A Practical Guide to a HIPAA Security Risk Assessment appeared first on The HIPAA Journal.

Free Webinar Today: Is AI Putting Your Practice at Risk?

HIPAA Rusk analysis security risk assessment toolAI tools are already in your practice. The question is whether you know about them and whether they are HIPAA-compliant. 

Most practices are using AI in some form already, whether it’s an EHR feature, a note-taking assistant, or a chatbot tool; however, they may not be aware of all locations where AI is used.

Join Ryan Boudreau, Senior VP of Operations at the healthcare compliance company Abyde, as he walks you through where AI may already be hiding in your practice, the HIPAA and privacy risks it creates, and a simple framework for using AI while remaining HIPAA-compliant. 


Live Webinar: Wednesday, Sept 30 

12:00-1:00 PM ET | 11:00 AM-12:00 PM CT | 10:00-11:00 AM MT | 9:00-10:00 AM PT

 A recording will be made available to anyone who registers but is unable to attend the live event.

Get The FREE
HIPAA Compliance Checklist

Immediate Delivery of Checklist Link To Your Email Address

Please Enter Correct Email Address

Your Privacy Respected

HIPAA Journal Privacy Policy


Attendees will discover:

  • Where AI is most likely already in use in your practice, including the places you didn’t realize
  • A simple, four-question framework for evaluating any AI tool before you use it
  • The fine print that matters in vendor agreements to help avoid risk
  • Real-world cautionary tales on improper AI use in healthcare

Speaker: 

Ryan BoudreauRyan Boudreau – Senior Vice President of Operations 

Ryan Boudreau is the Senior Vice President of Operations at Abyde, where he leads a team of HIPAA and OSHA compliance experts. A cybersecurity and risk management veteran with nearly 15 years of experience, his team that has successfully navigated hundreds of OCR investigations on behalf of their clients.

Abyde is a leader in the compliance software industry, streamlining HIPAA & OSHA requirements for thousands of practices across the United States.


Live Webinar

Wednesday, Sept 30  | 12:00–1:00 PM ET | 11:00 AM–12:00 PM CT | 10:00–11:00 AM MT | 9:00–10:00 AM PT

 A recording will be made available to anyone who registers but is unable to attend the live event.

The post Free Webinar Today: Is AI Putting Your Practice at Risk? appeared first on The HIPAA Journal.

Free Webinar Tomorrow: Inside 250 HIPAA Investigations – What You Need to Know

Free Webinar Inside a HIPAA InvestigationLearn exactly what happens during a HIPAA investigation. Understand where organizations fail so you can avoid government fines and drawn-out investigations.

Based on real experience from over 250 actual OCR investigations.

When it comes to HIPAA investigations, many organizations lean on the hope that they will never be implicated. But, with the rise of ransomware breaches and patient complaints, your organization is much more likely to end up in the crosshairs of the Office for Civil Rights (OCR) than you might expect. 

While you can’t always prevent breaches from occurring, you can control your preparedness for everything that follows when it comes to your HIPAA compliance posture. 

Get The FREE
HIPAA Compliance Checklist

Immediate Delivery of Checklist Link To Your Email Address

Please Enter Correct Email Address

Your Privacy Respected

HIPAA Journal Privacy Policy

Join Jake Dewberry, Chief Legal Officer, and Ryan Boudreau, Senior Vice President of Operations from Abyde, as they walk through the details of what an investigation actually looks like and where organizations fail based on their experience in over 250 OCR investigations. They will be sharing real (redacted) examples from past investigations, detailing what the OCR asks for, how to respond safely, and how others failed so you can avoid government fines and drawn-out investigations. 


Live Webinar: Wednesday, August 19

12-1 pm ET | 11-12 am CT | 10-11 am MT | 9-10 am PT

 

 A recording will be made available to anyone who registers but is unable to attend the live event.


