Welcome! Strafford is now BARBRI! The expert courses you know from the trusted global leader in legal education.
About the Course
Introduction
This CLE webinar will examine the challenges in HIPAA Security Rule compliance in an age of ever-increasing ransomware and cyberattacks. The panel will review the HIPAA Security Rule requirements and proposed amendments to the Rule, additional HHS agency guidance, and notable recent OCR settlements. The panel will offer best practices for cybersecurity compliance while mitigating the risk of HIPAA violations and enforcement action.
Description
The healthcare industry continues to experience a significant rise in cyberattacks. In support of its recent release of the proposed revisions to the HIPAA Security Rule, OCR states that the number of people affected by cyberattacks every year "has skyrocketed exponentially." Since 2019, large breaches caused by hacking and ransomware have increased 89 percent and 102 percent. Despite years of HHS guidance and the agency's recent adoption of Cybersecurity Performance Goals, HHS felt it necessary to establish much of its prior guidance as regulatory requirements through the notice of proposed rulemaking released Dec. 27, 2024.
In a number of notable recent settlements, healthcare providers who were victims of ransomware attacks subsequently suffered hefty penalties for potential HIPAA violations as a result of OCR investigations triggered by the attacks. In addition to OCR enforcement, cyberattacks may trigger additional enforcement action by state Attorneys General and the expense of civil litigation. Finally, as part of its HITECH obligations, OCR announced initiation of its 2025 HIPAA Audit program targeting HIPAA Security Rule provisions.
Therefore, HIPAA covered entities and business associates should be up to date on HIPAA requirements impacting cybersecurity, including HHS' recently issued proposed changes to the HIPAA Security Rule and the latest agency guidance--e.g., HHS' and NIST's joint Cybersecurity Resource Guide and NIST's Cybersecurity Framework--to manage cybersecurity risks, remain compliant, and mitigate the risk of enforcement action.
Listen as our expert panel examines HIPAA compliance in the age of increased cyber threats. The panel will provide an overview of HIPAA requirements and the proposed HIPAA Security Rule revisions as well as the latest agency guidance. The panel will discuss lessons to be learned from notable recent settlements and offer best practices for mitigating the risk of cyber threats and possible subsequent enforcement actions.
-
This 90-minute webinar is eligible in most states for 1.5 CLE credits.
-
Live Online
On Demand
Date + Time
- event
Wednesday, March 5, 2025
- schedule
1:00 p.m. ET./10:00 a.m. PT
- Introduction
- Ransomware and other cybersecurity threats to patient data privacy
- Proposed HIPAA Security Rule changes
- HHS proposed revisions to the HIPAA Security Rule
- Additional agency guidance for HIPAA cybersecurity compliance
- HHS' and NIST's joint Cybersecurity Resource Guide
- NIST's Cybersecurity Framework
- Lessons learned from recent settlements
- Best practices for managing cybersecurity risks and mitigating risk of enforcement action
The panel will review these and other important considerations:
- What challenges face healthcare counsel and their clients in managing cyber threats and maintaining data privacy?
- How may the proposed HIPAA Security Rule revisions impact the development and implementation of cybersecurity compliance programs?
- In addition to HIPAA requirements, what additional agency guidance should counsel and their clients be aware of when developing compliance programs?
- What are best practices for cybersecurity compliance and mitigating the risk of enforcement action by OCR and others in the event of a data breach?
Unlimited access to premium CLE courses:
- Annual access
- Available live and on-demand
- Best for attorneys and legal professionals
Unlimited access to premium CPE courses.:
- Annual access
- Available live and on-demand
- Best for CPAs and tax professionals
Unlimited access to premium CLE, CPE, Professional Skills and Practice-Ready courses.:
- Annual access
- Available live and on-demand
- Best for legal, accounting, and tax professionals
Unlimited access to Professional Skills and Practice-Ready courses:
- Annual access
- Available on-demand
- Best for new attorneys
Related Courses
#MeToo and Medical Staffs: Handling Allegations of Physician Sexual Misconduct
Available On-Demand
CMS Nationwide Moratoria on New Hospice and Home Health Medicare Enrollments: Covered Entities, Industry Impact
Wednesday, July 8, 2026
1:00 PM ET/10:00 AM PT
Clinical Trials and Human Research: Complying With Regulatory Obligations; Privacy Considerations
Tuesday, August 4, 2026
1:00 p.m. ET./10:00 a.m. PT
100% Tariffs Impacting the Pharmaceutical Industry: Section 232, Complex Multi-Tiered Rate Structure, Exemptions
Thursday, July 16, 2026
1:00 PM ET/10:00 AM PT
Recommended Resources