Episode 55: Joe Gellatly, CEO of Medcurity

Episode 55: Joe Gellatly, CEO of Medcurity

HIPAA Compliance Is a Year-Round Responsibility

For many healthcare organizations, HIPAA compliance can feel like an annual exercise. But completing a Security Risk Assessment (SRA) is only the beginning. Organizations also need to address identified risks, maintain policies, strengthen safeguards, and document progress throughout the year.

In the latest episode of Frank’s Fast Five with Healthcare Executives, MediGroup’s Frank Gillespie sits down with Joe Gatley, CEO of Medcurity, to discuss how healthcare organizations can simplify HIPAA compliance and take a more proactive approach to managing risk.

As Joe explains, responsibility for completing the SRA ultimately rests with the healthcare organization. Medcurity helps make that process more manageable through a combination of technology, automation, and compliance expertise. Its platform helps organizations identify potential threats, review policies, prioritize risks, maintain documentation, and manage key components of their HIPAA program in one place.

A major focus of the conversation is the importance of continuous compliance. Rather than completing an assessment and filing the report away, organizations need to work throughout the year to address vulnerabilities and ensure appropriate controls and policies are being followed. Medcurity provides worklists and ongoing tracking tools to help organizations monitor that progress.

Frank and Joe also discuss the growing connection between HIPAA compliance and cybersecurity. Medcurity has incorporated tools such as dark web monitoring to help organizations identify potentially compromised employee credentials and respond to security risks more quickly.

For organizations that need additional support, Medcurity offers access to assessors and project management resources that can assist with policy reviews, interviews, documentation, milestones, and ongoing guidance. The approach can scale from small physician practices to larger, multi-location healthcare organizations.

As cybersecurity threats continue to evolve, effective HIPAA compliance requires more than checking a box once a year. It requires an ongoing approach to identifying risk, addressing vulnerabilities, and documenting improvement.

Watch the full interview to hear Frank and Joe discuss how Medcurity is helping healthcare organizations simplify HIPAA compliance and manage risk throughout the year.

 

Contact Us