13 min read
HIPAA Compliance Documentation Requirements: What to Keep
What HIPAA says you have to write down. Which records, how long to keep them, how to track versions, and where to store them.
Expert guidance on HIPAA compliance, healthcare technology, and building a culture of compliance.
Articles on HIPAA compliance fundamentals including workforce training, organizational policies, and regulatory updates for healthcare organizations. These foundational resources are especially useful for organizations just beginning their compliance journey or revisiting their program after a change in leadership.
13 min read
What HIPAA says you have to write down. Which records, how long to keep them, how to track versions, and where to store them.
10 min read
The HIPAA training topics every worker needs. Covers PHI handling, phishing awareness, and training by role.
13 min read
'What rights do patients have under HIPAA?' Getting a copy of their records, asking for a fix, asking you to hold back, private messages, and what you owe them.
30 min read
How to run a HIPAA risk assessment, step by step. What you need, how to spot threats and weak points, how to score risk, and how to fix what you find.
13 min read
A step-by-step guide to the HIPAA Security Rule. Covers the three safeguard groups, risk analysis, and how to plan the work.
14 min read
What the HIPAA Privacy Rule asks of you: how PHI may be used and disclosed, what rights a patient has, the minimum necessary standard, and when you need consent.
13 min read
A full guide to protected health information. What PHI means, the 18 HIPAA identifiers, what counts as ePHI, how to strip identity out of data, and cases from real life.
14 min read
HIPAA is a federal law that sets the bar for keeping health data safe. Who it covers, what PHI means, and what you really have to do.
Plain-language definitions of the terms that appear throughout the blog, each tied to the regulation it comes from.