Insights
Security & Compliance Blog
Practical guidance on cybersecurity, compliance frameworks and healthcare security, written for the people responsible for keeping their organizations protected.

Bay Area Healthcare Compliance: The Requirements Providers Must Track
An overview of the federal, California and local requirements Bay Area healthcare providers need to manage, from HIPAA and CMIA to fraud-and-abuse laws, language access and public health reporting.

Healthcare Data Security: Seven Best Practices Every Organization Needs
Seven essential security practices for healthcare organizations: access control, encryption, patching, risk assessment, training, multi-factor authentication and incident response.

Healthcare Compliance Automation: A Practical Implementation Guide
Where automation reduces manual compliance work in healthcare: risk management, policy management, training, credentialing, audit evidence and incident handling, and how to implement it safely.

HIPAA and California Compliance Requirements for Healthcare Organizations
How federal HIPAA requirements interact with California's CMIA, CCPA/CPRA and breach-reporting rules, and the safeguards healthcare organizations operating in California need in place.
Have a question about your own security?
Articles cover the general picture. For advice on your organization's specific risks and obligations, talk to us.
