
The Leadership in Healthcare Cyber Risk Management professional education program is designed to equip healthcare professionals with essential knowledge and leadership skills in healthcare cybersecurity. Comprised of six, four-week microcredential courses, this innovative, online program teaches both current knowledge and real-world, practical applications to manage healthcare cyber risks in the United States. Individual courses, or all six courses, can be taken in any order within a flexible two-year timeframe.
This professional education program, taught by recognized healthcare cybersecurity experts from around the nation, has been developed for experienced healthcare professionals in the U.S. Forward-looking content and practical applications of emerging technologies and threats, such as artificial intelligence (AI), are included in every course.
The program will prepare graduates for impactful jobs within healthcare organizations, the vendor community, governmental positions and in other medical settings. Current working healthcare professionals who participate in this program will be able to retrain, upskill, strengthen digital health competencies, enhance their professional profile and advance their careers.
Experienced professionals from a variety of healthcare or healthcare-related settings who want to enhance their careers, including:
|
Identify Cyber Risks: Healthcare Enterprise Cyber Risk Management Instructor: Bob Chaput Learn the essentials of enterprise cyber risk management and the hands-on skills necessary to conduct a security risk analysis. Comprehensive, enterprise-wide risk analyses are required by law and are a foundational step to build a cybersecurity program. |
Operationalize Security and Privacy: Putting Health Policy into Practice Instructors: David Finn, Mari Savickis and Steve Snyder This course provides a broad overview of the key policies, regulations and best practices that impact healthcare. Learners will understand how security and privacy policies, especially in the context of emerging technologies like AI, ensure the protection of sensitive patient information and operational resiliency. |
|
Manage Identity: Identity and Access Management (IAM) Instructor: Sri Bharadwaj This course teaches the basic principles, architecture and controls for IAM in healthcare. Learners will apply their knowledge to unique healthcare regulatory requirements, participate in practical demonstrations, and develop an IAM implementation plan. |
Recover: Business Continuity Planning and Disaster Recovery Instructor: David Arnold Cyber risk from human, technology and natural disasters creates patient safety risks in healthcare which can be life threatening. Build knowledge and practical skills in planning for business continuity and disaster recovery to reduce risk and develop organizational resilience. |
|
Secure Healthcare from Modern Cyber Threats: Ransomware, Extortion, and AI Instructor: Todd Felker Understand ransomware and extortion techniques targeting healthcare and early threat detection, monitoring, incident response and containment strategies. Learn to mitigate risks and use best practices for managing AI, cyber insurance, recovery and resilience. |
Protect the Internet of Medical Things (IoMT): Medical Device Security Instructors: Carter Groome, Olin Dillard and Toby Gouker Learn about basic IoMT challenges in healthcare, including how to analyze common vulnerabilities and address incidents. Gain a holistic perspective from diverse stakeholders, such as providers, vendors, medical device manufacturers, and federal regulators, about how to protect medical devices. |
Schedule for 2026 Courses |
|
|
Leadership in Healthcare Cyber Risk Management Program |
Register Anytime |
|
Course Name |
Start Dates |
|
Secure Healthcare from Modern Cyber Threats: Ransomware, Extortion and AI |
1/12/26 | 6/22/26 |
| 2/23/26 | 8/3/26 | |
|
Identify Cyber Risks: Healthcare Enterprise Cyber Risk Management |
4/6/26 | 10/26/26 |
| 5/18/26 | 9/14/26 | |
|
Operationalize Security and Privacy: Putting Health Policy into Practice |
6/29/26 |
3/30/26 |
|
Protect the Internet of Medical Things (IoMT): Medical Device Security |
8/10/26 | 5/11/26 |
Additional Information
For each four-week course, classes of 20-25 learners will complete three weeks of asynchronous instruction, and in the fourth week they will have the culminating opportunity to engage in live, online, strategic conversations with subject matter experts. To highlight professional achievements in each course, learners will complete a competency-based Capstone Project that they can apply in their organizations and share with their current leadership or future employers.
Learners in all courses will be provided with cross-cutting, All-Program Resources that will allow them to explore current healthcare cybersecurity topics such as the impact of cyber-attacks on patient safety, artificial intelligence, and more. In addition to these resources, all learners will receive a complimentary copy of Enterprise Risk Management as a Value Creator by Mr. Bob Chaput, an instructor in the program.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet. Quisque at egestas neque, rhoncus posuere mi.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Quisque at egestas neque, rhoncus posuere mi.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Quisque at egestas neque, rhoncus posuere mi.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Quisque at egestas neque, rhoncus posuere mi.
Individual courses, or all six courses, can be taken in any order. Learners who choose to take all six courses in the professional education program have two years to complete them, starting from the start date of your first course. Most individuals typically finish the Leadership in Healthcare Cyber Risk Management certificate within 6 to 12 months.
Upon successful completion of the program, you will be awarded a certificate and a digital badge in Leadership in Healthcare Cyber Risk Management. You will also receive a digital badge upon successful completion of each course in this program.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.