Attendees will discover:

  • What triggers an investigation
  • What to do immediately after receiving an investigation letter
  • A breakdown of what the OCR is really asking for, including the most commonly missed requirement
  • Best practices for building your response
  • The possible results of an investigation
  • Real examples of investigation letters

Speakers: 

Jake Dewberry Jake Dewberry – Chief Legal Officer

Jake Dewberry serves as the Chief Legal Officer at Abyde. With over 14 years of experience in the healthcare industry, Jake has worked closely with hospitals and small to mid-sized practices across the country, helping them navigate the evolving world of healthcare technology and regulatory requirements. Jake is also a licensed attorney based in Florida. At Abyde, he wears multiple legal hats — from advising clients during breach responses and audits, to managing the company’s day-to-day legal operations, and staying on top of federal and state regulatory changes impacting HIPAA and OSHA compliance.

 

Ryan BoudreauRyan Boudreau – Senior Vice President of Operations 

Ryan Boudreau is the Senior Vice President of Operations at Abyde, where he leads a team of HIPAA and OSHA compliance experts. A cybersecurity and risk management veteran with nearly 15 years of experience, his team has successfully navigated hundreds of OCR investigations on behalf of their clients.

Abyde is a leader in the compliance software industry, streamlining HIPAA & OSHA requirements for thousands of practices across the United States.


Live Webinar: Wednesday, August 19

12-1 pm ET | 11-12 am CT | 10-11 am MT | 9-10 am PT

 A recording will be made available to anyone who registers but is unable to attend the live event.

The post Free Webinar Tomorrow: Inside 250 HIPAA Investigations – What You Need to Know appeared first on The HIPAA Journal.

Free Webinar TODAY: HIPAA Email Security 101: PHI, Encryption, and What’s Required

According to the Paubox 2026 Healthcare Email Security Report, in 2025, 170 email-related data breaches were reported to the HHS’ Office for Civil Rights (OCR). While healthcare organizations are getting better at preventing email-related data breaches, an analysis of email security configurations found that in 2025, 41% of healthcare organizations fell into the high-risk category, an increase from the previous year.

On top of those large healthcare data breaches are the thousands of smaller breaches that affect fewer than 500 individuals, a large percentage of which are due to poor email security configurations and errors by healthcare employees. Each email incident erodes trust, can be costly to resolve, and potentially puts the organization at risk of a HIPAA penalty, yet email compliance failures are easily avoided.

On May 21, 2026, the leading healthcare email security company, Paubox, is hosting a webinar to explain HIPAA email security 101. The webinar consists of a practical session covering the fundamentals of HIPAA-compliant email, what constitutes PHI, and how to identify the indicators of PHI, as well as the key email security requirements that HIPAA-regulated entities must have in place to ensure that sensitive information is protected and patient privacy is assured. Attendees will also learn about the common compliance errors made by organizations and healthcare employees when communicating via email, and how to avoid them.

Webinar attendees will learn how encryption works and why it is vital for HIPAA compliance

Reserve your spot today to learn how HIPAA applies to email and the requirements for HIPAA-compliant email communications. 

Why Attend?

  • Attendees will learn the fundamentals of HIPAA-compliant email communications, what constitutes PHI, and the common compliance mistakes made by healthcare organizations, and how to avoid them. This webinar is eligible for 1 self-reported CPE. Attendees will receive a certificate of attendance that may be used as supporting documentation when submitting credits to applicable certifying bodies.

WEBINAR DETAILS

HIPAA Email Security 101: PHI, Encryption, and What’s Required

Wednesday, May 20, 2026

10 a.m. PT | 11 a.m. MT | 12 p.m. CT | 1 p.m. ET | 6 a.m. BST

Register for the Webinar


 

Speaker: Dawn Halpin, HIPAA Evangelist, Paubox

Dawn Halpin, Paubox

Dawn Halpin, a graduate of Marquette University and the University of Wisconsin-Milwaukee, is a HIPAA Evangelist at the email security firm Paubox. Paubox is a leader in HIPAA-compliant email security for the healthcare industry and is trusted by more than 8,000 organizations, including Cost Plus Drugs, Rippling, and Covenant Health.

 

 

The post Free Webinar TODAY: HIPAA Email Security 101: PHI, Encryption, and What’s Required appeared first on The HIPAA Journal.