Thursday, December 26, 2024

Phishing Fails, SRA Woes and the OCR Hammer - Ep 489


It’s the final countdown, folks—the last episode of the year! And OCR decided to end 2024 with a bang, handing out settlements like candy at a Christmas parade. But here’s the twist: the candy comes with a price tag, and it’s not cheap. This episode hones in on OCR’s new enforcement initiative targeting incomplete and outdated risk analyses. So, before you pop the champagne, let’s make sure your SRA isn’t a ticking compliance time bomb.

More info at HelpMeWithHIPAA.com/489


Check out the episode!

Thursday, December 19, 2024

2024 Holiday Blooper Show


Welcome to the 2024 Blooper Show, where we prove once again that even after nine years, perfection is overrated and laughter is mandatory! Big shoutout to Bojan, our long suffering audio engineer extraordinaire, who turns our chaos into coherence. And of course, we can’t forget you—our amazing listeners—who tune in each week, send us your thoughts and questions, and share the chaos with your friends. Cheers to you for making this madness worth it!

More info at HelpMeWithHIPAA.com/2024blooper


Check out the episode!

Thursday, December 12, 2024

Incident Panic to Plan for SMB Execs - Ep 488


Cybersecurity incidents can feel like a punch in the gut, but with the right plan, you can roll with the hits instead of flailing in panic. In this episode, we’re diving into executive strategies for tackling the unexpected, from building response teams to keeping business operations afloat when chaos strikes. Along the way, we also cover a recent corrective action plan that serves as a cautionary tale for getting your protocols in order before trouble comes knocking. This is your go-to guide for staying cool when the heat is on!

More info at HelpMeWithHIPAA.com/488


Check out the episode!

Thursday, December 5, 2024

Access Delayed, Ransom Paid, Cyber Aid Conveyed - Ep 487


Is your healthcare organization ready for a triple threat, or are you playing a risky game of cybersecurity roulette with delayed access, ransomware demands, and a missing incident response plan? Today, we explore three tales in healthcare that are equal parts cautionary and compelling. We kick things off with the Healthcare and Public Health Sector Coordinating Council’s shiny new cyber incident response checklist—aka your cheat sheet for keeping calm in the face of chaos. Then, we give you the juicy details of a hefty civil money penalty slapped on a healthcare entity for dragging their feet on providing patient records (spoiler alert: patience isn’t a virtue when it comes to HIPAA). Finally, we unravel the saga of a ransomware attack that not only encrypted data but also emptied some wallets. Whether you’re here to learn, laugh, or just feel better about your own compliance game, this episode’s got you covered. Buckle up, because the HIPAA ride is wild!

More info at HelpMeWithHIPAA.com/487


Check out the episode!

Thursday, November 28, 2024

Thankful It Is Not Me - Ep 486


Feeling thankful this season? Us too—especially when it comes to dodging data disasters! In this episode, Donna and David dive headfirst into some eyebrow-raising cybersecurity tales, from job application breaches exposing sensitive information to the ever-creepy risks of unsecured IoT devices (yes, even your vacuum might be plotting against you). Whether it’s researchers discovering unsecured data files or hackers turning robot vacuums into racially inappropriate terrors, we’re reminded to never take our digital safety for granted. Grab your popcorn (or an encrypted snack, if that’s a thing) and join us as we talk about what it means to truly be grateful for solid security practices this year.

More info at HelpMeWithHIPAA.com/486


Check out the episode!

Thursday, November 21, 2024

First SRA Violation Settlement - Ep 485


Doing a half-baked risk analysis is like locking your front door but leaving all the windows wide open. What’s the point?  Today, we dive into the first-ever Security Risk Assessment (SRA) violation settlement—a juicy topic for compliance nerds and healthcare pros alike. We’re talking ransomware, compliance checklists (the kind you actually need), and why a “kinda-sorta risk analysis” isn’t going to cut it with the OCR. Along the way, we’ll break down the $90K fine, the three-year corrective action plan, and what this means for everyone still winging their HIPAA risk assessments. Time to up your game folks!

More info at HelpMeWithHIPAA.com/485


Check out the episode!

