VanRein Compliance Podcast
Rob & Dawn Van Buskirk
0
This podcast covers compliance and data security topics such as SOC2, ISO27001, HIPAA, GDPR, CPRA, NYShield, Texas HB300, and HiTRUST. The hosts, Rob and Dawn Van Buskirk, share insights on reducing business risk and securing the future of your company. They also discuss family business and personal stories, making it more than just a business podcast.
Jaksot
-
Lead with Confidence: HIPAA, AI & Knowing Who Owns What 16.09.2026 14minSend us Fan Mail HIPAA compliance has a way of becoming your job without asking permission, and that’s when panic usually sets in. We take a different angle: confidence isn’t perfection and it definitely isn’t memorizing regulations. For us, confidence comes from clarity you can prove later, knowing who owns decisions, what got approved, and how to show evidence six months from now when an auditor or customer asks. We dig into the places where compliance programs get shaky fast: vendor... -
HHS Just Told Us What’s Coming — Are You Ready? 09.09.2026 26minSend us Fan Mail We distill the biggest takeaways from the HHS NIST annual cybersecurity conference into clear actions for healthcare leaders who need to stay HIPAA compliant without getting buried. We connect breach trends, OCR enforcement priorities, ransomware realities, and AI governance into one practical roadmap for reducing risk and protecting patient care. • healthcare breach trends and why hacking plus email and servers dominate • why HIPAA compliance must include MFA, ac... -
What We're Listening for at this Week's HHS + NIST HIPAA Security Conference 02.09.2026 20minSend us Fan Mail A major HIPAA reset is brewing, and the timing couldn’t be more urgent. We’re headed to the HHS, OCR, and NIST Safeguarding Health Information conference to hear directly from the people shaping what “good” looks like for HIPAA Security Rule compliance in 2026 and beyond, and we’re sharing exactly what we’re listening for. We talk through the likely headline items: OCR updates after a long gap, a stronger push toward risk analysis that behaves like a real audit, and the patt... -
The Compliance Landscape: 26 Years of Change 26.08.2026 30minSend us Fan Mail The compliance landscape has changed more in the last 26 years than most leaders want to admit and somehow the basics still win. We connect the dots between real-world HIPAA enforcement and what actually holds up when something goes wrong: evidence. Not a binder. Not a trust center page. Proof that you know your systems, control access, manage vendors, and can recover fast. We start with the HIPAA Security Rule and why its administrative, physical, and technical safeguards s... -
26 Years: Life, Leadership & Legacy 19.08.2026 29minSend us Fan Mail Twenty-six years goes fast when you’re building a life, not just chasing wins. Rob and Don celebrate their anniversary by getting honest about what actually holds up over decades: setbacks you didn’t plan for, career pivots you didn’t want, and the daily choice to keep moving forward without keeping score. We trace the through-line from marriage to leadership to business, including why “legacy” has nothing to do with leaving a pile of stuff behind. For us, legacy means the v... -
18 Years to Get Ready: What Sending Our Son to College Taught Us About Leadership 12.08.2026 20minSend us Fan Mail Sending our son off to college makes leadership feel personal, and it forces us to practice trust instead of control. We connect parenting, team management, and compliance by focusing on guardrails, good judgment, and the freedom to fail forward. • Watching an 18-year-old build independence through deadlines, decisions, and preparation • Seeing what kids learn from what we model, not just what we say • Letting go to grow, at home and at work • Giving ... -
Why We Built Two New HIPAA Certifications 05.08.2026 36minSend us Fan Mail Two new HIPAA certifications are launching, and we built them for one reason: most “HIPAA training” proves attendance, not capability. We see smart, capable people get handed the compliance binder and suddenly they are the privacy officer, security lead, or HIPAA compliance officer with real legal and operational responsibility. That is a risky place to be for you and for your organization, especially when auditors expect evidence, not intentions. We walk through our n... -
Why We Built VRC1 OS: The Operating System for Compliance 17.06.2026 15minSend us Fan Mail We’re launching VRC1 OS, our compliance operating system built to bring structure, clarity, and real visibility to programs that have become scattered across tools, email, and spreadsheets. We explain why compliance has to run like a business function, how AI can reduce friction without replacing judgment, and what growing teams should expect when they stop chasing audits and start operating compliance. • why compliance feels fragmented across policies, training, eviden... -
Founder-Led Compliance for Founder-Led Companies 04.06.2026 15minSend us Fan Mail We talk about why founder-led and family-owned companies need to treat compliance as protection for trust, reputation, and long-term growth. We share the most common gaps we see as teams scale and how to build simple ownership so you stay audit ready without getting overwhelmed. • why founder-led compliance feels personal and why reputation matters • compliance as protection for clients, payroll, and the business foundation • how client questionnaires and ce... -
