webinarsexpert



HIPAA Security Risk Assessment

Recorded Webinar | Brian L Tuttle | All Days

Description


After this webinar attendees will be able to answer:

  • Is our current HIPAA HITECH Security Risk Assessment sufficiently current, comprehensive, and appropriate for our organization?
  • What security gaps could put the confidentiality, integrity, or availability of Protected Health Information (PHI) at risk?
  • How can we conduct a structured, step-by-step Security Risk Assessment using a NIST-based approach?
  • What does the Office for Civil Rights (OCR) look for when reviewing Security Risk Assessments and related policies?
  • Do our HIPAA Security Policies and Procedures actually reflect the risks identified through our assessment?
  • When should our organization reassess risk following technology changes, significant operational changes, infrastructure updates, regulatory developments, or security incidents?
  • How should the risk-assessment approach differ between smaller healthcare practices and larger organizations?
  • What potential changes discussed in the 2025 HIPAA Security Rule NPRM should compliance and security leaders understand when evaluating their current approach?

Webinar details:

A HIPAA HITECH Security Risk Assessment is more than a compliance document—it is a practical way to identify weaknesses that could affect the confidentiality, integrity, and availability of Protected Health Information.

For compliance officers, auditors, executives, privacy leaders, and security teams, the important question is not simply whether a risk assessment exists. The greater concern is whether it is current, sufficiently comprehensive, aligned with the organization’s actual environment, and supported by policies and procedures that address the risks identified.

Risk-assessment documentation can become a central area of attention during an Office for Civil Rights review. Organizations therefore need to be prepared to demonstrate how they identify security risks, evaluate existing administrative, physical, and technical safeguards, prioritize deficiencies, and respond to identified vulnerabilities.

This 90-minute session provides a practical, NIST-based approach to conducting a HIPAA HITECH Security Risk Assessment. Attendees will examine how to evaluate their existing assessment, recognize security and compliance gaps, and connect assessment findings to appropriate HIPAA Security Policies and Procedures.

The session will also address situations in which organizations should reconsider or update their risk posture—including the implementation of new technologies, significant operational changes, major IT infrastructure updates, regulatory developments, and security incidents.

Special attention will be given to the different challenges faced by smaller healthcare practices and larger entities, as well as considerations arising from the potential changes discussed in the 2025 HIPAA Security Rule NPRM.

For compliance and executive leadership, the objective is to move beyond having a risk assessment on file and toward maintaining a risk-management process that can be explained, supported, and acted upon when questions arise.

This webinar benefits the following agencies / organizations:

  • Hospitals and healthcare systems
  • Physician and medical practices
  • Ambulatory healthcare organizations
  • Home health organizations
  • Health insurance organizations
  • Medical billing companies
  • Medical transcription companies
  • Healthcare IT companies
  • Other healthcare organizations responsible for protecting PHI

Regulatory / framework relevance:

  • U.S. Department of Health and Human Services Office for Civil Rights (OCR)
  • HIPAA and HITECH requirements
  • NIST-based security risk-assessment methodology

Who should attend?

  • Chief Compliance Officers
  • Compliance Officers
  • CEOs and Executive Leadership
  • Chief Information Officers
  • Chief Information Security Officers
  • Privacy Officers
  • HIPAA Security Officers
  • Internal Auditors
  • Compliance Auditors
  • Risk Management Leaders
  • Healthcare Administrators
  • Practice Administrators
  • IT Directors and Managers
  • Information Security Professionals
  • Health Information Management Leaders
  • Legal / Regulatory Affairs Professionals
  • Medical Practice Managers
  • Billing Company Leadership
  • Healthcare Operations Directors
  • Physicians and other healthcare professionals with HIPAA security responsibilities

Training Price

Recording     $199
Digital Download     $249
Transcript (PDF)     $199
Recording+Transcript     $349
Digital Download+Transcript     $299



Over 10 Attendees Registration ?


Any Organization, Institution or Group User can register

Registration Form
Request Callback
cs@webinarsexpert.com