Full course description
3 Hours
Self-Paced
Earn a Badge
Course Overview
Healthcare organizations manage some of the most sensitive data in the world. With rising cyber threats and evolving regulations, professionals must understand both the legal expectations and the real risks tied to health information.
This course gives you a practical, comprehensive overview of HIPAA, the HITECH Act and key federal and state laws that govern the use, protection and disclosure of health data. You’ll learn the differences between PHI, PII and PHR and how each is used across clinical, administrative and digital health environments.
You’ll also examine why healthcare remains a prime target for cyberattacks, explore real-world breach trends and review the safeguards organizations use to prevent and respond to data threats.
Course Features:
-
- Part of the Health Law Certificate
- 100% online and self-paced
- No LSAT or GRE required
- Expert-curated curriculum taught by legal and healthcare subject matter experts
- All course materials included
- Part of the Health Law Certificate

Who Should Enroll
This noncredit certificate is ideal for professionals in healthcare administration, law, compliance, public health, policy, HR, risk management and innovation leadership seeking legal skills in healthcare. If you make decisions that impact patient privacy, risk, compliance, contracts or innovation, this certificate gives you the legal fluency to lead responsibly.

Course Instructor
Amy Bagge-Smith, JD
Amy Bagge‑Smith, JD serves as General Counsel and Chief Privacy Officer for a digital healthcare startup focused on modernizing the delivery and exchange of health data. She specializes in healthcare regulations, privacy and security, technology transactions and compliance. Her in‑house and regulatory experience gives learners a real-world perspective on the challenges of managing privacy and security in a fast‑evolving digital health environment.

What You’ll Learn
By the end of this course, you will be able to:
-
- Outline the main components of HIPAA, including the Privacy, Security and Breach Notification Rules, and explain how the HITECH Act strengthened the law
- Define and distinguish PHI, PII and PHR and understand how each is used in healthcare
- Explain the legal uses of PHI, PII and PHR and compare state privacy laws
- Categorize cyber threats such as malware, ransomware and phishing and explain why healthcare is a leading target
- Summarize the HIPAA Security Rule and classify safeguards as administrative, technical or physical
- Analyze the current data breach landscape and interpret trends using resources such as the IBM Cost of a Data Breach Report
- Outline the main components of HIPAA, including the Privacy, Security and Breach Notification Rules, and explain how the HITECH Act strengthened the law
FAQ
What are the benefits of completing this course?
Healthcare organizations face increasing regulatory scrutiny and escalating cyber threats. Understanding HIPAA, HITECH and data security expectations helps you safeguard patients, support compliance and strengthen your organization’s defenses.
Is this course part of a certificate?
Yes. This course is one of six in the Health Law Certificate, but it can also be taken individually.
How long does it take to complete?
This self-paced course takes approximately three hours to complete, but you can move at a pace that fits your schedule.
How is the course structured?
The course is delivered fully online through short modules, real world examples and application-based learning. All materials are included with enrollment.
What is the career outlook for individuals who complete this program?
Professionals with training in healthcare law are in growing demand across hospitals, health systems, government agencies and consulting firms. Skills developed in this course support roles in compliance, regulatory affairs, healthcare administration, public health and legal consulting. This course and the Health Law Certificate provide a competitive edge in a high impact, evolving field.
Can I earn Continuing Education credits?
Creighton University is recognized by SHRM to offer Professional Development Credits (PDCs) for SHRM-CP® or SHRM-SCP® recertification activities. This program is valid for 3.0 PDCs for SHRM-CP® or SHRM-SCP® recertification.
Do I need to have a law degree to take this course?
No. A law degree is not required, and neither is standardized testing such as the LSAT or GRE. This certificate is open to professionals from a variety of backgrounds who are looking to better understand the intersection of law and healthcare.
Do you offer tuition assistance?
We do not offer tuition assistance for noncredit lifelong learning courses or certificates. However, Creighton alumni, faculty, staff and eligible partner employees, along with their spouses and dependents, may qualify for a 15% discount. One discount per offering. Other restrictions may apply. Learn more.

