Donna Grindle and David Sims
Help Me With HIPAA
In today's environment of data breaches, identity theft, fraud, and increasing connectivity, HIPAA Privacy and Security rules are a responsibility to your patients and your clients. HIPAA isn't about compliance, it's about patient care.
Author
Donna Grindle and David Sims
Category
Podcast website
Latest episode
Jul 10, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Risk OR Gap Analysis THAT Is The Question - Ep 154 18.05.2018 46:54
There is a frequent issue with people understanding what a Security Risk Analysis includes. In fact, there is so much confusion we often see documents presented as a risk analysis that is actually a gap analysis. It happens so often that OCR is trying to address it in their April newsletter . We are going to take a stab at explaining what gap analysis reports look like vs what a security risk anal...
5 HIPAA Cybersecurity Laws - Ep 153 11.05.2018 48:40
Back in January, I read an article in Forbes titled: The Five Laws Of Cybersecurity . When reading it I realized that it was a great message to our listeners but it needed a HIPAA flavor added it to it. This episode we add our thoughts to his article and turn it into 5 Laws of HIPAA Cybersecurity. For more details HelpMeWithHIPAA.com/153
Don't accept candy from strangers - Ep 152 04.05.2018 42:37
More news on the insider front makes it necessary to point out, again, how susceptible healthcare is to insider failures. HelpMeWithHIPAA.com/152
Physicians and Security Officers - Ep 151 27.04.2018 47:58
The American Medical Association (AMA) did a survey of physicians and their thoughts about privacy and security practices. It was interesting to hear their responses. Also, when a group of Security Officers gets together for a chat some people glaze over. For nerds like us, it is an exciting discussion. Today we are going to discuss the Security Officer panel topics and the AMA report presentatio...
Ready for extreme vendor vetting? - Ep 150 20.04.2018 45:25
Are you ready for extreme vendor vetting? Many vendors have been pushing back against any covered entity or business associate that asked them to answer questions about their privacy and security programs. They believe signing a business associate agreement (BAA) meets the legal requirements and that is all they must do. Well, the times they are a changing - again. There are many different factor...
National HIPAA Summit News - Ep 149 13.04.2018 39:51
The National HIPAA Summit always features some interesting news from OCR concerning guidance, enforcement, and audits. This year was no different. In this episode, we discuss the highlights as we interpreted them anyway. More at HelpMeWithHIPAA.com/149
Cyberscary Trends - Ep 148 06.04.2018 47:07
Cybersecurity trends sound scary when you hear us talk about some of this stuff. Cyberscary is actually what we decided to call it. The good news is we do talk about other things sometimes. There are two reports that came out in recent weeks have gotten my attention and just have to be discussed with you guys. More info at HelpMeWithHIPAA.com/148
Cybersecurity And The Law - Ep 147 30.03.2018 55:53
Cybersecurity legal requirements keep changing at the state, federal, and international level. Most of the changes are just trying to keep up with the constantly changing landscape of threats in cyberspace. Today we call in an expert, Mitzi Hill, to talk to us about those cybersecurity legal requirements. How those changes may impact your business and your privacy and security program is certain...
6 Listener Questions - Ep 146 23.03.2018 48:11
We get questions from listeners on a pretty regular basis. When they come in from an email we do our best to reply with an answer. Sometimes they get backed up for us to get them on the show, however. Today we are covering some of those, in fact, we are covering 6 listener questions. HelpMeWithHIPAA.com/146
Uber Health HIPAA - Ep 145 16.03.2018 33:23
News abounds about Uber and other ride-sharing services taking people to their doctor appointments. They say they have it covered and Uber Health HIPAA compliance is solid. Today we look at what they are saying about HIPAA here and what that means to us. More info at HelpMeWithHIPAA.com/145
Does healthcare suck at cybersecurity? - Ep 144 09.03.2018 34:13
If cybercrime truly is the number one problem with mankind and healthcare is the number one cyber attacked industry is it because healthcare sucks at cybersecurity? For more info HelpMeWithHIPAA.com/144
Cyber issues around every corner - Ep 143 02.03.2018 43:03
If it seems like cyber issues are around every corner these days, you aren't imagining things. In episode 128 way back in November 2017, we discussed the fact that we thought there were signs of a coming cyber storm. Today we look at what is going on and see if we may actually be in the midst of that storm or is it still building. For more: HelpMeWithHIPAA.com/143
Do I Need A Lawyer? - Ep 142 23.02.2018 37:56
Information privacy and security requirements in various laws are coming up in legal cases more often these days. Part of that is because we have more of those type laws. Although HIPAA has been in effect for over a decade, I don't recall seeing it used in lawsuits and legal cases as frequently as I do now. Maybe I am just paying more attention but there are certainly plenty of cases in the cour...
