Skip to content
Interdisciplinary CurriculumCurriculum

Your learning stays with you.

Purchase Terms

© 2026 Commensurate Ventures. All rights reserved.

Interdisciplinary CurriculumCurriculum
Back to HIPAA Compliance & Patient Data Security
Curriculum Map

HIPAA Compliance & Patient Data Security

Complete HIPAA training covering the Privacy Rule, Security Rule, breach notification, business associate requirements, patient rights, OCR enforcement, and emerging issues in telehealth, cloud services, and health apps.

8 Units
Early Units (Foundation)
Building Skills
Advanced Concepts
Capstone/Synthesis
1

HIPAA Privacy Rule: Covered Entities, PHI, and Minimum Necessary

Establishes the foundational framework of the HIPAA Privacy Rule, including covered entity definitions, PHI scope, and the minimum necessary principle.

20 minutes
2

Permitted Uses and Disclosures: Treatment, Payment, Operations, and Authorizations

Analyzes the Privacy Rule's framework for permitted uses and disclosures, including TPO exceptions, required disclosures, and authorization requirements.

20 minutes
3

Security Rule: Administrative, Physical, and Technical Safeguards

Examines the Security Rule's framework for protecting electronic PHI through administrative, physical, and technical safeguards and the required risk assessment process.

20 minutes
4

Breach Notification: Definition, Risk Assessment, Timeline, and Penalties

Analyzes the Breach Notification Rule's requirements for identifying breaches, conducting risk assessments, notifying affected parties, and understanding enforcement penalties.

20 minutes
5

Business Associate Agreements and Vendor Management

Examines business associate relationships, required BAA provisions, vendor due diligence, subcontractor requirements, and covered entity oversight obligations.

20 minutes
6

Patient Rights: Access, Amendment, Accounting, Restrictions, and Confidential Communications

Examines the five categories of individual rights under the Privacy Rule, including implementation requirements, timelines, permitted denials, and enforcement trends.

20 minutes
7

HIPAA Enforcement: OCR Investigation Process, Civil Penalties, Criminal Penalties, and Case Studies

Examines OCR's enforcement authority, investigation procedures, penalty methodology, criminal prosecution mechanisms, and case studies illustrating enforcement trends.

20 minutes
8

Emerging Issues: Telehealth Privacy, Cloud Services, Health Apps, Wearables, and AI

Examines HIPAA compliance challenges posed by telehealth, cloud computing, consumer health apps, wearable devices, and artificial intelligence in healthcare.

20 minutes

Learning Progression

This course is designed to be taken sequentially. Earlier units establish foundational concepts that later units build upon. While you can explore units in any order, following the numbered sequence provides the most coherent learning experience.