Thursday, November 14, 2024

OCR NIST Part 2 - Ep 484


Buckle up for Part 2 of our breakdown on the HHS OCR NIST healthcare security conference - because, yes, 16 hours of deep dives into AI, HIPAA compliance, and cybersecurity priorities can’t be tackled in just one episode! From wild projections about AI’s future in healthcare to OCR’s “tough love” on compliance standards, this episode peels back the curtain on the big decisions shaping healthcare data security. It’s a whirlwind tour through risks, regulations, and the occasional debate on why “just doing it the old way” won’t cut it anymore. Let’s get into it!

More info at HelpMeWithHIPAA.com/484


Check out the episode!

Thursday, November 7, 2024

OCR NIST Conference Part 1 - Ep 483


Buckle up, folks! Today, Donna and David are here with Part 1 of their deep dive into the recent HHS OCR NIST healthcare security virtual conference, and they're spilling all the cyber-tea. With experts from HHS, OCR, NIST, FTC, and FDA presenting, this conference covered a ton. From AI-powered hackers and QR code scams to unpatched medical devices and a spike in supply chain attacks, the discussions centered on what it takes to keep healthcare data and devices secure in a constantly evolving threat landscape. Wondering why healthcare data security feels like a game of whack-a-mole? Tune in to find out!

More info at HelpMeWithHIPAA.com/483


Check out the episode!

Thursday, October 31, 2024

Sell Me This Pen - Ep 482


Ever heard someone say you need a pen test but then start wondering if they meant a pen from a spy movie? There typically is a lot of confusion between penetration testing and vulnerability assessments—a common mix-up with big consequences for your cybersecurity game. We will walk through different types of pen tests, explain how they help you spot weaknesses before the bad guys do and tackle why continuous vulnerability management can save you from surprises. Whether you’re building up your defenses or simply trying to keep up with best practices, this episode is packed with insights on staying ahead of cyber threats, one test at a time.

More info at HelpMeWithHIPAA.com/482


Check out the episode!

Thursday, October 24, 2024

Gumming Up the Works: Dental Record Request Nightmare - Ep 481


Ever had a root canal that felt less painful than dealing with bureaucracy? Well, buckle up, because in this episode, we sink our teeth into the 50th patient right of access enforcement action under HIPAA. That’s right—50 cases since 2019, and somehow, this one involving Dr. Gumb (yes, really) and a dental records dispute is the most absurd of the bunch. From a refusal to hand over records to racking up government fines like trading cards, this saga is a wild reminder of what happens when compliance takes a backseat. 

More info at HelpMeWithHIPAA.com/481


Check out the episode!

Thursday, October 17, 2024

Ransomware, Recall, and Regulations - Ep 480


Today we tackle the trifecta of cybersecurity headaches: Microsoft’s awkwardly ambitious recall feature, the looming HISAA regulations (because HIPAA wasn’t enough), and a juicy enforcement action following a ransomware attack. We’ll break down how Microsoft’s recall reboot went from intrusive default to opt-in relief, why HISAA could mean mandatory stress tests for healthcare providers, and what lessons we can learn from a ransomware attack that left 291,000 patient records exposed—and a corrective action plan no one wants. If you've ever wondered how healthcare security, government fines, and tech mishaps collide, this one’s for you.

More info at HelpMeWithHIPAA.com/480


Check out the episode!

Thursday, October 10, 2024

Browsers & Breaches - Ep 479


Leaving your web browser open with 25 tabs is the digital version of leaving your front door unlocked? Whether it's for email, work docs, shopping, or watching cat videos, your browser is the gateway to, well, everything. But as much as we depend on them, so do hackers. From credential theft to sneaky phishing attacks, cybercriminals are finding clever ways to turn your favorite browser into a tool for their dirty work. Today, we’ll break down the wild world of browsers—how we rely on them, and how hackers are exploiting them while we casually leave 25 tabs open at once. Note to self:  it’s time to update your browser (and maybe close a few tabs)!

More info at HelpMeWithHIPAA.com/479


Check out the episode!

Thursday, October 3, 2024

Halloween Comes Early This Year - Ep 478


Boo! 🎃 Halloween may not be here yet, but we’re kicking off the spooky vibes early! Donna and David dive into the eerie world of cybersecurity, where the tricks are plentiful, and the treats are hard to find. From scary ransomware attacks to the horrifying reality of business email compromises, the internet is scarier than a haunted house with no exit. Grab your digital pumpkin spice latte, because we're about to unravel some terrifying myths that will make you think twice before you click on anything!

