Brian L Tuttle
How to Conduct a HIPAA Security Risk Assessment for the Small Practice or Business Associate
Human Resources
Live Webinar
Mar 11, 2026 , 01 : 00 PM ET

|  36 Days Left
 60 Minutes
Description

This course will cover the proper methodologies on conducting a HIPAA Risk Assessment based on the formula used by Federal auditors and via the guidelines of the NIST (National Institute of Standard for Technologies). The course will also include policy templates written based on the findings of the “mock” risk assessment. The course will also cover the most important aspects to be aware of in terms of the Federal auditing process as well as the new risks regarding patients suing for wrongful disclosures.

Why should you attend -

Have your done your HIPAA HITECH Security Risk Assessment? Do you know a risk assessment is the first thing the Feds will ask for in an audit? Is your risk assessment adequate?

Do you have written policies in place for all 18 Standards and 44 Implementation Specifications of the HIPAA Security Rule (even ones that don’t apply) – do you know this is required!!

I will show how to conduct a PROPER risk assessment point by point and how to also avoid scams in the market. We will also be discussing the absolute importance of doing a risk assessment and that this is the first thing the OCR will ask for.

I will instruct the listeners on how to write proper policies and procedures which are to be based upon the findings of the risk assessment and how to word the policies to satisfy the Fed. We will also discuss the importance of having policies which are consistent with your procedures and discuss the negative ramification of cookie cutter templates in the eyes of the Federal government.

Areas Covered in the:

  • Updates for 2026 (NPRM’s)
  • Conduct a NIST based HIPAA Security Risk Assessment for a hypothetical organization Policies and Procedures (how to write – with templates)
  • Risks
  • Business associates and the increased burden
  • Who will benefit:
  • Practice manager
  • Any business associates who work with medical practices or hospitals (i.e. billing companies, transcription companies, IT companies, answering services, home health, coders, attorneys, etc)
  • MD’s and other medical professionals

Who will benefit:

  • Practice manager
  • Any business associates who work with medical practices or hospitals (i.e. billing companies, transcription companies, IT companies, answering services, home health, coders, attorneys, etc)
  • MD’s and other medical professionals

Target Companies:

  • Private practice
  • Hospitals
  • Billing companies
  • Transcriptions companies
  • Home health groups
  • Health insurance
  • Ambulatory
  • IT companies
  • Attorneys

Target Association/Societies

  • Practice Managers Associations

Target Audience to market

  • Healthcare and any entities doing business with healthcare as “business associate”

 

Speaker

Brian L Tuttle

Brian L Tuttle Nationally Renowned HIPAA Compliance Consultant CPHIT, CHP, CHA, CCNA, CISSP, CBRA, Net +, “The HIPAA Guy”  is a Certified Professional in Health IT (CPHIT), Certified HIPAA Professional (CHP), Certified HIPAA Administrator (CHA), Certified Business Resilience Auditor (CBRA), Certified Information Systems Security Professional (CISSP) with over 18 years' experience in Health IT and Compliance Consulting. With vast experience in health IT systems (i.e. practice management, EHR systems, imaging, transcription, medical messaging, etc.) as well as over 18 years’ experience...

Training Options
Error Conference Exists In Wish-list.

Congrats Conference Added In Wish-list.


Total
$0