Add the All-Access Pass and get this program —
plus 1,000+ live CLE programs every year.
This program + 1,000+ CLE programs, all year
Or register for just this program
Program Details
2026-06-30 13:00:00
Over 1,000+ webinars
Course Overview
2026-06-30 13:00:00
2h CLE Credits
Intermediate
2
This session examines the January 2025 HIPAA Security Rule NPRM and OCR’s accelerating enforcement against business associates and subcontractors, addressing elimination of the required versus addressable distinction, annual verification obligations, cascading vendor liability, and concrete compliance actions attorneys should prioritize while rulemaking remains unresolved.
Jennifer C. Everett
Jennifer PikeThis session examines the technical safeguards mandatory under the HIPAA Security Rule NPRM—MFA, encryption, network segmentation, least-privilege access, and penetration testing—while addressing ransomware and AI-enabled threats, connecting each mandate to risk assessments, BAA amendments, incident response, and practice development.
Alaap B. Shah
ALSTON & BIRD LLP

Alston & Bird

Epstein Becker & Green, P.C.

ALSTON & BIRD LLP
Jennifer C. Everett is a partner at Alston & Bird in Washington, D.C., where she focuses on regulatory compliance, enforcement, and transactions in data privacy, cybersecurity, health care, and emerging technologies. As a trusted adviser with over 15 years of experience, she skillfully manages data privacy, cybersecurity, and technology issues both in the U.S. and globally. Jennifer offers strategic guidance to public and private companies across several sectors, including life sciences and health technology, when navigating state, federal, and international privacy regulations, including the EU General Data Protection Regulation (GDPR), state-specific privacy laws, biometric regulations, children’s privacy, workplace privacy, the Federal Trade Commission Act, and other U.S. consumer privacy statutes. She oversees all aspects of U.S. and international data breach investigation and response, providing guidance on forensic investigations, notifications, and related regulatory inquiries. With extensive knowledge of health privacy law, Jennifer provides guidance on a variety of intricate health data matters, including those governed by HIPAA and other regulations, and she actively assists clients in creating privacy programs and mitigating risks related to technologies in digital health and AI-driven platforms. Her consumer protection practice includes counseling clients on marketing and promotional issues, including interest-based ads; automatic renewal and subscriptions; SMS text messaging and telemarketing; and other state and federal consumer protection laws.

Alston & Bird
Jennifer Pike is Counsel at Alston & Bird in the firm’s Washington, D.C. office, where she has cultivated a dynamic legal practice at the intersection of health care regulation, privacy and cybersecurity, and technology contracting. She serves as a trusted advisor for clients across the health care, technology, and life sciences sectors, supporting providers, health plans, technology vendors, and investors as they navigate the complex landscape of health care data protection and regulatory compliance. Clients rely on Jen to craft strategic and practical solutions as they address complex regulatory challenges and innovation-driven legal issues involving HIPAA-regulated health care data. She advises on health care data sharing initiatives and the integration of emerging technologies such as artificial intelligence, leads HIPAA security risk assessments, develops privacy policies, and counsels organizations on data monetization and technology adoption. Her proactive and collaborative approach helps health care clients stay ahead of regulatory changes and leverage innovation for strategic growth, while her deep experience in health care data breach response equips her to guide clients through HIPAA reporting obligations, risk assessment, notification strategies, and regulatory investigations.

Epstein Becker & Green, P.C.
Alaap B. Shah is a Member of the Firm at Epstein Becker & Green, P.C., based in the firm’s Washington, DC office. Tech-savvy and solutions-oriented, Alaap deftly guides clients through complex and ever-evolving privacy, cybersecurity, medical device, artificial intelligence (AI), interoperability, digital health, telehealth, fraud and abuse, and other laws and regulations. As a co-leader of Epstein Becker Green’s AI CrossPractice Working Group, he helps clients compliantly develop and deploy these cutting-edge technologies, enabling them to build trust among stakeholders so they can robustly collect, share, analyze, and protect data and information technology assets. Alaap’s clients include all types of health care, life sciences, data analytics, and technology companies at various stages of development, ranging from startup companies in the United States and abroad developing digital health applications, medical devices, telehealth solutions, AI, and data analytics platforms, to mid-size and large companies seeking to expand and mature legal, compliance, and risk management functions. Clients appreciate his strategic and pragmatic approach to risk management that bridges the gap among legal, compliance, IT, and business teams, and his ability to translate “IT speak” for legal, compliance, and business people.