More info at HelpMeWithHIPAA.com/478


Check out the episode!

Thursday, September 26, 2024

Avoid These 5 Healthcare Marketing Mistakes - Ep 477


Healthcare marketing is tricky enough without tripping over the big pitfalls that could leave you tangled up in HIPAA violations or a patient privacy disaster. Today we break down five common marketing mistakes you definitely want to steer clear of. From misinterpreting HIPAA rules to guarding patient data like it’s your grandma’s secret cookie recipe, these blunders can get you into serious trouble. We’re here to help you navigate these common missteps and protect your business from unnecessary risks.

More info at HelpMeWithHIPAA.com/477


Check out the episode!

Thursday, September 19, 2024

You Have Been Warned - Ep 476


Do you feel like cyberattacks are the world’s worst game of whack-a-mole? No matter how many you smack down, ten more pop up— and there’s no sign of it slowing anytime soon and neither is the confusion over who’s responsible when your data gets caught in the crossfire. If your supply chain and your own security safeguards aren't locked down, you might as well be rolling out the red carpet for hackers. Tune in as we break down the latest mess, and yes, it’s as frustrating as it sounds!

More info at HelpMeWithHIPAA.com/476


Check out the episode!

Thursday, September 12, 2024

Check Your Facility Access Controls - Ep 475


Ever left your front door unlocked, thinking it’s no big deal? Well, that’s what happens when you forget about facility access controls – and the consequences can be far worse than a missing TV!  Today, we dive deep into a topic that often gets overlooked but is critical to any organization’s security – facility access controls. Whether it's ensuring that only authorized personnel can access sensitive areas or protecting valuable equipment from walking out the door, facility access controls are a crucial part of safeguarding not just data but also physical assets. And as much as we love talking about tech, this time it's all about locks, keys, and keeping the wrong people out. 

More info at HelpMeWithHIPAA.com/475


Check out the episode!

Thursday, September 5, 2024

Using Free CSAM Toolkit - Ep 474


It's that time of year again: Cybersecurity Awareness Month! We're diving into the world of cybersecurity like a hacker in a candy store—except we're here to keep the candy (your data) safe! We're breaking down how you can use the free CE Awareness Month toolkit to boost your cybersecurity game both in your business and at home. Whether you're an IT pro or someone who just learned how to turn on two-factor authentication, we've got tips, tricks, and a few laughs to help you navigate the digital wild west. So buckle up and let's secure our world, one strong password at a time!

More info at HelpMeWithHIPAA.com/474


Check out the episode!

Thursday, August 29, 2024

Yes You Are A Victim - Ep 473


Navigating the world of cybersecurity these days feels like walking through a minefield with clown shoes—are you stepping safely or just a step away from disaster? In this episode, we dive into the jaw-dropping National Public Data breach that's got everyone asking, "Am I a victim too?" Spoiler alert: the odds aren't in your favor. Then, we sift through the chaos of the recent CrowdStrike outage because what's a week in cybersecurity without a little mayhem? And just when you thought it couldn't get worse, we’ve got a few more terrifying tales ripped straight from the headlines to keep you on your toes. Grab your stress ball, and let’s brace ourselves for a journey into the digital dark side!

More info at HelpMeWithHIPAA.com/473


Check out the episode!

Thursday, August 22, 2024

Show me your SBOM - Ep 472


In this episode, we're diving deep into the world of Software Bill of Materials (SBOM)—basically, the recipe for your software, minus the secret sauce. If you've ever wondered what's really under the hood of your favorite apps (or been caught off guard by a sneaky ingredient), this one's for you. We’re breaking down why you should care about SBOMs, how they’re becoming a must-have in your vendor vetting process, and what it all means for the future of tech. Think of it as your crash course in making sure your software isn’t serving up any nasty surprises.

More info at HelpMeWithHIPAA.com/472


Check out the episode!

Thursday, August 15, 2024

A Bloody Mess - Ep 471


Navigating healthcare cybersecurity is like walking through a minefield—you never know which step could trigger the next explosion. In this episode, we’re diving headfirst into the bloody mess of ransomware attacks that have turned hospitals and blood banks into a logistical nightmare. Amidst the chaos, Health-ISAC and the American Hospital Association are urging special consideration for critical supply chain entities. It’s a wild ride through the chaos that one click can unleash on healthcare, and how the ripple effects can leave everyone scrambling to pick up the pieces.

