Industry Guides
Compliance mapped to your context.
The rules are the same, but the operational reality changes by industry.
Reviewed August 2026
Available guidance
- HIPAA for Hospitals
A systems view of privacy, security, continuity, workforce, and vendor risk in complex care environments.
- HIPAA for Physician Practices
Right-sized HIPAA guidance for practices balancing patient rights, workforce access, billing, and technology vendors.
- HIPAA for Dental Practices
Practical privacy and security considerations for dental records, imaging, scheduling, billing, and vendors.
- HIPAA for Pharmacies
A focused starting point for dispensing, counseling, payment, delivery, workforce, and third-party pharmacy workflows.
- HIPAA for Laboratories
Guidance for specimen, result, interface, referral, and vendor data flows in laboratory environments.
- HIPAA for Behavioral Health
A careful starting point for sensitive records, patient rights, workforce access, and layered legal analysis.
- HIPAA for Telehealth
Evaluate telehealth platforms, devices, communications, vendors, and patient workflows without assuming a platform label settles the question.
- HIPAA for Healthcare SaaS
A product and operations framework for SaaS providers that may create, receive, maintain, or transmit PHI.
- HIPAA for Healthcare Startups
A practical foundation for startups deciding scope, roles, vendors, evidence, and security before growth makes changes expensive.
- HIPAA for Medical Billing
Connect minimum necessary access, claims workflows, vendors, workforce training, and incident response in billing operations.
- HIPAA for Cloud Providers
What cloud providers and customers should clarify about services, shared responsibility, contracts, and evidence.
- HIPAA for AI Companies
A governance and product-risk starting point for AI companies that may process PHI in models, prompts, outputs, or telemetry.