ALSTON & BIRD LLP
Jennifer C. Everett is a partner at Alston & Bird in Washington, D.C., where she focuses on regulatory compliance, enforcement, and transactions in data privacy, cybersecurity, health care, and emerging technologies. As a trusted adviser with over 15 years of experience, she skillfully manages data privacy, cybersecurity, and technology issues both in the U.S. and globally. Jennifer offers strategic guidance to public and private companies across several sectors, including life sciences and health technology, when navigating state, federal, and international privacy regulations, including the EU General Data Protection Regulation (GDPR), state-specific privacy laws, biometric regulations, children’s privacy, workplace privacy, the Federal Trade Commission Act, and other U.S. consumer privacy statutes. She oversees all aspects of U.S. and international data breach investigation and response, providing guidance on forensic investigations, notifications, and related regulatory inquiries. With extensive knowledge of health privacy law, Jennifer provides guidance on a variety of intricate health data matters, including those governed by HIPAA and other regulations, and she actively assists clients in creating privacy programs and mitigating risks related to technologies in digital health and AI-driven platforms. Her consumer protection practice includes counseling clients on marketing and promotional issues, including interest-based ads; automatic renewal and subscriptions; SMS text messaging and telemarketing; and other state and federal consumer protection laws.

Alston & Bird
Jennifer Pike is Counsel at Alston & Bird in the firm’s Washington, D.C. office, where she has cultivated a dynamic legal practice at the intersection of health care regulation, privacy and cybersecurity, and technology contracting. She serves as a trusted advisor for clients across the health care, technology, and life sciences sectors, supporting providers, health plans, technology vendors, and investors as they navigate the complex landscape of health care data protection and regulatory compliance. Clients rely on Jen to craft strategic and practical solutions as they address complex regulatory challenges and innovation-driven legal issues involving HIPAA-regulated health care data. She advises on health care data sharing initiatives and the integration of emerging technologies such as artificial intelligence, leads HIPAA security risk assessments, develops privacy policies, and counsels organizations on data monetization and technology adoption. Her proactive and collaborative approach helps health care clients stay ahead of regulatory changes and leverage innovation for strategic growth, while her deep experience in health care data breach response equips her to guide clients through HIPAA reporting obligations, risk assessment, notification strategies, and regulatory investigations.

Epstein Becker & Green, P.C.
Alaap B. Shah is a Member of the Firm at Epstein Becker & Green, P.C., based in the firm’s Washington, DC office. Tech-savvy and solutions-oriented, Alaap deftly guides clients through complex and ever-evolving privacy, cybersecurity, medical device, artificial intelligence (AI), interoperability, digital health, telehealth, fraud and abuse, and other laws and regulations. As a co-leader of Epstein Becker Green’s AI CrossPractice Working Group, he helps clients compliantly develop and deploy these cutting-edge technologies, enabling them to build trust among stakeholders so they can robustly collect, share, analyze, and protect data and information technology assets. Alaap’s clients include all types of health care, life sciences, data analytics, and technology companies at various stages of development, ranging from startup companies in the United States and abroad developing digital health applications, medical devices, telehealth solutions, AI, and data analytics platforms, to mid-size and large companies seeking to expand and mature legal, compliance, and risk management functions. Clients appreciate his strategic and pragmatic approach to risk management that bridges the gap among legal, compliance, IT, and business teams, and his ability to translate “IT speak” for legal, compliance, and business people.
Requirements
The Alabama State Bar MCLE Commission requires attorneys to complete 12 credits, including 1 ethics, by December 31 of each year. All credits must be reported by February 15 of the following year. A maximum of 12 credits, including 1 ethics credit, may be carried over for 1 year only.
Formats