More info at HelpMeWithHIPAA.com/471


Check out the episode!

Thursday, August 8, 2024

How Well Do You Know Remote Workers? - Ep 470


How well do you really know your remote workers? With remote work increasingly becoming the norm, the complexities of securing devices and monitoring access have skyrocketed. The challenges of providing robust security measures for an increasingly dispersed workforce are immense. Real-world examples like the KnowBe4 incident, where a remote worker used a stolen identity to infiltrate company systems, highlight the necessity of layered security and proactive monitoring. Our discussion today, highlights the crucial need to grasp the subtle threats from cyber attackers, especially when dealing with sensitive patient data and HIPAA compliance.

More info at HelpMeWithHIPAA.com/470


Check out the episode!

Thursday, August 1, 2024

CrowdStrike's Major Tech Outage - Ep 469


Ever had one of those days where everything just seems to crash and burn? Well, in this episode, we dive into a tech catastrophe that sent ripples across the digital landscape. Donna and David will unravel the chaos caused by CrowdStrike's major tech outage—a meltdown that wasn’t just an ordinary hiccup, but a vendor-of-a-vendor fiasco. From blue screens of death to grounded flights, this incident highlights the domino effect a single update can have on the entire supply chain.

More info at HelpMeWithHIPAA.com/469


Check out the episode!

Thursday, July 25, 2024

OCR Ransomware Settlement - Ep 468


Ever wondered how neglecting a cybersecurity risk analysis is like leaving your front door wide open in a sketchy neighborhood? Well, buckle up because today we dig into the latest OCR ransomware settlement involving Heritage Valley Health Systems and a laundry list of potential violations. From failing to conduct a thorough risk analysis to lacking a proper contingency plan for ransomware attacks to neglecting to train their workforce on policies and procedures, this is a cautionary tale of what happens when cybersecurity isn't taken seriously.

More info at HelpMeWithHIPAA.com/468


Check out the episode!

Thursday, July 18, 2024

Just Because You Can Does NOT Mean You Should - Ep 467


In the HIPAA world, just because you can, doesn't mean you should – unless you’re keen on trading your business casual for prison orange. No one expects that a HIPAA violation will send them to jail, but there can be serious criminal penalties associated with HIPAA breaches, ranging from fines to imprisonment. Today, we will share real-life examples of how some people misinterpret their rights to access patient records.

More info at HelpMeWithHIPAA.com/467


Check out the episode!

Thursday, July 11, 2024

How Can SMBs Do SSO? - Ep 466


How can small and medium businesses (SMBs) tackle the complexities of single sign-on (SSO) and boost their password security? A recent study from CISA highlighted the lag in SSO adoption among SMBs and why basic security measures like SSO and multi-factor authentication (MFA) should be standard. Join us as we navigate through the maze of managing multiple passwords, the pitfalls of manual methods, and the critical need for vendors to prioritize security from the get-go. 

More info at HelpMeWithHIPAA.com/466


Check out the episode!

Thursday, July 4, 2024

Always BOLO - Ep 465


Ever wonder why staying vigilant in cybersecurity is like playing whack-a-mole? Let's dive into some wild stories that highlight the need to always be on the lookout! From hackers using legitimate websites to spread malware, to the humorous and slightly terrifying saga of employees using mouse jigglers to fake work, to cyberattacks from space, there are a lot of reasons why we should always keep our guard up in the wild world of cybersecurity!

More info at HelpMeWithHIPAA.com/465


Check out the episode!

Thursday, June 27, 2024

Crawl Out Through The Fallout - Ep 464


What happens when healthcare giants falter in the face of cyber threats? Today, we dive into the critical need for better cybersecurity investments, continuous training and education and robust cybersecurity standards. We will explore the fallout from UHG’s cyber incident and break down three fiery letters from Congress demanding accountability and stricter regulations for cybersecurity practices in healthcare.

More info at HelpMeWithHIPAA.com/464


Check out the episode!

Thursday, June 20, 2024

Will Your Response Plan Work Without Internet? - Ep 463


Today, we're diving into a topic that might keep you up at night and might make you reconsider your relationship with your Wi-Fi router. Picture this: your internet goes down, and it's not just a blip—it's a full-blown blackout. We're talking no Netflix, no Zoom meetings, and definitely no online shopping. We’ll unravel the chaos that ensues and discuss how you can keep your cool and your business running smoothly when the digital world decides to take a nap.