5 Breaches Equals 1 Big Settlement - Ep 141 16.02.2018 48:09
As expected, OCR has continued to announce enforcement actions in 2018. This one is a bit different than any previous resolution in that there are 5 different cases across multiple locations in a single organization. It is also important to note that all 5 of these issues data back to 2012. Almost 6 years since the first one occurred, we have the resolution agreement. HelpMeWithHIPAA.com/141
HIPAA Made Easy? - Ep 140 09.02.2018 51:14
HIPAA made easy is a topic we have discussed many times before but today we are going to cover it specifically. So often we get requests for the "easiest way" to do HIPAA. This isn't something to check off a list and have it done. It is something that you do every day as part of your business. The idea that you can make HIPAA easy is similar to saying that doing all of your accounting and taxes f...
6 Cybersecurity Lessons In The News - Ep 139 02.02.2018 43:48
Cybersecurity is in the news a lot lately. Particularly a lot of news just since the beginning of the year. As usual, we review all the news looking for important things to share with our clients and listeners. There are just so many different stories to choose from this week, we decided to cover several of them in one episode. So, here are 6 cybersecurity lessons in the news. Some of them may b...
Cybersecurity Outside The Office - Ep 138 26.01.2018 48:36
In December, the OCR newsletter was titled Cybersecurity While on Holiday . First, how very British of them! Second, is it just when on holiday? The same rules apply anytime you are on the road with technology and access to the internet. We see this as something you should review no matter when you plan to access information outside the office. While some think the corner coffee shop is a gre...
OCR Ends 2017 With A Bang - Ep 137 19.01.2018 44:22
At the beginning of 2017 OCR announced several settlements. Then, the settlement announcements stopped in May as their were leadership changes that continue to happen. In fact, the only reason this announcement seemed to come out was because it was included in a bankruptcy court filing earlier this month. For more go to HelpMeWithHIPAA.com/137
Meltdown - Patch Baby Patch - Ep 136 12.01.2018 35:18
Unless you never listen to nerd-speak you have to have heard the discussion about Meltdown and Spectre over the last few weeks. It is a perfect time to talk about what patch management really means in your cybersecurity protections. We try our best to discuss it with less geek speak and more English. For more info HelpMeWithHIPAA.com/136
7 Educated Guesses About 2018 - Ep 135 05.01.2018 40:19
Here we go for another year! It is amazing that this is the third new year we have covered on HMWH. There are so many things that have happened over that time and as we head into 2018, so many things to look into our crystal ball and make 7 educated guesses about 2018. We may not be predicting the future but we both have some opinions about what we see happening out there in the world of HIPAA,...
Pay Now Or Pay Even More Later - Ep 134 29.12.2017 46:20
Is HIPAA compliance expensive? Or, is it short-sighted to only worry about what HIPAA compliance costs? A new report from Ponemon Institute, The True Cost of Compliance with Data Protection Regulations , looks at compliance costs across several industries and multinational organizations. The study has a lot of details as we always expect from Ponemon Institute . Read more at HelpMeWithHIPAA.co...
2017 Blooper Episode - Happy Holidays 22.12.2017 13:29
Each year Bojan Sabioncello , our audio engineer in Split, Croatia , puts together his blooper roll to mock us. Granted, he spends the whole year having to listen to us without a chance to respond until now. This his only chance to respond to a year's worth of our comments and screw-ups. We will be back next week with a new episode. Happy Holidays from the whole Help Me With HIPAA team!
Cybersecurity Naughty List 2017 - Ep 133 15.12.2017 36:49
As 2017 comes to a close, we are making our lists and checking them twice. Time to find out who we thought was more naughty than nice this year. The Naughty List 2017 discussion includes everything from big news data breaches such as Equifax and Uber down to stolen hard drives and password issues. Feel free to add your naughty list nominations in the comments. More info at HelpMeWithHIPAA.com/1...
Five Phishing Findings From Google - Ep 132 08.12.2017 51:39
A new report on phishing was recently released titled: Data Breaches, Phishing, or Malware? Understanding the Risks of Stolen Credentials . The report of findings from a study that was done by Google, University of California, Berkeley, and the International Computer Science Institute. It was a year-long study of account hijacking, stolen credentials, phishing and malware attacks. The findings...
SOC2 certification is not HIPAA compliance - Ep 131 01.12.2017 47:40
Recently, we have dealt with our clients struggling with vendors in the vetting process. Particularly, tech vendors of any sort. Many vendors have written off the HIPAA compliance requirements by simply saying "We are SOC2 compliant so you don't have to worry about anything". Often that is said by sales and management folks with a great deal of confidence. After spending some time at a recent HITR...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.