HIPAA Security Rule Changes: January 2026 Update & What Practices Need to Know

HIPAA Security Rule updates are moving forward — but slowly, deliberately, and with far less disruption for mental health practices than much of the current chatter suggests. This article breaks down what’s actually happening, why it matters, and how to stay grounded and well-positioned without panic or performative compliance.

Episode 603: HIPAA Security Rule Changes: January 2026 Update & What Practices Need to Know

In our latest episode, we have an update (and are once again offering reassurance) around the proposed HIPAA Security Rule changes.

We discuss:

The proposed Security Rule update on the OCR’s spring regulatory agenda
Why you’re already in good hands if you’re following PCT’s advice
Some of the proposed changes that will impact therapy practices
Reassurance about these proposed changes
Effective dates versus compliance date
Forecasting scenarios for these changes to take effect
Steps to take now (and important things to not do now) to be proactive rather than reactive

v2.10.0

Scheduled Maintenance

We will be temporarily taking the website offline at 10:00 PM Pacific (1:00 AM Eastern) tonight, July 6, in order to make some improvements. We plan to be back online by midnight Pacific (3:00 AM Eastern). We apologize for any inconvenience this may cause. Dismiss