More info at HelpMeWithHIPAA.com/463


Check out the episode!

Thursday, June 13, 2024

7 Crucial Steps to a Comprehensive SRA - Ep 462


Join us as we debunked some common myths about what Security Risk Analysis isn't and then cruise through the seven essential steps to conduct a complete and thorough SRA for any organization. It’s not just a one-off IT review or a checkbox on compliance forms—it’s an ongoing, dynamic process. From identifying what you need to protect to managing how you protect it, each step builds on the last to fortify your defense against the digital wild west. 

More info at HelpMeWithHIPAA.com/462


Check out the episode!

Thursday, June 6, 2024

Can Clickers Change? - Ep 461


Today we dive into the world of compulsive clickers—the folks who just can't help but tap on every tantalizing link that winks at them from their inbox. It's not just a harmless habit; these clicks can lead to some pretty sketchy places. Imagine a world where every click could be a potential minefield, threatening your digital safety with every tap. But here's the kicker: can we change these click-happy habits? Let's explore whether it's possible to turn a reckless clicker into a prudent, pause-and-think-before-you-click kind of user. 

More info at HelpMeWithHIPAA.com/461


Check out the episode!

Thursday, May 30, 2024

Battling Cyber Threats and Burnout - Ep 460


Imagine juggling the intense world of cybersecurity where you're constantly putting out digital fires, with trying to keep your own mental batteries charged. It's like being a superhero who also needs to take some me-time. Our discussion dives into how we can manage the high-stakes of cybersecurity and stress-packed jobs while also making sure we don't crash and burn. We’ll talk about everything from rebooting your brain with a dose of humor to the serious implications of cyber threats on mental health. It’s a real talk on balancing the cyber chaos with personal peace, all seasoned with our personal experiences and a sprinkle of practical advice.

More info at HelpMeWithHIPAA.com/460


Check out the episode!

Thursday, May 23, 2024

Verizon DBIR 2024 Review - Ep 459


It is time to review the annual Verizon Data Breach Investigaton report. First we will hit the big notes from their summary. Then, we can add in a few tidbits from the bigger report details. We'll break down key statistics, discuss emerging threats, and offer insights into what these findings mean for the health sector and HIPAA privacy and security programs. 

 

More info at HelpMeWithHIPAA.com/459


Check out the episode!

Thursday, May 16, 2024

Time for mandatory MFA? - Ep 458


After the big cyberattack on Change Healthcare, there’s a hot debate about making Multi-Factor Authentication (MFA) a must-have for all public access points. With Congress getting involved and experts pushing for tougher security, it’s clear that better safeguards are needed to keep our healthcare data safe. This shift towards mandatory security measures shows just how serious cyber threats have become.

More info at HelpMeWithHIPAA.com/458


Check out the episode!

Thursday, May 9, 2024

Who pays for breach notifications? - Ep 457


Who's on the hook for breach notifications in healthcare? Recent cybersecurity incidents like the massive Change Healthcare data breach have left providers scrambling and seeking clarity. The tangled relationships between Covered Entities and Business Associates make it tricky to figure out who's liable, especially when cyber incidents ripple down the vendor chain. This raises big questions about the contents of Business Associate Agreements and clarifications on who's responsible for what, ensuring everyone's ready when a data breach hits.

More info at HelpMeWithHIPAA.com/457


Check out the episode!

Thursday, May 2, 2024

Change is Gonna Make Change Happen - Ep 456


The U.S. healthcare sector is facing significant changes with new HIPAA rules boosting privacy protections, particularly for reproductive health. At the same time, the industry is tackling serious cybersecurity issues highlighted by a major ransomware attack on Change Healthcare. This dual focus on strengthening legal compliance and enhancing data security underscores the urgency of protecting patient information and maintaining trust in healthcare systems.

More info at HelpMeWithHIPAA.com/456


Check out the episode!

Thursday, April 25, 2024

AI Plus Small Business Cybersecurity - Ep 455


In the world of cybersecurity, small businesses have their own set of unique challenges. As AI technology becomes more common, using AI in cybersecurity sounds promising, but it's crucial to handle it wisely to avoid new risks. These tools are powerful, but they need to be used carefully because they can also open up new kinds of cyber threats. Small businesses need to build a strong culture of security, making sure everyone is up to speed and constantly testing their defenses against attacks. It's also vital for them to keep their security practices flexible to stay ahead of new threats and tech developments.

