VanRein Compliance Podcast

HHS Just Told Us What’s Coming — Are You Ready?

Rob & Dawn Van Buskirk

Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.

0:00 | 26:17

Send us Fan Mail

We distill the biggest takeaways from the HHS NIST annual cybersecurity conference into clear actions for healthcare leaders who need to stay HIPAA compliant without getting buried. We connect breach trends, OCR enforcement priorities, ransomware realities, and AI governance into one practical roadmap for reducing risk and protecting patient care. 
• healthcare breach trends and why hacking plus email and servers dominate 
• why HIPAA compliance must include MFA, access controls, backups, and vendor controls 
• OCR enforcement priorities, including right of access and risk analysis expectations 
• how to run a real risk analysis by following ePHI across systems and third parties 
• why medical device security and proper disposal can make or break compliance 
• patient safety as the core cybersecurity outcome during outages and downtime 
• emerging threats like quishing, social engineering, nation-state activity, and DDoS 
• third-party risk lessons from the Change Healthcare ransomware incident 
• practical AI governance using the NIST AI Risk Management Framework 
• next steps, including AI inventory, incident response testing, and workforce training 


Thank You for Listening to the VRC Podcast!
Visit us at VanRein Compliance
You can Book a 15min Call with a Guide
Follow us on LinkedIn
Follow us on X
Follow us on Facebook