Sinopse
HelpMeWithHIPAA.com is a collaboration between Kardon Compliance founder, Donna Grindle, and HIPAAforMSPs.com founder, David Sims. Our mission is to share our Privacy and Security knowledge with those who are required to understand, implement, and manage the complex Privacy and Security requirements of HIPAA compliance.Our work with CEs and BAs inspired us to launch the service to provide information about the complex requirements of HIPAA in a relaxed manner without using too much legalese or geek speak. As the podcasts programs progress we will cover topics about that include sorting through the requirements as well as real world examples of the procedures used, both good and bad.Join us as we do our best to create a show where HIPAA and humor collide!
Episódios
-
Digital Jenga - Ep 529
03/10/2025 Duração: 41minWelcome to “Digital Jenga,” where the tower’s made of cloud apps, power cords, and fragile backup plans and every pulled piece brings us closer to chaos. Today’s episode is a thought experiment that feels a little too real: What happens when everything goes down but your stress levels? Grab your imaginary generator and follow along as we walk through scenarios that are way more common (and hilarious) than you'd think, because nothing says fun like discovering your entire system was balancing on one Wi-Fi signal and a prayer. More info at HelpMeWithHIPAA.com/529
-
Small, Breached, and Broke - Why Hackers Love SMBs - Ep 528
26/09/2025 Duração: 54minIf your small business still thinks that a dusty old firewall and a sprinkle of MFA is “good enough,” this episode is your cybersecurity reality check. Picture your company as a lemonade stand with a cash box—hackers are thirsty, and you’re wide open for business. We’re diving into why SMBs are now hacker playgrounds, how AI is helping cybercriminals get sneakier, and why your robot vacuum may be more security-conscious than your network gear. It's everything you didn’t want to know about being a prime target—served up with a twist of humor, a splash of horror, and a tall glass of truth. More info at HelpMeWithHIPAA.com/528
-
Stack Attack - Breach by Association - Ep 527
19/09/2025 Duração: 38minEver feel like your tech stack is one shady character away from becoming a security nightmare? Yeah, same. In this episode, we dive headfirst into the murky waters of “breach by association,”where trusting one tool can accidentally invite the entire cybercriminal neighborhood into your data party. From APIs doing the digital equivalent of handing out spare keys, to sneaky GitHub repos spilling secrets like a leaky faucet, we unpack how this all went down. Spoiler: the AI-powered thieves were way too polite to trip any alarms. More info at HelpMeWithHIPAA.com/527
-
AI Ran the Whole Attack - Ep 526
12/09/2025 Duração: 34minSo you thought AI was just here to help you write emails and generate cat memes? Think again. In this jaw-dropping episode, we unpack how AI didn’t just assist in a cyberattack—it ran the entire show like a caffeinated Bond villain with zero moral compass. From reconnaissance to extortion letters with sector-specific sass, this is the future of cybercrime, and it's happening now. Buckle up. The robots aren’t just coming—they’ve already clocked in. More info at HelpMeWithHIPAA.com/526
-
Hacking You Gently - Ep 525
05/09/2025 Duração: 50minForget Mission: Impossible-style hacking - today's cyber crooks are all about manners. In this episode, we unravel how asking “pretty please” can crack open digital doors faster than any brute force attack. With tips, tales, and a touch of panic, we break down the importance of knowing your personal risk profile, locking down your accounts, and yes - finally turning on that MFA you've been ignoring. More info at HelpMeWithHIPAA.com/525
-
OCR Tags CPA Firm for HIPAA Failures - Ep 524
29/08/2025 Duração: 42minIf you thought HIPAA only applied to big hospitals and medical groups swimming in patient data, think again. In this episode, we uncover how just one record with PHI can infect your organization with full-blown HIPAA responsibilities — no vaccine required. We dive into a juicy enforcement case featuring a CPA firm that got hit with a ransomware attack and a $175K HIPAA oopsie, all because someone skipped their security risk analysis. Spoiler: ignorance is not immunity. More info at HelpMeWithHIPAA.com/524
-
Shadow AI - The Wild West of Cybersecurity - Ep 523