More info at HelpMeWithHIPAA.com/455


Check out the episode!

Thursday, April 18, 2024

Attackers Enjoy Sweet Fruit of Patience - Ep 454


Aristotle once said, “Patience is bitter, but its fruit is sweet.” That's totally spot on when you think about cybersecurity threats and how sneaky cybercriminals can be. These attackers plant their harmful seeds and just hang back, waiting for the right time to take advantage of old weaknesses. Their patience and careful planning mean they can strike effectively, sometimes after years of waiting, showing just how tricky it is to handle digital security. It really highlights why we need to be on our toes all the time, with solid and forward-thinking security measures to guard our sensitive info from these crafty threats.

More info at HelpMeWithHIPAA.com/454


Check out the episode!

Thursday, April 11, 2024

Learning From The MGM Hack - Ep 453


One Friday night in September last year, a massive hack at the MGM Grand caused quite a stir in Las Vegas. Cybercriminals used tricky tactics to slip through the cracks, infiltrating the network, and disrupting services at the hotel and casino. It's a wake-up call for everyone to step up their security game and stay one step ahead in this fast-changing world of cyber threats.

More info at HelpMeWithHIPAA.com/453


Check out the episode!

Thursday, April 4, 2024

Mitigate MSP Risks - Ep 452


MSPs are like the backstage crew for your business's IT show, handling everything from network management to cybersecurity. But here's the kicker: while they're busy protecting you, they've got to make sure they're not accidentally opening the back door for trouble with their own tools and business practices in the process of delivering their services. Security is a shared responsibility.

More info at HelpMeWithHIPAA.com/452


Check out the episode!

Thursday, March 28, 2024

Vendors Surprised By Vetting - Ep 451


In an increasingly interconnected and data-driven world, the importance of rigorous vendor vetting cannot be overstressed. Vendors ticking a box saying that they use a framework for data security and compliance isn’t enough anymore. It is a critical due diligence process that helps clients build secure, compliant, and mutually beneficial business relationships, minimizing risks and enhancing overall business performance. And with the recent Change Healthcare attack, vendors can expect to receive more rigorous questionnaires from their clients and the heightened expectations for transparency and accountability in handling sensitive information.

More info at HelpMeWithHIPAA.com/451


Check out the episode!

Thursday, March 21, 2024

Change HC Attack, What The... - Ep 450


As Change Healthcare ransomware attack unfolds, concerns are escalating regarding patient care and safety, pushing the Healthcare Sector Coordinating Council's (HSCC) 5 Year Strategic Plan into the spotlight. Donna and David talk with Gary Salman, CEO of Black Talon Security, on the ongoing situation, what is known and unknown, and its potential long-term effects. With the attack exacerbating issues within the healthcare system and highlighting the urgent need for robust cybersecurity measures, we explore the implications for patient data, the healthcare industry's response, and what this means for the future of healthcare security.

More info at HelpMeWithHIPAA.com/450


Check out the episode!

Thursday, March 14, 2024

HIPAA Summit Review 2024 - Ep 449


For more than a decade, Donna has immersed herself in the plethora of sessions from the National HIPAA Summit, extracting a wealth of insights into the present and future landscape of HIPAA. Today, she will impart her top three takeaways from this year’s Summit, essential knowledge for navigating the road ahead. Buckle up folks, because these insights are far from trivial.

More info at HelpMeWithHIPAA.com/449


Check out the episode!

Thursday, March 7, 2024

Critical to Stable Condition in 5 Years - Ep 448


Healthcare is inherently about trust; trust between patients and providers, trust in the efficacy of treatments, and increasingly, trust in the technology that underpins modern medicine. However, this trust is under siege by an evolving landscape of cyber threats. Today, we tackle the critical status of healthcare cybersecurity and the concerted effort the Health Sector Coordinating Council Cybersecurity Working Group has developed to transition the industry to a stable posture over the next five years.

More info at HelpMeWithHIPAA.com/448


Check out the episode!

