Sinopse
HelpMeWithHIPAA.com is a collaboration between Kardon Compliance founder, Donna Grindle, and HIPAAforMSPs.com founder, David Sims. Our mission is to share our Privacy and Security knowledge with those who are required to understand, implement, and manage the complex Privacy and Security requirements of HIPAA compliance.Our work with CEs and BAs inspired us to launch the service to provide information about the complex requirements of HIPAA in a relaxed manner without using too much legalese or geek speak. As the podcasts programs progress we will cover topics about that include sorting through the requirements as well as real world examples of the procedures used, both good and bad.Join us as we do our best to create a show where HIPAA and humor collide!
Episódios
-
Is it really that bad? - Ep 309
18/06/2021 Duração: 58minThey say ignorance is bliss. Ignorance can also leave you vulnerable to cyber attacks and patient safety issues. As we see news about cyber attacks coming from everywhere, you might ask “Is it really that bad?” Yes, yes it is. And it continues to get worse. More info at HelpMeWithHIPAA.com/309
-
Maturity Model Matters - Ep 308
11/06/2021 Duração: 53minPrivacy and security should be a part of all organizations day-to-day activity and company culture. But how do you know how mature your privacy and security program really is? By using one of the many maturity models. Today, we are discussing the new DoD Cybersecurity Maturity Model Certification (CMMC) that breaks controls into levels so you can see what implementation level or maturity level your program is at any given moment. More info at HelpMeWithHIPAA.com/308
-
Peachstate Not A Peachy OCR Settlement - Ep 307
04/06/2021 Duração: 52minIt’s been a while since we’ve reviewed an OCR settlement that wasn’t about the patient right of access initiative. Things are a changin', and in more ways than one. OCR announced the Peachstate settlement just this week that got our attention. How this case ended up being investigated in the first place is interesting. And as usual, the headline doesn’t tell the whole story. So, let’s dive in and check it out. More info at HelpMeWithHIPAA.com/307
-
6 Points In Cyber Executive Order - Ep 306
28/05/2021 Duração: 56minOne of the biggest security problems on the Internet is a ransomware attack. Ransomware can impact all our lives. Just take the Scripps Health and Colonial Pipeline ransomware attacks that we discussed in recent podcast episodes. Last week we gave you 6 tips for planning for a ransomware attack. And today we are going to discuss 6 points from the recently released cybersecurity Executive Order. More info at HelpMeWithHIPAA.com/306
-
6 Ransomware Planning Tips - Ep 305
21/05/2021 Duração: 55minRansomware is just not going away. Falling victim to a ransomware attack will have a BIG impact on you, your business, your clients and your patients. So, today we share some ransomware planning tips. It’s important to know what things you should be doing and should at least consider so that you don’t get caught with your proverbial “pants down.” More info at HelpMeWithHIPAA.com/305
-
Privacy Questions Everywhere - Ep 304
14/05/2021 Duração: 58minWe’ve talked about how damaging a ransomware attack can be in healthcare, not only for the practice or health facility but also for patients and the integrity and availability of their data. Today, we discuss an active ransomware attack affecting a health system that is not just making the local news, but also is blowing up on social media and creating a number of privacy concerns. The implications for their patients is terrifying. More info at HelpMeWithHIPAA.com/304
-
HIPAA Compliant Apps - Ep 303
07/05/2021 Duração: 46minWe’ve all seen the websites of companies that claim to have a “HIPAA compliant” app, product or service. But does that really mean anything? The short answer is NO! There is no such thing. Today, we answer a listener question about products and services with these types of claims. And, as you can imagine, we have a lot to say about this topic. More info at HelpMeWithHIPAA.com/303
-
Get Your Patch On - Ep 302
30/04/2021 Duração: 39minWe talk about patching pretty frequently on the podcast, but there is still a misconception that your IT or MSP team is patching everything. Systems are not designed to patch all hardware and software all of the time. There is a level of responsibility that falls on us to understand what is being patched by IT, what isn’t and what we do about those unpatched applications. More info at HelpMeWithHIPAA.com/302
-
What is Basic Cyber Hygiene - Ep 301
23/04/2021 Duração: 50minBasic Cyber Hygiene is a fairly new term, but I realized we have mentioned it several times over the last few weeks. What do we really intend people to see when we talk about it? That may be helpful if we think it would solve most of our cyber attack problems, huh. More info at HelpMeWithHIPAA.com/301
-
Caveat Discussion - Data Privacy and Security - Ep 300
