Framework Guidance

Information on various compliance frameworks and their requirements.

HIPAA Training requirements

For compliance and security best practice, all employees should complete HIPAA training; however, only employees who handle PHI (Protected Health Information) are required to go through HIPAA training. 

In Secureframe you can create custom groups and only assign HIPAA training to those who are required. 

How to enable/disable HIPAA Training

First, lets make sure your HIPAA training is available and enabled.

If you already have access to the HIPAA framework, your HIPAA training is included with your subscription and will be available below.

  • Under Personnel, click the gear icon in the top right corner, then click on the Onboarding tab
  • Scroll down to Training, and make sure that is Enabled (or disable)
  • Select Secureframe under the HIPAA Training Vendor and also make sure to add the appropriate Assigned Groups

Adding users or personnel to the HIPAA Group

If you don't plan to include all employees in HIPAA training we recommend you build a HIPAA group following the instructions here.

Once your new HIPAA group is built, you can now add certain employees to add to the HIPAA group through the following steps:

  1. Head to the Personnel Section
  2. Click on the gear icon in the top right corner
  3. Click on the Groups tab
  4. Search for your new HIPAA group
  5. Type user's name in Search Personnel box 
  6. Click Add to add to the user to the required training group

You can remove personnel from the HIPAA group through the following steps:

  1. Head to the Personnel Section
  2. Click on the gear icon in the top right corner
  3. Click on the Groups tab
  4. Search for your new HIPAA group
  5. Type user's name in Search Personnel box 
  6. Click the check box next to the personnel
  7. Then click Remove Personnel

Secureframe HIPAA Training Overview

Secureframe provides a built-in HIPAA Training video course that fulfills the requirement for educating your team on handling Protected Health Information (PHI).

Training Details:

  • Total Duration: ~30 minutes

  • Format: Video-based lessons with a short quiz at the end of each

  • Progress Tracking: Automatically saved between sessions

Topics Covered:

  1. What is HIPAA? Introduction to the Health Insurance Portability and Accountability Act

  2. What Information is Protected? Overview of PHI and identifiers

  3. The Privacy Rule

  4. The Security Rule

  5. Transactions and Code Set Rule & Unique Identifiers Rule

  6. Breach Notification Rule & Omnibus Rule of 2013

  7. Potential Threats to HIPAA Compliance

💡 Tip: Users must watch each video in full before the associated quiz unlocks.

Frequently Asked Questions (FAQ)

What does it mean to be in this HIPAA group and what will happen to those users?

  • Personnel in the HIPAA group are required to complete HIPAA training and accept additional HIPAA policies and addendums during Secureframe Employee Onboarding

Was this article helpful?

Have more questions? Submit a request

Comments

0 comments

Article is closed for comments.