Thursday, February 29, 2024

NIST, Moobot, Ransomware AI Impact - Ep 447


The rapid advancement of AI could soon eclipse our understanding, with its capability to predict and even manipulate human behavior. Today, we will dive into how AI is reshaping our understanding and preparedness for the digital threats lurking around the corner. Plus, NIST just released guidance that can be used to help improve the healthcare sector’s cybersecurity posture and assist with achieving compliance with the HIPAA Security Rule.

More info at HelpMeWithHIPAA.com/447


Check out the episode!

Thursday, February 22, 2024

Insider Breach Gets Huge OCR Settlement - Ep 446


OCR recently announced a jaw-dropping settlement that should have every healthcare professional on high alert. An insider breach that had staggering repercussions, leading to a monumental $4,750,000 settlement and a two year CAP. HHS has also released new cybersecurity resources and guidance and more is to come. There is no excuse anymore folks. Cybersecurity is everyone’s responsibility and OCR’s enforcement of privacy and security failures is picking up.

More info at HelpMeWithHIPAA.com/446


Check out the episode!

Thursday, February 15, 2024

Cyber Insurance Trends with John Miller - Ep 445


Imagine your cybersecurity measures as the immune system of your body. Just like our bodies are constantly exposed to germs and viruses, your business is exposed to a barrage of cyber threats. Cyber insurance is like health insurance for your company's digital health. We are joined today by John Miller of Sterling Seacrest Pritchard, exploring the crucial intersections of healthcare, cyber coverage, and the corporate responsibility of protecting sensitive data.

More info at HelpMeWithHIPAA.com/445


Check out the episode!

Thursday, February 8, 2024

New HPH Sector Cyber Performance Goals Released - Ep 444


HHS has adapted CISA’s Cybersecurity Performance Goals, released in March 2023, for healthcare entities to better protect those in the healthcare sector from cyberattacks. These voluntary goals aim to strengthen cyber preparedness, improve cyber resiliency, and protect patient health information and safety. In this episode, we will review the HPH CPGs as they will be the basis of the proposed HIPAA Security Rule changes slated to be released later this year.

More info at HelpMeWithHIPAA.com/444


Check out the episode!

Thursday, February 1, 2024

Small Business Cybersecurity 2024 - Ep 443


It’s no secret that small businesses face challenges in understanding and keeping up with the rapidly changing cyber threat landscape. Today we’ll discuss some of those challenges and review new free resources from NIST and CISA coming out in 2024 that can help SMBs manage and improve their cybersecurity programs. Buckle up, it’s going to be a busy year.

More info at HelpMeWithHIPAA.com/443


Check out the episode!

Thursday, January 25, 2024

New NY State AG HIPAA Enforcement - Ep 442


We all know that OCR is the HHS department that oversees and enforces HIPAA to ensure the protection of individuals' healthcare information.  However, more and more states around the country are also making efforts to protect their constituents’ personal information and hold companies accountable for their poor data security practices. Today, we discuss recent HIPAA enforcement actions taken on businesses by the NY State Attorney General’s Office.

More info at HelpMeWithHIPAA.com/442


Check out the episode!

Thursday, January 18, 2024

Ban Ransomware Payments? - Ep 441


The number of ransomware attacks impacting critical services, compromising personal information and attackers requesting higher and higher ransoms continue to rise. Today, we discuss this pressing issue, implications of ransomware attacks, the ethical considerations of paying ransoms, and the urgent need for preventative measures. 

More info at HelpMeWithHIPAA.com/441


Check out the episode!

Thursday, January 11, 2024

Privacy Week Coming Soon - Ep 440


In today’s world, it's essential to recognize the importance of safeguarding your personal information. From the moment you wake up and check your smartphone to the minute you stream your favorite show or make an online purchase, your every digital move leaves a trail of data breadcrumbs. But, you have the power to take charge of your data privacy. You can start by taking part in Data Privacy Week, sponsored by the National Cybersecurity Alliance. 

More info at HelpMeWithHIPAA.com/440


Check out the episode!

Thursday, January 4, 2024

Recap 2023 Predictions 2024 - Ep 439


It’s time to recap Donna and David’s 2023 HIPAA and cybersecurity predictions and hear what their crystal ball says about what to look out for in 2024. And, since AI exploded in 2023, we asked ChatGPT for predictions for 2024 too.

More info at HelpMeWithHIPAA.com/439


Check out the episode!