Medcurity: HIPAA Compliance
The Medcurity Podcast: HIPAA Compliance | Security | Technology | Healthcare
Healthcare is complicated. Joe Gellatly and the Medcurity team are here to help, guiding us through the biggest issues and updates in healthcare security and compliance. From HIPAA Risk Assessments to the dark web, learn what factors are affecting the security of healthcare information and how to protect your data. Tune in for news, advice, and more. HIPAA laws continue to evolve. Go to hhs.gov for the latest information. Learn more at https://medcurity.com.
Author
Medcurity: HIPAA Compliance
Category
Podcast website
Latest episode
Apr 24, 2026
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
How AI Is Shaping Modern Security with Mike Armistead | Medcurity Podcast 117 20.11.2025 37:41
Mike Armistead joins the Medcurity Podcast to discuss the gap between security spending and meaningful outcomes. With decades building and leading cybersecurity companies, he offers a direct look at what actually improves security programs in practice. The conversation with Joe Gellatly covers where AI supports security work and where it falls short, how to keep prevention in focus as attackers mo...
The One Thing You Should Check Off Before 2026 | Medcurity Podcast 116 12.11.2025 7:07
The year-end rush is coming, and there's one compliance requirement that shouldn't wait until December. This episode breaks down a HIPAA expectation that trips up organizations of every size, what regulators actually mean when they say "current," and why starting now gives you room to do it right instead of scrambling at the last minute. If you've been putting this off or you...
Webinar: Your Actual HIPAA Requirements | Medcurity Podcast 115 11.11.2025 50:50
HIPAA isn’t a moving target—it’s a framework that still defines how patient data must be protected in 2025 and beyond. This episode features our full webinar, Your Actual HIPAA Requirements , presented by Jordan Scherich, Lead Business Analyst at Medcurity. She breaks down what regulators expect right now, how upcoming Security Rule updates will change encryption, MFA, and vendor oversight, and th...
Are You Ready For The Next Health Data Attack? | Medcurity Podcast 114 08.11.2025 9:43
Most incident response plans aren’t tested until it’s too late. This episode walks through what “ready” actually looks like in healthcare: knowing where PHI lives, keeping your Security Risk Analysis current, setting clear roles, and practicing real scenarios so teams don’t freeze when it matters. We cover fast detection, clean containment, and smart recovery, plus the pieces that often get missed...
What’s Hidden in Your Vendor Ecosystem? | Medcurity Podcast 113 24.10.2025 5:37
Your organization doesn’t operate alone—and neither does your risk. In this episode, we look at how vendors, business associates, and service providers can quietly impact your HIPAA compliance and security. From overlooked contracts to outdated risk reviews, even trusted partners can become weak links if they’re not managed well. Hear what good vendor oversight actually looks like, how to make it...
Why You Shouldn’t Wait on Your Security Risk Analysis | Medcurity Podcast 112 18.10.2025 5:04
The Security Risk Analysis isn’t just another compliance task. It’s the foundation of your HIPAA program and the proof that you’re protecting patient data. In this episode, hear why now—not January—is the time to get it done. Recent OCR fines show that organizations of every size are still being penalized for missing or outdated SRAs. Waiting costs more in money, reputation, and trust. This episod...
2026 Look Ahead: Where HIPAA Compliance Is Actually Headed | Medcurity Podcast 111 09.10.2025 9:06
Enforcement is active, policy is tightening, and threats continue to evolve. This episode looks ahead to what 2026 will bring for healthcare compliance—how recent OCR settlements, proposed HIPAA Security Rule updates, and CMS’s 2026 payment rule all point to one clear expectation. Hear what strong compliance looks like going forward, from mapping ePHI and managing vendors to building steady routin...
Special Guest Episode: NWRPCA CEO Bruce Gray | Medcurity Podcast 110 01.10.2025 31:34
Bruce Gray joins the Medcurity Podcast to share insights from more than 20 years leading the Northwest Regional Primary Care Association (NWRPCA). He’s joined by Joe Gellatly, CEO of Medcurity, for a conversation on the unique challenges and strengths of rural healthcare and community health centers, the future of care delivery, and how a team-based approach is reshaping connections across the...
AI’s Transformation of Healthcare and Data Optimization | Medcurity Podcast 109 24.09.2025 1:08:10
Madelaine Yue joins the Medcurity Podcast for a great discussion on AI and human collaboration, healthcare transformation, and strategic data optimization. As a Transformation Architect, Madelaine partners with healthcare executives to navigate the complex healthcare landscape, turning their bold visions into life-saving impact. Through blending data, human behavior, and strategic planning, she e...
This Expectation Applies to Everyone | Medcurity Podcast 108 17.09.2025 8:43
A ransomware incident. A settlement. And a clear message from OCR: when the basics are missing, enforcement follows. This episode zeroes in on the expectation that applies to everyone. Providers, health plans, and vendors alike are expected to keep a current Security Risk Analysis and act on what it finds. Hear what “current” looks like in real operations, how CMS policy signals point to ongoing r...
5 Ways to Get Compliance Ready Before Year-End Rush | Medcurity Podcast 107 15.09.2025 5:00
The final months of the year move quickly, and compliance tasks often get left to the last minute. In this episode, we walk through five steps that can keep your organization ahead. Each one builds a stronger foundation for compliance and reduces the chance of scrambling when the new year begins. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA...
Changes Ahead: What CMS’ 2026 Final Rule Means for Hospitals | Medcurity Podcast 106 03.09.2025 7:39
CMS (Centers for Medicare & Medicaid Services) has released the Fiscal Year 2026 Final Rule for hospital and long-term care payments, and it brings important updates for quality reporting, interoperability, and compliance. Learn what’s changing, from the end of the low wage index hospital policy to adjustments in reporting programs, and new expectations under the Promoting Interoperability Pro...