Your GRC Platform is Fake. Here’s What Actually Builds Trust 06.05.2026 11minSend us Fan Mail The “trust center” trend is getting weird fast. If your security page is a glowing badge, a wall of green checks, or a portal that forces buyers into an access request black hole, we think you’re signaling the wrong thing and losing deals you should be winning. We break down why traditional GRC tooling often turns into compliance theater: lots of workflows and mapped controls, but very little proof when a customer asks for the last risk analysis, a HIPAA audit artifact, a SO... -
AI Boom: Navigating the Compliance Minefield 29.04.2026 21minSend us Fan Mail AI is already inside your business, and the uncomfortable truth is you might not even know where. Copilot in Microsoft, Gemini in Google, bots layered on top of bots, and “quick tests” in personal accounts all create real compliance risk the moment sensitive data enters the mix. At the same time, regulation is tightening fast, which means the gap between how teams use AI and what auditors expect is getting more dangerous by the week. We walk through what’s changing globally ... -
AI + HIPAA: What Actually Matters (And What Doesn’t) 15.04.2026 16minSend us Fan Mail AI is already inside your healthcare workflows, your vendors, your phones, and your inbox. The hard part is not getting access to the tools. The hard part is using AI without quietly leaking PHI and waking up to a HIPAA breach you never saw coming. We break down the question most teams ask the wrong way: “Is AI HIPAA compliant?” HIPAA wasn’t written for large language models, but the law still applies, and the responsibility still lands on you. We walk through how AI fits in... -
Compliance Isn’t Enough Anymore—So We Built This 08.04.2026 17minSend us Fan Mail We launch new penetration testing and vulnerability scanning services and explain why passing audits still leaves hidden security risk. We lay out a practical testing cadence, how it maps to HIPAA, SOC 2, and ISO, and how proactive validation builds trust with clients before an attacker forces the lesson. • compliance versus security, why policies do not stop attacks • why 2026 attackers scan and exploit automatically • vulnerability scanning as continuous m... -
How Family Businesses Build Legacy And Trust 01.04.2026 32minSend us Fan Mail Most people say they want a legacy. Then they run their business like it only needs to survive the next quarter. Rob and Dawn come back from the NAEO conference in San Antonio with a clear question for every owner: are you building something that lasts, or something that just pays? We talk about what it looks like when a company actually makes it to 50 years, using Mtelco’s anniversary as a real-world case study. That opens up the bigger conversation around family business, ... -
May 2026 HIPAA Changes: What Every Organization Must Do Now 11.03.2026 18minSend us Fan Mail We break down the largest HIPAA Security Rule update in 15 years and explain what it demands from healthcare, SaaS, and telehealth teams. Clear requirements replace ambiguity with MFA everywhere, stronger encryption, real testing, faster recovery, and rapid partner notices. • why HIPAA must modernize for cloud, AI and telehealth • how ransomware pressure shapes stricter controls • asset and data inventory as the foundation • MFA as a universal, required control • encryption ... -
Unlocking ISO Compliance with David Forman Founder of Mastermind Assurance 04.03.2026 45minSend us Fan Mail We sit down with ISO auditor David Foreman to demystify ISO 27001, compare it with SOC 2, and unpack what auditors actually look for. We cover real breaches, the limits of compliance tools, the rise of 27701 and 42001, and how to win leadership buy-in. • what an ISO certification body does and how audits work • ISO 27001 governance plus controls vs SOC 2 opinions • readiness and internal audit roles vs external certification • why breaches accelerate third-party assurance de... -
From Human Oversight To ISO 42001 And NIST: Building A Safer AI Program 25.02.2026 24minSend us Fan Mail Thank You for Listening to the VRC Podcast! Visit us at VanRein Compliance You can Book a 15min Call with a Guide Follow us on LinkedIn Follow us on X Follow us on Facebook -
The AI Governance Playbook with Bennie Cleveland 18.02.2026 32minSend us Fan Mail We sit down with auditor and risk leader Bennie Cleveland to unpack how to make AI defensible in the real world. We cover governance, healthcare and privacy frameworks, modern attack patterns, and the playbooks that separate confident teams from lucky ones. • defining AI ownership, approvals, data scope, monitoring and explainability • building an AI inventory and supplier risk register • mapping to NIST CSF, HIPAA, GDPR, SEC expectations • deepfakes and social engineering e... -
AI: Beyond Policies and Governance with Dr. Camille Howard 11.02.2026 38minSend us Fan Mail Thank You for Listening to the VRC Podcast! Visit us at VanRein Compliance You can Book a 15min Call with a Guide Follow us on LinkedIn Follow us on X Follow us on Facebook -
Tabletops, AI Governance And Real Resilience 04.02.2026 19minSend us Fan Mail We roll out two new services—tabletop exercises and AI and automation governance—and dig deep into why tabletop drills prove readiness, resilience, and audit defensibility. From foundational policy walk‑throughs to enterprise war rooms, we map maturity levels and show how to turn SOPs into real action. • what auditors expect from tabletop evidence • foundational awareness, roles and policy validation • ops drills that test detect, contain and recover • exec...
Suosittu maassa
Tämä podcast esiintyy myös näiden maiden podcast-listoilla.