FΛForgeAwareness
Locked

Healthcare HIPAA Security Awareness

By the end, you'll understand what PHI actually is (broader than most people think), how to handle it across email/text/AI/personal devices, what breach assessment requires, what state law overlays add, and what the 2025 proposed HIPAA Security Rule update will require.

Healthcare employees, business associates, vendors handling PHI · ~25 min · 5 modules

This course is part of the paid catalog. Purchase it individually, or unlock it with a membership that includes Tier 1 & 2 content.

What's inside

  1. 01
    What HIPAA actually requires of you
    HIPAA is famously over-cited and under-understood. Quick guide to what the Privacy Rule and Security Rule actually require of regular workforce members — without the 200-page compliance manual.
    ~4 min
  2. 02
    PHI handling — email, text, AI, and personal devices
    Most HIPAA violations happen through mundane communication channels: text messages with PHI, emails to wrong addresses, AI tools getting customer data. Modern rules in plain English.
    ~4 min
  3. 03
    The breach notification process
    HIPAA breach notification has specific timelines, presumption of breach unless rebutted, and substantial state law overlays. What triggers it and what your role is.
    ~4 min
  4. 04
    Real OCR enforcement patterns
    OCR (Office for Civil Rights) enforces HIPAA. Their published settlements show the actual patterns that result in real penalties. Understanding those patterns helps avoid them.
    ~4 min
  5. 05
    Course recap and the healthcare-specific checklist
    Everything you need to remember, in one printable checklist.
    ~4 min