Feb 20 , 2025 Session 494: Office Hours (February 20th, 2025) View Session """offsite"" sessions"account securityBAA copiesbuilt-in email contact featureclause in security manualclinical social work associationCloud Organizationconsolidate billingcontract agreementdoor codes and keysemail from GoogleemrFile explorerfirewall protectionGoogle Cloud Platform adminsGoogle filesGoogle workspaceguest networkHIPAA compliantHIPAA compliant appsIAM policiesiPlumlogin codelost/stolen computersMFA verification methodmonitoring servicesnot accepting credit cardsoffer separate BAAoffers BAAonline billingPassword Protectedpayment processingPDFspotential accessibilitypotential concernspotential patient and therapist privacy violationsprotect patient and clinician privacypsychology todayremote factory resetrenting officeSecurity Policies and Procedures Manualsegmented networksending PDFsshared business WiFiSimple PracticeSpruceTherapy DenTherapy Tribeupdate language in manualVonageWashington political climatewifi hotspot
Jan 23 , 2025 Session 490: Office Hours (January 23rd, 2025) View Session avastCo-Pilotencrypted connectionencryption softwareexternal driveHIPAA vulnerabilitiesIP addressiPlumIVPNlastpassMicrosoft EdgeMozilla VPNMullvadnon-secure communicationnon-secure communication formNordVPNopt-in optionsProtonVPNrecommended VPNsSimple Practicespecific language requirementsswitching between accountsTeletherapyThe Carrier Registrythumb driveTikTok banVPNsWashington Post article
Dec 13 , 2024 Session 485: Special Eric Ström, JD PhD LMHC Office Hours Session View Session archiving clinician informationassessment toolsclosing practicecombined income streamData Storagedictation softwaredifferent rolesEHR accessexporting datafacebookfielding questions onlinegeneral liability insuranceHIPAA considerationshipaa securehosting eventsinterjurisdictional practicelegal consentlegal consultationlegal/ethical concernslogistical questionsmaternity leaveMSOoffboarding clinicianoffers BAAParental Consentprogress and process notesreplying to questions via Facebookreverse contractor modelreview access logsROIsSaaS Reverse Contractor ModelSimple Practicesoftware expensessystem-level and record-level informationtelehealth sessionsTherapy NotesTOStyping accommodationsWashington legal case
Nov 22 , 2024 Session 482: Is it HIPAAppropriate to offer Apple Pay as a payment method for therapy services? View Session access audit logsaccess copies of ausit logsAI toolsApple PayBAABitdefenderbuilt-in security featuresEHRfull device encryptionHIPAA compliance red flagsHIPAA complianthipaajournal .comlogging in to EHRlogging in to servicesMicrosoft 365 subscriptionMicrosoft Surface laptopmodemmulti-factor authentication (MFA)Netgear Armor protectionNetgear routerphirequest audit logssecurity checklistSimple Practiceunauthorized access to PHIunlocking device
Nov 7 , 2024 Session 480: Is it safe to use the added features that came with my NordVPN subscription? View Session add-on featuresadheres to PCI-DSS standardsadvanced browsing protectionAlmaanti-malware softwareBelonglybest antivirus/virus scannerclient care coordinatorclient contact formclient onboardingclient portalcredit card processing companydestroy storage componentsdevice securitydevice security instruction centerdisposing devicesdonate old practice devicesfactory resetgeneral admin dutiesHelcimHIPAA certificationHIPAA compliantHIPAAppropriatehushmailhyperlinks to external websitesinsurance verificationMacbook AirMalwarebytes free versionno BAANord VPNNordVPNPCI Level-1 compliant service providerPCT evaluationPCT guidancePCT recommendationspractice phone WiFi connectionpractice websitesprivacy and security settingsprocess customers’ paymentsprovider directoryprovides a BAAreceive transaction informationreferring clientsschedulingsecurity considerationsSimple PracticeSquareSpaceSystem Certificates in Trust Settings changesTap-to-Pay (TTPOP)Wix
Oct 3 , 2024 Session 475: Is it recommended to turn off iCloud on work iPhone and Macbook? View Session airSlateApple KeychainBAAbusiness documentsbusiness structureco-facilitating groupsexternal hard drivegoogle driveGoogle workspaceGoogle Workspace BAAHIPAA compliantHIPAA compliant appsintake formsintakeqmigrating emailmonitoring loginsno BAAoff iCloudOutlook email addressPDFfiller.comprotect PHIrecommendationsROIsecure emailsecurity checklistSimple Practicesolo practice HIPAA manualstoring client information
Sep 12 , 2024 Session 472: Can I merge my personal password management account with my practice account? View Session accessing PHIAccommodationsantivirus softwarebest practicesbreached personal informationbusiness software servicecommunication channelscomputer virusdocumenting supervison meetingsdownloading/uploadingefficient alternativesEHR interactionEHR storagefillable clinical formsGoogle workspacehardened devicesHIPAA complianthipaa secureintake paperworkMacbook Airmerging password management accountsmicrosoft 365Microsoft One DrivepasskeysPCT recommendationsPCT Support Workbookpersonal Gmail accountPHI storageprinter and scannerScannersecurity breachsending records securelysending ROIsenior populationSimple PracticeSpruceSRfaxswitching emailstechnology inexperienced clientsthird party antivirus softwarethird party companytwo-factor authenticationvirus/malware/spyware
Mar 28 , 2024 Session 448: How do I enable my successor to be able access what they need to if I can't share my password with them? View Session addendumcontact formsGoogle FormsGoogle workspace emailHIPAA compliantlegal disclaimersluxscinon-signed BAAspassword sharingreviewing BAAssecure communicationsecure messagingSimple PracticeSprucesuccessorsTeletherapyTerms of Servicevirtual assistant
Jan 25 , 2024 Session 440: How do I store video recorded sessions in a HIPAA compliant way? View Session 500/500 fiber opticbest protocolsdisclaimersdropboxencrypted emailsencrypted folder with progress notesGoogle ChromeGoogle Workspace BAAHIPAA complianthushmailHushmail appincludes PHIiOS Data ProtectioniPlumMicrosoft Surface Pronon-encrypted laptopnon-secure communicationon-site EAP servicesonedrivesafeguarding confidentialityScannerProsecurely storing recorded sessionsSimple PracticeSpiderOak Hivetelehealth callsunstable networkvideo supervisionvsee
Nov 2 , 2023 Session 428: Is data collection the way of the future with practice management systems? View Session Charmdata collectiondoxy.meEHR practice management softwaregender inclusivehipaa securePractice Management SoftwarePracticeQSimple Practiceswitching EHRTerms of Service