HIPAA Breach Risk Assessment for Ransomware Attacks

03/11/2026
Live Webinar
23 day
11 hr
51 min
5 sec

HIPAA Breach Risk Assessments determine whether a Ransomware attack constitutes a HIPAA Breach that triggers Breach Notification Rule reports and notifications. A Ransomware attack is automatically presumed to be a HIPAA Breach unless you do a HIPAA Breach Risk Assessment that demonstrates the attack resulted in only a low probability of compromise to the affected protected health information (PHI). This webinar explains how to do a Ransomware HIPAA Breach Risk Assessment.

The Problem Solved by this Webinar

The HHS Office for Civil Rights (OCR) declared that a breach of unsecured PHI is presumed to have occurred when electronic protected health information (ePHI) is encrypted as the result of a ransomware attack on a HIPAA-regulated entity (health care provider, health plan, health care clearinghouse, or business associate). The entity must then comply with the applicable breach notification provisions, including notifying affected individuals without unreasonable delay, the Secretary of HHS, and the media (for breaches affecting over 500 individuals), in accordance with HIPAA breach notification requirements.

However, it is not a breach if the ransomware-victimized entity can demonstrate that there is a low probability that the encrypted ePHI has been compromised. This webinar explains how to do that.

Areas Covered in the Webinar

  • A Breach Risk Assessment can determine whether a ransomware attack is a breach of unsecured ePHI, triggering embarrassing reports and notifications.
  • Factors that can be applied in performing a Breach Risk Assessment.
  • OCR’s guidance about specific factors that can demonstrate a low probability of compromise to ePHI encrypted by a ransomware attack.
  • How to perform a Breach Risk Assessment step-by-step.
  • How to document a Breach Risk Assessment and why you must document it.
  • What to do if you cannot demonstrate a low probability of compromise to ePHI.

Why You Should Attend This Webinar

Attend this webinar to learn how to perform a Breach Risk Assessment with a special emphasis on ransomware attacks. Ransomware attacks may have only a low probability of compromising ePHI. A Breach Risk Assessment can determine whether a ransomware attack resulted only in a low probability of compromise to ePHI and provide Covered Entities and Business Associates with Documentation to overcome the presumption that the ransomware attack was a Breach..

Who Will Benefit

Health Care Covered Entities

  • HIPAA Compliance Officials – Privacy and Security Officers
  • Chief Compliance Officer
  • Practice Managers
  • Health Information Technology Supervisors
  • Risk Managers
  • Group Health Plan Administrators
  • Third Party Group Health Plan Administrators
  • Covered Entity Senior Management and Owners
  • Health Care Providers practicing as individuals or in small groups
  • Attorneys for Covered Entities – In-house and Outside Counsel

Business Associates

  • HIPAA Compliance Officials – Privacy and Security Officers
  • Chief Compliance Officer
  • Business Associate Senior Management and Owners
  • Risk Managers
  • Attorneys for Business Associates – In-house and Outside Counsel

Date: 03/11/2026

Time: 12:00 pm - 1:00 pm (EST)

Reg. deadline: 03/10/2026

Venue: Live Webinar

Enrollment option

Speaker

Paul R. Hales
Paul Hales explains health information privacy and security law clearly in plain language. He is an attorney licensed to practice before the Supreme Court of the United States, a graduate of Columbia University School of Law, and a Senior Counselor of the Missouri Bar. Paul manages an international HIPAA consulting practice based in St. Louis.…

Related Events

Excel: Practical Pivot Tables for Fast and Flexible Reporting
Compliance Webinars
Live Webinar

Excel: Practical Pivot Tables for Fast and Flexible Reporting

Pivot Tables are one of Excel’s most powerful and misunderstood tools but once you know how to use them, they can transform how you analyse and report on data. In just a few clicks, you can summarise thousands of rows into meaningful, dynamic reports - no formulas required. This session will show you how to quickly create and customise Pivot Tables to reveal trends, answer questions, and support better decision-making. You’ll also discover how to turn your Pivot Table into a visual dashboard using built-in charting tools, slicers, and layout options. If you've ever looked at a Pivot Table and thought, “I should really learn that”, this is your moment. Why you should attend Manually building summaries and reports from Excel data is time-consuming and error-prone. Pivot Tables eliminate the guesswork, automate the process, and give you instant insights. This session is perfect if you want to save time, reduce complexity, and finally get confident with one of Excel’s most powerful (but underused) features. Topics covered How to structure your source data for best results Creating Pivot Tables in just a few clicks Summarising data with totals, counts, and percentages Formatting your Pivot Table for clarity and impact Sorting and filtering with built-in tools and slicers Visualising data using Pivot Charts Understanding and using (or avoiding) GETPIVOTDATA Who should attend This session is for anyone who wants to level up their Excel skills and gain confidence with Pivot Tables. It’s ideal for professionals in admin, finance, HR, operations, or anyone who builds regular reports. You should be comfortable with basic Excel tasks like entering data, using copy/paste, and applying simple formatting. The training is delivered using Excel for Windows (Microsoft 365), but most techniques also apply to earlier versions and Excel for Mac.

