THE TOTAL HIPAA
Resource Library
HIPAA Risk Analysis: The 6 Essential Steps for Compliance (Checklist)
Failing to conduct a documented Risk Assessment is one of the most common pitfalls for Covered Entities and ...
Is Adobe Cloud HIPAA Compliant? How to Choose a Compliant Cloud Backup Service
Storing sensitive patient data requires more than a standard cloud drive. Discover why HIPAA-compliant cloud ...
What Is BAA for HIPAA? Understanding Business Associate Agreements for Compliance
A Business Associate Agreement (BAA) is a legally binding contract required by HIPAA to protect patient data ...
How Often Should HIPAA Security Rule Risk Assessments be Conducted? A Full Timeline
The HIPAA Security Rule requires all covered entities and business associates to conduct regular risk assessments ...
10 Most Common HIPAA Violations & How to Prevent Them
In an era of aggressive enforcement and rising cybersecurity threats, understanding where healthcare organizations ...
The Big Five: How to Configure AI Tiers for HIPAA Compliance
Artificial Intelligence (AI) can streamline operations for any healthcare provider, insurance agency, or HR ...
HHS’ Office for Civil Rights Settles Ransomware Investigation with Health Plan
The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) announced a $450,000 ...
Why do we need to test our Disaster Recovery Plan every year?
Even if your internal software and servers remain perfectly static, the infrastructure, vendor updates, and cyber ...
How to Maintain HIPAA Compliance in Public Cloud Environments
Storing ePHI in the public cloud offers scalability but requires a strict "Shared Responsibility" approach. To ...
How to Stay HIPAA Compliant with Audit Logs
HIPAA audit logs are a mandatory technical safeguard under the HIPAA Security Rule, designed to track and record ...
Is Gmail HIPAA Compliant? – Well, It Can Be!
TL;DR: To use Google Workspace with Protected Health Information (PHI), you must enter into a Business Associate ...
Does HIPAA Apply After Death? Limitations of HIPAA Rules
Yes, HIPAA protections continue long after a patient has passed away. Under the HIPAA Privacy Rule, Protected ...
HIPAA Compliance: A Constant Pulse, Not an Annual Event
Even though people talk about an "annual HIPAA audit," compliance isn't just a once-a-year task. To stay ...
The $245,000 Wake-Up Call: Why Your Employee Benefits Plan is a HIPAA Target
The $245,000 settlement against a small health plan isn’t just a headline, it’s a warning. Many employers ...
Managed HIPAA Compliance vs. Internal Compliance Teams: Which is Right for Your Organization?
While internal compliance teams offer direct oversight, they often struggle with the mounting technical ...
The AI Evolution Across the HIPAA Ecosystem
As Artificial Intelligence becomes a standard business tool, HIPAA-regulated organizations must evolve their data ...
Is OneDrive HIPAA Compliant? Your Guide to Secure File Storage
While OneDrive offers secure infrastructure, HIPAA compliance is a shared responsibility. To use OneDrive for PHI ...
The Shield of System Hardening: Why Your ePHI Needs a Defense-in-Depth Strategy
In the modern cybersecurity landscape, a simple firewall is no longer a sufficient barrier against sophisticated ...
Preparing for the February 16, 2026 42 CFR Part 2 (SUD) Deadline
For years, 42 CFR Part 2 has operated as a separate, more stringent set of rules than HIPAA. However, following ...
What is SOC2 Audit & Can it Replace a Business Associate Agreement?
In today’s digital world, protecting sensitive information is not optional— it’s essential. Whether you’re a ...
No results found.