Guides
Practical, implementation-focused guides for teams building and operating HIPAA-eligible solutions on Microsoft Azure. Newest materials appear first.
Latest Guides (1–10)
- Azure Landing Zone for Healthcare WorkloadsSubscription design, networking, and identity baseline.
- BAA Checklist – What to Confirm Before PHI MovesContractual and technical prerequisites.
- Encrypting PHI at Rest and in Transit on AzureKey Vault, SSE, TLS, and customer-managed keys.
- Private Endpoints & Network Isolation PatternsKeeping traffic off the public internet.
- Logging & Audit Trail Design for HIPAAWhat to capture and how long to retain it.
- Microsoft Defender for Cloud – Healthcare ScorePrioritizing recommendations that map to HIPAA.
- Identity & Access for Clinical SystemsEntra ID, MFA, Conditional Access, and JIT.
- Backup & Disaster Recovery for PHIRPO/RTO considerations and tested restore procedures.
- Azure Policy for Continuous ComplianceDeploying and tuning the HIPAA/HITRUST initiative.
- Preparing Evidence Packages for AuditorsPractical structure for policy, config, and access reviews.
Full downloadable versions and updated editions will be published here as they become available.