Watch the Conversation that’s Helping IT Teams Future-Proof their Data Protection and HIPAA Compliance Strategies
Our CEO recently sat down with John Lynn, editor of Healthcare IT Today, and the conversation quickly turned to the challenges healthcare organizations face to comply with the Health Insurance Portability and Accountability Act (HIPAA), including anticipated changes to the law coming later this year or in 2026.
I have embedded the video so that you can watch the complete conversation. I’ve also summarized some of the key issues Greg and John discussed, including current and expected elements in HIPAA that a managed file transfer solution can help address, challenges healthcare organizations face with managing file transfers, and upgrades we’ve made to our Diplomat MFT solution specific to key elements that are likely to be part of the HIPAA update.
HIPAA and Proposed Changes to the Regulation
We applaud the Department of Health and Human Services (HHA) for revisiting HIPAA to clarify and strengthen the law. This is especially important for changes to rules regarding use and adoption of administrative and technical controls for safeguarding data, information supply chain security, and creating and maintaining a thorough data map.
What’s Unique About how Healthcare Organizations Manage File Transfers?
Many challenges associated with file transfers are common to any organization. Every organization must move sensitive data and business critical information to both internal and external resources. Much of that information is required to be protected under the aegis security and privacy regulations. For healthcare the stakes are raised because protected health information (PHI) is everywhere and used for many different purposes. That means helping organizations simplify the reliable and secure transfer of files through automation is of vital importance.
What is Diplomat MFT?
Diplomat MFT is software that helps customers automate and secure the exchange of files between internal and external systems and resources, including data storage, ERP systems, financial and business applications, and a broad spectrum of digital trading partners. In healthcare that includes things like patient billing and insurance, lab work, imagery and diagnostics data, pharmacies, state and federal agencies, and other entities involved in the healthcare digital supply chain. Our customers in healthcare rely on Diplomat MFT to run tens of thousands of workflows moving hundreds of thousands of files every day.
The sensitivity surrounding the collection and transfer of PHI and electronic health records (EHRs) means organizations must secure each transfer and track all associated data. Diplomat MFT makes it easy to address requirements like audit reporting, access control management, data archiving and retention, and file encryption for data at rest and files in transit. By making it easy with an intuitive interface and simple automation of complex file transfer workflows, while conforming to industry and individual standards, we help make it easy to do what is necessary rather than avoid required tasks.
How does Diplomat MFT Support HIPAA Compliance?
Diplomat MFT is not about compliance per se, but is focused on information security for files in transit and at rest. We believe complexity is antithetical to security, so any tool that helps minimize the risk of error and eliminate an incentive for people to circumvent required processes is of value. This also helps IT teams with their other responsibilities. In healthcare IT departments are often understaffed, overburdened, and beleaguered with requests to help with everything from fixing common computer problems to integrating new equipment. There are many tasks beyond those needed to keep data safe, secure, and in compliance with HIPAA. By implementing a set of features and capabilities that address certain tasks, Diplomat MFT helps relieve the burden by automating certain tasks and provide necessary documentation for compliance audits.
For example, upcoming changes to HIPAA will require that healthcare organizations have the means to assess and manage the security of their digital information supply chains through asset management and mapping. With Diplomat MFT you can run a simple report and generate a visual map of all endpoints for file transfers and create a CSV file for required documentation.
How Should Healthcare Organizations Navigate HIPAA Changes?
The expected scope and pace of change to HIPAA is astronomical, so organizations must become familiar with the changes and work with vendors that are aware of the regulation as it pertains to compliance in their respective domains. It’s not realistic to expect IT management and security staff to know everything, but it will be important for legal and compliance teams to work with IT and a network of trusted vendor partners to make sure tools and resources are available for doing what’s necessary to achieve compliance.
We strive to be numbered among those trusted partners and have invested heavily in Diplomat MFT to be a vital tool in the kit for HIPAA compliance. Our recently upgraded Diplomat MFT managed file transfer solution has new features specific to addressing expected HIPAA changes. These features include:
Built-In Compliance Tools: Simplified documentation for HIPAA updates and other regulations with SFTP audit report and digital supply chain Connection Map (visual rendering or CSV file).- Workflow Testing: Validate workflow function and security using Dry Run mode before launch to avoid errors.
- Flexible Roles & LDAP: Establish custom permissions and directory integration based on organizational needs.
We’ve also included a handy ROI calculator so users can see exactly how much time and money their organization saves when using Diplomat MFT for file transfer workflow automation.
Be sure to watch the entire conversation between Greg Hoffer and John Lynn. And reach out to us if you have any questions.
