Episode 432: Decisions Around Designating Your Security Officer
Release Date: 09/06/2024
Group Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we share an overview of the big stories, developments, and regulatory changes that will impact group practices in 2025. We discuss: A proposed change to the HIPAA Security Rule, and how it will impact group practices OCR resuming their HIPAA Compliance Audit program Updates on telehealth provisions and exceptions for Medicare and important dates to know Updates on the Counseling Compact and the Social Work Licensure Compact Upcoming regulatory...
info_outline Episode 445: Google has a New Appointment SchedulerGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we share information about Google’s new Appointment Scheduler feature. We discuss: How the feature works and pros and cons compared to similar software Whether this new feature is HIPAA compliance compatible What Google Workspace tiers include this new functionality Usage guidance for this new feature Our free Google Workspace Resource Center where you can get more support Listen here: For more, Resources Google Help Center: PCT Resources ...
info_outline Episode 444: Guess the Culprit of the Latest HIPAA Penalty: It's MFA and Phishing Scams [Show Notes]Group Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we cover the culprit of the latest HIPAA penalty, how it happened, and how you can take action to stop it from happening to you. We discuss: Instances of monetary HIPAA penalties Sharing login credentials between workforce members vs with unauthorized third parties The importance of multi factor authentication Using the Google Authenticator app for MFA Listen here: For more, Resources: About the violations...
info_outline Episode 443: Your Phone Calls Might Not Be SecureGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we dive into the importance of secure phone communications for therapy providers. We discuss: The recently revealed hack of major global telecom providers The difference between secure communications and non-secure communications The difference between HIPAA secure and HIPAA friendly How clients can opt out of secure communications Which VoIP services are HIPAA secure (and which major one isn’t) Reframing HIPAA security as client care Listen here: ...
info_outline Episode 442: What You Should Know About Apple's Private Relay FunctionGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we discuss Apple's Private Relay function and whether it can be used in a group practice context. We discuss: Security policies around network security and device security, particularly BYOD policies How Private Relay works, and its limitations How Private Relay is similar to a VPN (and how it is different) What functionality is required for network and device security Private Relay alternatives and their limitations Our...
info_outline Episode 441: What the Rate Cuts for Headway and Alma Mean to YouGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we explore the impact of the recent rate cuts for Headway and Alma clinicians. We discuss: The common anxieties around corporate/VC owned telehealth companies The incentives these companies use to lure clinicians The cracks starting to appear in these companies How the rate cuts will impact clinicians How the rate cuts will impact group practices and solo practices Listen here: For more, Resources Clear Health Costs article: Clear Health...
info_outline Episode 440: MFA Made Easy with Google AuthenticatorGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we’re chatting about multi-factor authentication for group practices. We discuss: What multi-factor authentication is and why it’s important Different types of factors for authentication What Google Authenticator is and how it works What accounts you can use Google Authenticator for HIPAA considerations for using Google Authenticator Using Google Authenticator appropriately in a group practice...
info_outline Episode 439: What Info is Actually Part of the Client's RecordGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we explain what makes up a client’s record. We discuss: HIPAA regulations vs. state laws What communications are included in a client’s record and why The distinction between progress notes and psychotherapy notes Resources for training your staff on rethinking notes The Open Notes Rule Managing documentation compliance in your practice Listen here: For more, Resources (under HIPAA) (JD...
info_outline Episode 438: Google's Gemini AI Tool & HIPAAGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we look at Google’s Gemini AI tool through a HIPAA lens. We discuss: Common use cases for Gemini in a group practice context What’s covered under the Google Workspace BAA (and what isn’t) Ethical and legal considerations for using PHI with AI tools Informed consent for clients when AI tools are used for clinical documentation Establishing a Gemini usage policy for your practice Listen here: For more, Resources ...
info_outline Episode 437: Hurricanes, HIPAA Waivers, and SupportGroup Practice Tech
Welcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech. In our latest episode, we’re chatting about what to do if your practice experiences a natural disaster, like a hurricane. We discuss: The recent hurricanes impacting the southeast US Prioritizing access to care Limited HIPAA waivers for disasters and emergencies And situations where the waivers would apply Resources for group practices in and out of the affected areas Listen here: For more, Resources & Support For...
info_outlineWelcome solo and group practice owners! We are Liath Dalton and Evan Dumas, your co-hosts of Group Practice Tech.
In our latest episode, we discuss what to consider when designating your security officer in a mental health group practice.
We discuss:
- What a security officer is
- The difference between a security officer and a privacy officer and what each is responsible for
- Who can be a security officer, and whether the role can be outsourced
- The qualities to look for when appointing a security officer or deputy security officer
- The time commitment required to be a security officer
- How PCT’s resources can help your practice’s security officer
Listen here: https://personcenteredtech.com/group/podcast/
PCT Resources:
- PCT's Security Officer Endorsement Training Program (10 legal-ethical CE credit hours)
- Group Practice Care Premium
- weekly (live & recorded) direct support & consultation with the PCT team + Eric Ström, JD PhD LMHC (monthly) Group Practice Office Hours
- Device Security: assignable staff HIPAA Security Awareness: Bring Your Own Device training + access to Device Security Center with step-by-step device-specific tutorials & registration forms for securing and documenting all personally owned & practice-provided devices (for *all* team members at no per-person cost)
- Remote Workspace Security: assignable staff HIPAA Security Awareness: Remote Workspaces training for all team members + access to Remote Workspace Center with step-by-step tutorials & registration forms for securing and documenting Remote Workspaces (for *all* team members at no per-person cost) + more
- HIPAA Risk Analysis & Risk Mitigation Planning service for mental health group practices -- care for your practice using our supportive, shame-free risk analysis and mitigation planning service. You’ll have your Risk Analysis done within 2 hours, performed by a PCT consultant, using a tool built specifically for mental health group practice, and a mitigation checklist to help you reduce your risks and implement required safeguards.
- HIPAA compliance, risk management, and practice optimization resources and support from PCT for mental health group practices