This document provides an overview of key aspects of HIPAA compliance for practice managers. It discusses the purpose and objectives of HIPAA privacy and security rules, protected health information, covered entities and business associates. It also summarizes the 2013 Omnibus Rule changes around disclosures, patient rights and business associates. Modifications to the Notice of Privacy Practices are outlined. Breach notification requirements for unsecured protected health information are summarized in 3 sentences or less.