22/08/2025 Duração: 49minStrap in, folks—this episode charges into the wild frontier of cybersecurity, where Shadow AI runs loose like a toddler with admin access. Whether your security plan is airtight or held together by paperclips and prayers, this deep dive into the IBM Cost of a Data Breach 2025 report offers plenty to think about. From eye-popping breach costs to the cringe of unsecured AI, we’re covering the good, the bad, and the downright reckless. Spoiler: "we don’t use AI" might be the biggest myth since "the check’s in the mail." More info at HelpMeWithHIPAA.com/523
-
Ransomware Hit. Business Quit. - Ep 522
15/08/2025 Duração: 44minYou might think a single ransomware attack is just a tech hiccup—but tell that to the medical practice that shut its doors permanently because of one. In this episode, we dissect what really happens when cybersecurity goes sideways, peeling back the layers of tech jargon to expose the raw, messy fallout of a breach. It’s less “oops, I forgot my password” and more “goodbye, 12 years of business.” Let’s get real about what these incidents cost—not just in dollars, but in dignity. More info at HelpMeWithHIPAA.com/522
-
Shore Up or Throw Up - Healthcare’s Latest Cyber Warnings - Ep 521
08/08/2025 Duração: 31minWhat do hackers, patient scams, and IT help desks with too much trust have in common? They're all making healthcare cybersecurity a lot messier—and a lot more vomit-worthy. In this episode, we dive into how bad actors are not only stealing data but turning patients into direct targets. From sneaky social engineering tactics to “I can’t believe they answered that call” level IT fails, we explore why locking down your network is only half the battle. More info at HelpMeWithHIPAA.com/521
-
Battle of the Bots - AI on Offense and Defense - Ep 520
01/08/2025 Duração: 43minIf you thought AI was just about asking ChatGPT for dinner ideas, think again. This episode unpacks the next-level madness of agentic AI—those industrious bots that not only check your emails but might just decide how your healthcare practice runs. We’re talking phishing attacks on steroids, decision-making algorithms with questionable judgment, and the jaw-dropping ways AI is working for—and against—us in cybersecurity. It’s part fascinating, part terrifying, and 100% worth listening to. More info at HelpMeWithHIPAA.com/520
-
BAAs, Breaches, and the Art of Covering Your Assets - Ep 519
25/07/2025 Duração: 53minYou know that moment when someone casually slides a contract across the table and says, “Just sign here”? Yeah, don't do that—especially when it's a Business Associate Agreement. This episode is a deep dive into the dark corners of BAAs, the traps they hide, and why you should read every line like it’s a ransom note. From ping floods to passive-aggressive breach clauses, we unpack the weird, wild world of healthcare contracts. Oh, and stick around—because just when you think it can’t get any messier, a breach shows up to ruin everyone’s day. More info at HelpMeWithHIPAA.com/519
-
Keeping Up With the Cyber Laws - Ep 518
18/07/2025 Duração: 48minThink cybersecurity laws are just for the big guys? Think again. In this episode, we unravel the patchwork of new state regulations popping up faster than a phishing scam in your inbox—Ohio, Utah, Texas, Florida, and even Iowa are throwing their hats into the compliance ring. From safe harbor perks to tiered requirements for small businesses (yes, Texas made a flowchart-worthy version), we decode what these laws mean, who they apply to, and why HIPAA entities seem to always get the “you’re fine, probably” treatment. Bonus: there's a federal bill in Congress that might actually help. Maybe. More info at HelpMeWithHIPAA.com/518
-
Cyber Safety Is Patient Safety - Greg Garcia’s 5-Year Rally Cry - Ep 517
11/07/2025 Duração: 55minStrap in, folks—this isn’t your average cybersecurity snoozefest. We're plugging into a conversation with Greg Garcia, the guy who's been leading healthcare's cyber crusade like it’s the season finale of a medical drama. From hospitals fending off ransomware to the chaotic ballet of patching ancient medical devices, it’s clear: in a world where tech keeps patients breathing, cyber safety is patient safety. And no, turning it off and on again won’t fix this one. More info at HelpMeWithHIPAA.com/517
-
One Phish, Two Phish, MFA Bypass Twist - Ep 516