Care of the LGBTQI + Patient and their Families:   Policies, Procedures, & Practices
Compliance Webinars
Live Webinar

Care of the LGBTQI + Patient and their Families: Policies, Procedures, & Practices

Whether your employer is a clinic, a hospital, home health, or long term care; whether you are an MD, RN, an occupational therapist, a receptionist, or in the C-Suite, approximately 5% - 10% of your patients may be gay, lesbian, or bisexual. Additional patients may be transgender, intersex, or questioning their gender identity or sexual orientation. The healthcare needs of GLBT patients may appear to be the same as other patients’, but institutionalized heterosexism in healthcare is a real barrier to quality care. Healthcare providers acknowledge they are serving more GLBT patients, and that they want to provide quality GLBT care, but aren’t sure how to best create and implement the policies, procedures, and practices to ensure best patient outcomes. GLBT patients face a multitude of barriers to equitable care such as: refusals of care, delayed or substandard care, mistreatment, inequitable policies and practices, end-of-life issues, and limits on visitation. The challenges begin from the beginning of the health professionals’ relationship with their GLBT patient—starting from asking them to identify if they are male or female, married or single, on their intake form. Objectives To list relevant laws, regulations and standards required for health equity and patient-centered care of GLBT patients To identify key policy, procedure and practice issues related to GLBT patients and their families to incorporate into already existing policies, procedures and practices To discuss opportunities to collect GLBT – relevant data and information during the healthcare encounter To identify or revise strategic community outreach efforts to the GLBT population To name a variety of resources Who should Attend? HR Management Nurses Other Health Professionals  

Effective Decision Making: A Critical Skill for Managers
Compliance Webinars
Live Webinar

Effective Decision Making: A Critical Skill for Managers

Everyone makes decisions, but of course some decisions are more important and complex than others. Whether it is a decision about what to wear to work to deciding on a merger, the decision making process is generally the same. Most decision making by management is convoluted with much fuzziness and backtracking. Research suggests that managers put little thought into the decision making process such as—analysis of the risk, what values are poignant, the alternatives evaluated, quantitative and qualitative data, identifying the stakeholders, bias, and the impact of the decision on the system, to name a few. Decision making is the basic foundation of the process of management. Yet most management training and development tactics ignore this essential skill. Learning Objectives To examine the “act of choice” To analyze roadblocks to effective decision making To discuss 10 decision making/problem solving tools To list the various models of decision making Analyze how managers make decisions Who should Attend? HR Management Any Employee

Engaging Your Team in Critical Thinking
Compliance Webinars
Live Webinar

Engaging Your Team in Critical Thinking

It is our nature to think—we all do it, obviously. However, a good share of our thinking is biased, distorted, or incomplete. Critical thinking is an essential skill for both managers and employees. Few of us are effective critical thinkers though research suggests that leaders believe they think quite well. Critical thinking ensures we pose the right questions, view others’ viewpoints with merit, and challenge assumptions in strategic thinking, decision making and problem solving. Non-critical thinkers shoot down ideas before they are understood, or take action based on faulty assumptions resulting in a business disaster. Teams, as well as individuals, must learn to think critically which requires a work atmosphere that is conducive to challenging others’ perspectives. Critical thinking enables teams to develop positive insights and ideas that lead to effective action. It focuses on reframing and rethinking issues so that the right problems are addressed, and requires challenging conventional wisdom. Using the process of critical thinking leads to reasoned conclusions, better decisions, fewer mistakes, and improves collaboration among team members. Learning Objectives Define critical thinking List characteristics of critical thinkers Examine the critical thinking process Explore the elements of reasoning Discuss critical thinking techniques Identify organizational, team, and individual critical thinking barriers Who should Attend? HR Management Any Employee