• Home
  • Entrepreneurs
    • Entrepreneurs
    • Business Consulting
    • Entrepreneur Blog
    • Videos
    • Startup Packages
    • Website Builder
    • Resources
    • Contributors
  • Instagram
Consulting@LeanTowardsJoy.com
Lean Towards JoyLean Towards Joy
Lean Towards JoyLean Towards Joy
  • Home
  • Entrepreneurs
    • Entrepreneurs
    • Business Consulting
    • Entrepreneur Blog
    • Videos
    • Startup Packages
    • Website Builder
    • Resources
    • Contributors
  • Instagram
7 Tools to Stay HIPAA Compliant

7 Tools to Stay HIPAA Compliant

Posted by michael whyte

Many therapists are exposed to HIPAA while interning or earning their licensure hours through an agency. Agencies have the ability to hire expensive attorneys to draft their privacy notices and create HIPAA compliant policies and procedures. Unfortunately, however, most therapists shifting to private practice do not have the same resources available to them. Becoming fully HIPAA compliant becomes something most aspire to but are not able to fully actualize among the other moving parts of opening and running a private practice.

I’m excited to announce this blog post was featured on Zencare.co!

 

See it featured here!
Learn more about Zencare at the bottom of this post. 

HIPAA compliance is intimidating, and becomes  a giant elephant in the room that no one wants to talk about. However, if one approaches HIPAA compliance as another aspect of patient care rather than an unattainable standard, it may feel less like a burden and more of an extension of work with clients.

Imagine logging on to Facebook to find your clients being suggested to you as “friends” or having your laptop stolen and losing all of your client notes and information. These two examples are equally frightening to some and all too common to many. Becoming HIPAA compliant not only prevents circumstances like these from happening, it prevents you from going into panic mode the next time you accidentally send a client email from your personal email account.

The HIPAA guide I created helps bring the practical applications of HIPAA compliance to your practice, in order to simplify administrative items so you can focus on your work with clients. The guide outlines over 30 different HIPAA compliance solutions and pricing options. The following tools are a sample of these solutions to get you on the path of HIPAA compliance.

 

7 Tools to Stay HIPAA Compliant

 

1. BA Agreements

Sign a Business Associate Agreement (BAA) with every third-party that handles your protected health information. This includes providers of email, document storage, video chat, and payment processing. The BAA assures you that the third-party is HIPAA compliant. You can try Google searching “Business Associate Agreement” along with the name of your service provider, or email the third party with questions. If your third-party is not willing to sign a BAA, then you are not HIPAA compliant and it’s time to find a new provider.

2. Hard-drive Encryption

Make sure your laptop and any hard-drives you use have full disk encryption. Any newer operating system will allow you to enable encryption without too much hassle. You do not need an engineering degree to achieve this! The company’s website will tell you how to enable encryption.

3. Secure Your WiFi

Securing your WiFi enables data to transfer between devices while remaining encrypted. The easiest way to do this is to start using WiFi Protected Access-2 (WPA2) on your router. Most new routers will give you this option during your WiFi Network setup.

4. Remote Backup

Start backing up your documents in the proverbial cloud. This tool helps prevent data loss should the hardware break down. Cloud storage varies for different companies both in price and space (see a full comparison here). Make sure they will sign a BAA with you to be fully HIPAA compliant..

5. Email

Email encryption for healthcare providers gets a little fuzzy. The latest iteration of HIPAA in 2013 has been interpreted by some as indicating emails do not need to be encrypted as long as the provider explains the security risks involved and the client opts to receive emails anyway. However, using encryption is good practice and could protect you and your clients from a breach. You may wish to stop using Gmail and switch to G-Suite or another provider that is willing to provide a BAA for their encrypted email service (see a breakdown of encrypted email providers here).

 

For a list of pricing and other email services providing encryption, download my HIPAA Guide.

 

6. Credit Card Payments

If you accept credit card payments using a processing companies such as Square, make sure that you have a BAA in place. Note that Square’s payment processing is HIPAA compliant and they will sign a BAA; however, their option for automated text messaging your clients’ receipts is not. Despite the convenience, you may wish to not use that option in order to remain HIPAA compliant.

7. Video Therapy

Video therapy is becoming increasingly common due to its ease of use and commuter time. Several companies provide free or low-cost video conferencing options, such as doxy.me and vsee.com. Note that the two major video service providers, Skype and FaceTime, are not HIPAA compliant. Although these companies use some of the correct technical safeguards, both Microsoft and Apple will not sign a BAA for their services and therefore it is not HIPAA compliant to use either one for remote therapy sessions.

 

3 Steps You Can Take Today

 

1. Strict Password

Secure your mobile device with a password to prevent unauthorized access and hide message previews from appearing on your phone’s lock screen.

2. Remote Wipe

After backing up your data, enable the remote wipe function on all your devices in case they are lost or stolen. Consider getting a separate mobile device for professional use, as some apps installed on your personal phone may not be compliant.

3. Breathe!

Breathe! You are not alone if you realized you are not fully HIPAA compliant.Start where you are, and begin to make a shift.

 

These tools are just the tip of the iceberg when it comes to the daily tasks of a therapist. To learn more about HIPAA and how it relates to your practice check out my HIPAA Guide.

 

More About Zencare:

Zencare is the simplest way to find your ideal therapist.

Browse therapist videos and book a free phone call to find a great fit!

We’re on a mission to improve the therapist search process. There are numerous barriers to finding a great therapist: lack of quality assurance, outdated information, uncertainty of personality fit, and phone tag.

Zencare removes the guesswork to ensure you have a personalized, smooth, and comforting experience. All clinicians are vetted by our team so you receive the highest quality care. We’re currently in Rhode Island and Massachusetts, and expanding to New York and Connecticut.

Are you a therapist? Learn more here.

 

Share

You also might be interested in

Practical HIPAA

Practical HIPAA

May 3, 2021

What is Your Why?

What is Your Why?

Mar 30, 2018

Your Why What is your why? What brought you here?[...]

Dog Days of Summer

Dog Days of Summer

Aug 3, 2018

The “dog days” of summer are here. I always assumed the[...]

Get started with a FREE Entrepreneur's Checklist! Download Now

Subscribe to our Mailing List

Lean Towards Joy ™

Contributors

Free Checklist

Join Mailing List

Request a Workshop

Consulting Rates

Contact Us

Referral Program

General Questions

Write a Testimonial

Privacy Policy

Terms of Service

© 2025 Lean Towards Joy LLC

Prev Next
We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
Cookie SettingsAccept All
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT