The HR-HIPAA Connection: Protecting People and Privacy

Access this expert-led webinar instantly, available anytime on-demand.

Included in All-Access Membership
Live Webinar - no upcoming date
Customer Satisfaction Guarantee Learn with confidence. If you're not happy, we'll make it right. That's our guarantee.

Purchase Options

Select an attendee quantity to add to cart.

Recorded Webinar Only

$219.00
or

All Access Membership

The Aurora All Access Membership is designed to provide you with the training that you want when you want it. You will have 100% access to every live webinar, on demand webinar, professional alert, and podcast that Aurora Training Advantage offers with no additional cost.

Learn More About Our All Access Membership
$599.00
All Access Membership

In the modern workplace, the convergence of Human Resources (HR) management and HIPAA regulations is more critical than ever. With the increasing responsibility of HR professionals to manage sensitive employee data, understanding healthcare privacy laws is not just a legal necessity—it's a professional imperative.

This session will dive deep into key HR functions, the essentials of HIPAA compliance, and real-world best practices that protect both people and privacy. Participants will actively engage with interactive case studies that challenge them to apply their knowledge in realistic scenarios. Whether you're an HR professional or a healthcare administrator, this training will strengthen your ability to stay compliant, protect confidential information, and support your organization’s integrity.

Topics Covered:
  • Core HR responsibilities and their connection to HIPAA
  • Overview of HIPAA Privacy and Security Rules
  • Common compliance pitfalls in HR departments
  • Practical application through interactive case studies
Your Benefits for Attending:
  • Gain clarity on how essential HR functions are directly impacted by HIPAA regulations.
  • Learn foundational HIPAA principles relevant to HR operations and employee data handling.
  • Discover practical strategies and best practices to maintain organizational compliance.
  • Participate in interactive case studies to reinforce your understanding with real-life examples.
  • Enhance your confidence in navigating privacy-related challenges within your HR role.

This webinar offers tangible insights to help you protect your organization and your employees. You’ll leave with actionable knowledge that supports both professional growth and compliance success.

Who Should Attend:
HR professionals, healthcare administrators, compliance officers, and anyone responsible for managing employee health information.

  • Katie Reynolds

HRCI Credit

Human Resource Certification Institute
Browse HRCI-approved webinars and earn recertification credits online. Live and on-demand HR training for PHR, SPHR, and GPHR recertification. Expert-led sessions from Aurora Training Advantage.

SHRM Credit

Society for Human Resource Management
Aurora Training Advantage is recognized by SHRM to offer Professional Development Credits (PDCs) for the SHRM-CPSM or SHRM-SCPSM. For more information about certification or recertification, please visit www.shrmcertification.org.

ATAHR Credit

Aurora Training Advantage is offering continuing education points designed to recognize dedication to training and excellence in human resources.

Customer Satisfaction Guarantee
Invest in your future with confidence! Our Customer Satisfaction Guarantee eliminates all risk, letting you focus purely on mastering new skills and advancing your career. If you're not completely satisfied, we'll ensure you are. Your satisfaction is not just a promise; it's our guarantee.

Frequently Asked Questions

HIPAA's application in HR settings is often misunderstood, but it has direct implications for how HR professionals handle employee medical information. While HIPAA primarily governs healthcare providers and insurers, employer-sponsored group health plans are covered entities, meaning HR staff who administer these plans must comply with HIPAA's privacy and security requirements. Additionally, when employees provide medical documentation for FMLA leave, ADA accommodations, or return-to-work clearances, HR has strict obligations to maintain confidentiality—keeping medical records separate from general personnel files and limiting disclosure to those with a legitimate need to know. The intersection of HIPAA, ADA, FMLA, and state privacy laws creates a complex compliance landscape for HR teams. Katie Reynolds, an employment attorney, navigates all of these dimensions in Aurora Training Advantage's The HR-HIPAA Connection webinar, helping HR professionals understand exactly where their obligations begin and end.
HR departments face several recurring HIPAA compliance pitfalls that can expose organizations to regulatory penalties and employee trust violations. The most common include: storing employee medical information in the same file as general personnel records rather than in separate, secured files; sharing health-related employee information with supervisors or colleagues who do not have a business need to know; failing to implement proper access controls on electronic systems that contain health plan data; inadequate training for HR staff on confidentiality obligations; and mishandling requests for medical documentation in ways that inadvertently elicit more health information than legally necessary. Electronic communication—emailing medical documents without encryption, for instance—is another frequent vulnerability. Katie Reynolds, drawing on her employment law expertise, addresses these pitfalls in depth in Aurora Training Advantage's The HR-HIPAA Connection webinar, providing HR professionals with practical strategies to close compliance gaps.
HIPAA's Privacy Rule establishes standards for protecting the confidentiality of individually identifiable health information, known as Protected Health Information (PHI), regardless of its format—paper, electronic, or oral. It governs who can access PHI, how it can be used, and when it can be disclosed. The Security Rule applies specifically to electronic PHI (ePHI) and requires covered entities and their business associates to implement administrative, physical, and technical safeguards to protect it from unauthorized access, alteration, or destruction. For HR professionals, the Privacy Rule governs how they handle employee health documents, wellness program data, and health plan information they access. The Security Rule applies when this data is stored or transmitted electronically. Both rules require HR teams to operate with strict access controls and documented procedures. Aurora Training Advantage's The HR-HIPAA Connection webinar, led by employment attorney Katie Reynolds, clarifies how both rules apply to everyday HR functions.
Proper handling of employee medical records requires HR departments to follow a set of clear, legally defensible practices. Medical records must be stored separately from general personnel files in secured, access-controlled locations—both physical and electronic. Access should be strictly limited to authorized HR personnel and, where legally required, to specific individuals with a business need to know such as safety officers or workers' compensation administrators. Medical information should never be disclosed to supervisors or managers unless directly relevant to work restriction accommodations. When employees provide documentation for FMLA or ADA purposes, HR should request only the information necessary for the employment decision at hand, rather than complete medical records. Document retention schedules for medical records should comply with applicable law. Aurora Training Advantage's The HR-HIPAA Connection webinar, featuring employment attorney Katie Reynolds, provides HR teams with practical, step-by-step guidance on building and maintaining compliant medical records practices.
HIPAA violations carry serious consequences that can affect both the organization and individual employees involved in a breach. Civil monetary penalties range from $100 to $50,000 per violation depending on culpability, with annual caps reaching $1.9 million for repeated violations of the same type. In cases involving willful neglect, criminal penalties including fines and imprisonment may apply to responsible individuals. Beyond regulatory penalties, HIPAA breaches expose organizations to reputational damage, employee lawsuits, and erosion of workforce trust. Breaches affecting 500 or more individuals require notification to the HHS Office for Civil Rights and prominent media notice. For HR departments, the practical risk is significant: mishandling an employee's medical information in the context of an FMLA request or ADA accommodation process can trigger both HIPAA and disability discrimination claims simultaneously. Aurora Training Advantage's The HR-HIPAA Connection webinar helps HR professionals understand these stakes and build the practices needed to prevent costly violations.