16/04/2021 Duração: 59minHard to believe that this is our official 300th episode! We are still a tiny podcast in a huge sea but we are pretty sure you can not find a longer running podcast about HIPAA Privacy and Security. To celebrate we have some very special guests, Dave Bittner and Ben Yellen from the CyberWire Caveat podcast. They are joining us for a discussion about where we all see things going in the future for data privacy laws and cybersecurity protections. More info at HelpMeWithHIPAA.com/300
-
HIPAA Summit 2021 News Part 2 - Ep 299
09/04/2021 Duração: 54minEach year the National HIPAA Summit 2021 is a regular event for us. It was held last year just before the shutdown. The event this year was loaded with discussions about what had happened in the previous 12 months and the massive list of things happening in the next 12 months. That is A LOT of HIPAA! Today we cover part 2 of news of note from the conference. More at HelpMeWithHIPAA.com/299
-
HIPAA Summit 2021 News Part 1 - Ep 298
02/04/2021 Duração: 01h04minIf you are a regular listener of the podcast, you know how Donna loves to “HIPAA-geek out” over the HIPAA Summit each year. Things are no different this year as the virtual conference stretched 3 full days and another half day. Needless to say Donna got TONS of information to share - so much so we won’t be able to fit it all in this one podcast. So, let’s get to Part 1 of the HIPAA Summit 2021. More info at HelpMeWithHIPAA.com/298
-
Courts, Cameras, and Exchange - Ep 297
26/03/2021 Duração: 51minCyber attacks keep on coming and there is no expectation that they’ll ever stop. Attacks are coming from everywhere - vulnerabilities in software applications, insecure IoT devices connected on the internet, email attacks and phishing, etc. Protecting your systems from cyber attacks is not a “one and done,” “set it and forget it” project. It is a critical and continuous business process that every organization must address. And, surprise surprise, it also requires vetting your vendors as many attacks are coming through your supply chain. More info at HelpMeWithHIPAA.com/297
-
Evaluating Cyber Threats 2020 to 2021 - Ep 296
19/03/2021 Duração: 01h26sReports are coming out evaluating cyber threats with stats and details documenting the aftermath of attacks happening in 2020 and the outlook for 2021. Let’s just say they are all on brand with what you expect from anything related to 2020. As you can guess, it isn’t looking good for 2021 based on where we are right now. We reviewed some of the articles and reports evaluating cyber threats so you don’t have to... unless you must. More at HelpMeWithHIPAA.com/296
-
Little Things Matter - Ep 295
12/03/2021 Duração: 45minIsn’t it always the little things that make a big difference? That’s true not only in life, but also when it comes to protecting your data and network from attacks. And, it is often the small things that when overlooked can become a big problem. So, today we are talking about some of the things that you need to be looking for and that can make a big difference in your privacy and security programs. For more info HelpMeWithHIPAA.com/295
-
PACS Exposed Part 2 - Ep 294
05/03/2021 Duração: 45minSupply chain cyber threats are happening so often it seems like they keep showing up in the news daily. The list of cases keeps growing every month. So much is still slowly being learned about the SolarWinds attack it is getting hard to keep up with how far it goes. Now we have water systems and more healthcare breaches trickling in. This week I even saw a case we covered before about exposed PACS images. It’s time for us to talk about what these supply chain attacks mean to the rest of us. For more info HelpMeWithHIPAA.com/294
-
Supply Chain Cyber Threats Getting Real - Ep 293
26/02/2021 Duração: 01h01minSupply chain cyber threats are happening so often they keep showing up in the news. The list keeps growing every month. So much is still slowly being learned about the SolarWinds attack it is getting hard to keep up. Now we have water systems and more healthcare breaches trickling in. It’s time for us to talk about what these supply chain attacks mean to the rest of us. More at HelpMeWithHIPAA.com/293
-
9 Smart Cyber Habits - Ep 292
19/02/2021 Duração: 43minSmart cyber habits are part of a new initiative introduced by CISA they have titled Reduce the Risk of Ransomware Awareness Campaign that will be running for a new month now. The campaign includes a lot of great educational information and a toolkit among other things they have planned. Certainly worth us sharing with you guys because you can’t have too many chances to find something that will connect with leadership or your workforce. More at HelpMeWithHIPAA.com/292
-
Privacy Rule Proposed Changes - Ep 291
12/02/2021 Duração: 53minHHS's Office for Civil Rights published their proposed changes to the HIPAA Privacy Rule. The changes include some required to make HIPAA better align with the requirements of 21st Century Cures Act for patient access to their records. There's a few other changes to note, as well. Let's check them out, shall we? More into at HelpMeWithHIPAA.com/291
-
Phishing Test Report - Ep 290
05/02/2021 Duração: 57minDuring NCSAM Kardon signed up for the Terranova Phishing Tournament - much to everyone’s surprise. Great news is we didn’t have anyone clicking on the link. What did they learn in the tournament? More at HelpMeWithHIPAA.com/290