HIPAA Security Risk Assessment
Recorded Webinar | Brian L Tuttle | All Days
|
After this webinar attendees will be able to answer:
Webinar details:
A HIPAA HITECH Security Risk Assessment is more than a compliance document—it is a practical way to identify weaknesses that could affect the confidentiality, integrity, and availability of Protected Health Information.
For compliance officers, auditors, executives, privacy leaders, and security teams, the important question is not simply whether a risk assessment exists. The greater concern is whether it is current, sufficiently comprehensive, aligned with the organization’s actual environment, and supported by policies and procedures that address the risks identified.
Risk-assessment documentation can become a central area of attention during an Office for Civil Rights review. Organizations therefore need to be prepared to demonstrate how they identify security risks, evaluate existing administrative, physical, and technical safeguards, prioritize deficiencies, and respond to identified vulnerabilities.
This 90-minute session provides a practical, NIST-based approach to conducting a HIPAA HITECH Security Risk Assessment. Attendees will examine how to evaluate their existing assessment, recognize security and compliance gaps, and connect assessment findings to appropriate HIPAA Security Policies and Procedures.
The session will also address situations in which organizations should reconsider or update their risk posture—including the implementation of new technologies, significant operational changes, major IT infrastructure updates, regulatory developments, and security incidents.
Special attention will be given to the different challenges faced by smaller healthcare practices and larger entities, as well as considerations arising from the potential changes discussed in the 2025 HIPAA Security Rule NPRM.
For compliance and executive leadership, the objective is to move beyond having a risk assessment on file and toward maintaining a risk-management process that can be explained, supported, and acted upon when questions arise.
This webinar benefits the following agencies / organizations:
Regulatory / framework relevance:
Who should attend?