Brian L Tuttle
This webinar explores the critical HIPAA updates taking effect or approaching in 2026, with a primary focus on the proposed overhaul of the HIPAA Security Rule (from the December 2024 NPRM by HHS/OCR). It covers mandatory cybersecurity enhancements to protect electronic protected health information (ePHI), the February 16, 2026, deadline for updating Notices of Privacy Practices (NPPs), and related changes like 42 CFR Part 2 alignment for substance use disorder records. The session highlights how these changes modernize HIPAA requirements to combat rising cyberattacks, eliminate flexibility in safeguards, and impose stricter documentation, audits, and controls—urging healthcare organizations to prepare proactively to avoid penalties and ensure compliance.
Webinar Agenda:
Areas Covered:
Why Should You Attend?
With cyberattacks targeting healthcare at record levels, the proposed 2026 HIPAA Security Rule changes represent the most significant modernization since 2013—shifting many safeguards from optional to mandatory and introducing rigorous new requirements like MFA, encryption, and frequent testing. The imminent February 16, 2026, NPP deadline adds immediate urgency. Attending this webinar equips you with actionable insights to:
Whether you're facing resource constraints or complex vendor relationships, this session provides clarity on what’s changing, why it matters, and how to stay ahead—essential for maintaining patient trust and operational resilience in 2026 and beyond.
Who Should Attend?
Brian L Tuttle, CPHIT, CHP, CBRA, Net+, A+, CCNA, MCP is a Certified Professional in Health IT (CPHIT), Certified HIPAA Professional (CHP), Certified HIPAA Administrator (CHA), Certified Business Resilience Auditor (CBRA), Certified Information Systems Security Professional (CISSP) with over 18 years' experience in Health IT and Compliance Consulting. With vast experience in health IT systems (i.e. practice management, EHR systems, imaging, transcription, medical messaging, etc.) as well as over 18 years’ experience in standard Health IT with multiple certifications and hands-on knowledge, Brian serves as compliance consultant and has conducted onsite and remote risk assessments for over 1000 medical practices, hospitals, health departments, insurance plans, and business associates throughout the United States. In addition, Mr Tuttle has served in multiple litigated court cases serving as an expert witness offering input related to best practices and requirements for securing and providing patient access to protected health information. Mr. Tuttle has also worked directly with the Office of Civil Rights (OCR) both in defending covered entities and business associates as well as being asked by the Federal government to audit covered entities and business associates on behalf of the OCR. Almost all of Brian’s clients are earned by referral with little or no advertising.