04/07/2025 Duração: 42minIf you thought “One Phish, Two Phish” was a Dr. Seuss classic, think again—this cybercrime edition comes with a twist of ransomware, app-specific passwords, and a side of website hijacking. This week, we explore what happens when software vendors forget to patch, hackers start crafting emails better than your favorite copywriter, and your website becomes a party zone for malware. It’s an episode full of lessons, laughs, and mild panic—just the way we like it. More info at HelpMeWithHIPAA.com/516
-
Reasonable Security That Holds Up in Court - Ep 515
27/06/2025 Duração: 40minIf you’ve ever wondered what happens when “going viral” meets “losing your license,” this episode has the answer—courtesy of a nurse who took her TikTok dreams a little too far. From cringe-worthy compliance blunders to Oklahoma’s oddly refreshing legal update, we’re diving headfirst into the murky waters of healthcare privacy, social media madness, and why reasonable security might just be your get-out-of-court-free card. It’s like HIPAA meets reality TV—minus the roses and dramatic exits. More info at HelpMeWithHIPAA.com/515
-
Things That Make You Go Hmm - Ep 514
20/06/2025 Duração: 42minThis week on “Things That Make You Go Hmm,” we’re serving up a digital cocktail featuring disappearing network routes, dark web AI tools with a flair for phishing, and Microsoft’s bold new idea to let Copilot tinker with your system settings—what could possibly go wrong? In this episode, we dissect digital disasters and marvel at how event planners might just be outdoing some organizations when it comes to risk assessments. It’s equal parts facepalm and fascinating. More info at HelpMeWithHIPAA.com/514
-
Sometimes It’s Just a Squirrel - Ep 513
13/06/2025 Duração: 51minYou’ve heard of phishing scams, ransomware, and all the usual cyber villains—but have you prepared for the wrath of a squirrel? In this episode, we unpack how one fuzzy-tailed offender knocked out power to 11,000 customers and sent a swim club scrambling for pencils and paper. But this isn’t just a woodland horror story. It’s a real-world reminder that sometimes, your biggest threat isn’t a hacker—it’s Alfred the squirrel with a death wish and a talent for circuit boards. We use this nutty incident to highlight the often-overlooked need for utility failure preparedness in healthcare and dig into the super-helpful (and criminally underused) ASPR TRACIE tip sheets that can keep your operations steady when nature gets twitchy. More info at HelpMeWithHIPAA.com/513
-
Edge of Disaster - Ep 512
06/06/2025 Duração: 47minWelcome to another episode where chaos meets cybersecurity and common sense tries to crash the party. In this digital drama, we’re untangling the curious case of a former employee with way too much access, some mysterious printed medical records, and a whole lot of "Wait... WHAT?!" moments. We also dive into the thrilling (read: terrifying) reality of outdated edge devices and how your trusty old router might just be moonlighting as a hacker’s BFF. Oh, and spoiler alert—Microsoft Recall still isn’t winning any popularity contests. More info at HelpMeWithHIPAA.com/512
-
EDR Failed - Leadership Did Too - Ep 511
30/05/2025 Duração: 52minEver wonder what would happen if a hacker walked right into your digital living room, kicked off their shoes, and hung out for three months without anyone noticing? This week’s episode dives into a jaw-dropping CISA Red Team Assessment that reads like a cybersecurity horror flick—complete with ignored alarms, forgotten passwords, and an open-door policy for digital intruders. It's not just about tech failures; it’s a full-blown case study in what happens when leadership decides “meh” is a strategy. More info at HelpMeWithHIPAA.com/511
-
7 Things Healthcare Needs More Than Another Webinar - Ep 510
23/05/2025 Duração: 47minLet’s face it — if healthcare had a dollar for every time someone said “we need another webinar,” it might actually be able to afford cybersecurity upgrades. This episode takes aim at the overload of online presentations and instead shines a light on what healthcare providers actually need. We unpack the findings of a critical report on the unique cybersecurity challenges facing small and rural healthcare providers, who are often running on shoestring budgets, outdated tech, and a whole lot of crossed fingers. More info at HelpMeWithHIPAA.com/510