Ransomware Didn’t Cause This Penalty | Medcurity Podcast 105 27.08.2025 9:01
In a recent case, a ransomware attack revealed long-standing gaps that led to a $250,000 settlement. OCR’s recent action shows how overlooked requirements, like a Security Risk Analysis and timely breach notifications, turn an attack into enforcement. In this episode, we walk through the case, what regulators found, and the practical steps every healthcare organization can take to avoid the same o...
Zero Trust, Ransomware, and AI Risks with Daniel Schwartz | Medcurity Podcast 104 21.08.2025 18:34
In this episode, Joe Gellatly and Daniel Schwartz discuss today’s most pressing security challenges—including zero trust, ransomware evolution, data loss prevention, and the risks tied to AI-powered “fast fashion” software. They share what teams can do now to stay secure without waiting for regulations to catch up. Connect with Daniel Schwartz on LinkedIn: https://www.linkedin.com/in/daniel-schwar...
Medcurity Webinar: MIPS 2025 Deep Dive 16.08.2025 31:01
In this episode, Jennifer Oelenberger, President of EHR Concepts, joins us to share the MIPS 2025 framework in plain language—along with strategies to improve category scores, avoid common pitfalls, and make MIPS part of your everyday workflow. Learn more about Medcurity: https://medcurity.com Visit EHR Concepts: https://ehrconcepts.com #Healthcare #Cybersecurity #Compliance #HIPAA #SecurityRiskAn...
Why Addressing Network Vulnerabilities Can’t Wait | Medcurity Live 103 14.08.2025 7:03
In this episode, we talk about Network Vulnerability Assessments (NVAs)—how they pinpoint weaknesses like open ports and unsafe accounts before attackers can exploit them, and why they’re key to shutting down easy entry points. We also walk through Medcurity’s new NVA Dashboard, now live in the platform. Instead of static PDFs, you get a real-time, interactive view of what needs attention, why it...
Privacy Is Shrinking—Securing a World of Connected Devices with Bidemi Ologunde 30.07.2025 59:53
Smart fridges, fitness trackers, fish-tank thermometers—everything is online, and every connection is a doorway. As threat actors race ahead, cybersecurity and privacy for everyday technology lags behind. Bidemi “Bid” Ologunde, a highly respected cybercrime and threat-intelligence specialist, shows how privacy erodes when data-hungry apps and IoT gadgets multiply, why security standards trail tech...
Don’t Trust the Link—Double Check That Domain | Medcurity Live 101 23.07.2025 8:38
The domain looks right. The logo checks out. Even the login page feels familiar. But it isn’t what it seems. Attackers are using subtle domain tricks—like typos, lookalike characters, and spoofed subdomains—to mimic trusted names in healthcare. These aren’t high-tech hacks. They rely on speed, habit, and trust. Once you know what to watch for, they’re easier to stop. Listen to the latest Medcurity...
What “Reasonable and Appropriate” Really Means in 2025 | Medcurity Live 100 16.07.2025 8:26
Documentation isn’t enough anymore. “Reasonable and appropriate” has always been HIPAA’s standard—but that standard is shifting. In this episode, we break down how OCR is interpreting those words today, where organizations are getting into trouble, and what it actually takes to meet expectations now. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HI...
AI Isn’t Plug and Play—What Healthcare Organizations Need to Know with Ghazenfer Mansoor 09.07.2025 35:28
AI can’t fix a broken process—it only makes it more visible. In this episode, Ghazenfer Mansoor, CEO of Technology Rivers, shares how healthcare teams can set the right foundation before bringing AI into the mix. From workflow design to HIPAA compliance, he breaks down what it really takes to use AI well—and why security has to come first. Connect with Ghazenfer Mansoor at https://www.linkedin.co...
How AI Is Reshaping Healthcare and Imaging—Special Episode with Dr. Sean Raj 18.06.2025 19:01
AI is transforming healthcare—not just by improving efficiency, but by enhancing care itself. From earlier cancer detection to smarter workflows and expanded patient access, it’s changing how healthcare works for everyone. In this episode, we talk with Dr. Sean Raj, Chief Innovation Officer at SimonMed Imaging. A nationally recognized leader in digital health, Dr. Raj has published widely and play...
The Forgotten Compliance Risks of Shared Workstations | Medcurity Live 097 11.06.2025 8:22
Shared workstations—especially in clinical areas—can be a blind spot in privacy and security. Whether it’s leaving PHI on the screen, shared login credentials, or lack of session timeouts, these seemingly small things can cause big issues. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compliance #HIPAA #SecurityRiskAnalysis
Inside the 2025 Verizon Data Breach Investigations Report | Medcurity Live 096 05.06.2025 7:50
What’s really driving breaches in healthcare? This episode breaks down key stats from the 2025 Verizon Data Breach Investigations Report—including ransomware trends, human error patterns, and how attackers are moving faster than ever. We’ll highlight what it means for your organization and where to focus your efforts this year. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cy...
Too Many Tools, Not Enough Control | Medcurity Live 095 21.05.2025 6:15
More platforms means more places for PHI to slip through. When tools aren’t vetted, tracked, or covered by the right agreements, even routine workflows can create real risk. And without clear access controls, it’s hard to know who still has the keys. If you’re not sure where your gaps are, this is worth a closer look. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurit...
This Is What Real Readiness Looks Like | Medcurity Live 094 14.05.2025 5:48
Readiness in healthcare compliance means more than checking a box once a year. This episode looks at how healthcare organizations can move beyond annual tasks and create routines that hold up under scrutiny. It’s a practical look at what regulators are expecting and how to be ready before they come knocking. Learn more about Medcurity here: https://medcurity.com #Healthcare #Cybersecurity #Compl...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.