David Alexander Arnold Jr. is a seasoned healthcare IT executive, active duty military officer and educator with over three decades of experience. His career spans leadership roles in major health insurance companies, including Blue Cross and Blue Shield, and executive positions at firms like Fireman's Fund Insurance Company. Arnold has also served as CEO of Capsenta, a technology startup. Currently, he serves as a Captain in the Texas State Guard, focusing on IT and cybersecurity. At The University of Texas at Austin, Arnold is co-director and instructor in the Leadership in Healthcare Cyber Risk Management Certificate Program, combining his expertise in healthcare, technology and education.

Bob Chaput, author of Enterprise Cyber Risk Management as a Value Creator and Stop the Cyber Bleeding, founded Clearwater Security, a leading provider of security services, where he now serves as executive chairman. With over 40 years of experience, he advises Fortune 100 companies and government agencies. Chaput educates industry leaders through articles, presentations and webinars and holds numerous professional certifications. His work has been featured in major publications like Modern Healthcare and The Wall Street Journal and has been recognized by CyberCrime Magazine as a 2024 Cybersecurity Pundit. He is a member of the IANS Research Faculty.

Sriram Bharadwaj is a seasoned healthcare IT executive with over 25 years of experience across multiple industries. Currently serving as Chief Operating and Information Officer at Longevity Health, he also holds the position of CISO. Bharadwaj's extensive career includes leadership roles in provider organizations, health plans and consulting firms. His expertise spans cybersecurity, applications development and enterprise IT infrastructure, with a proven track record in performance improvements across various global regions. Bharadwaj has worked with integrated delivery networks, accountable care organizations, and academic medical centers. He is also a co-director and instructor in the Leadership in Healthcare Cyber Risk Management Certificate Program.

Todd Felker has 30 years of healthcare leadership. As CISO at Torrance Memorial he spent a decade building a security program. He has a proven track record of reducing organizational risk and breaking down departmental silos. As a security leader with a knack for identifying disruptive technologies, Felker was CrowdStrike’s first healthcare customer. As a healthcare executive strategist at CrowdStrike, he frequently speaks at conferences, provides threat briefings and engages with executives to review their security programs and perform platform business reviews. Felker is passionate about securing the critical infrastructure that healthcare providers are a part of and that adversaries frequently and increasingly target.

This was a fantastic experience. I can see how it would be valuable for cyber security professionals looking to expand their knowledge or skillsets into new areas and especially for practitioners looking to better understand cyber security to support their practices. The self-paced element was extremely well thought out and put together. Combine that with easy an easy-to-understand platform, pertinent content that was well delivered and an extremely valuable capstone, and I would recommend this course to anyone interested in Cyber Risk Management.

Exceeded my expectations!

What stood out to me most is how essential this knowledge is, not just for compliance or IT teams, but for every role in a healthcare organization that touches data or systems. Cyber risk management shouldn’t be siloed. If healthcare is going to keep up with evolving threats, we need a legion of trained professionals who all speak the same language when it comes to risk. This course is a critical first step toward building that culture.

Great experience and learning!
Steve Snyder, Mari Savickis, and David Finn comprise an expert trio that combines legal, policy and technical expertise to offer a comprehensive view of healthcare cybersecurity. Snyder's legal and engineering background, Savickis' policy advocacy experience and Finn's decades of IT leadership create a well-rounded perspective. Together, they equip students to navigate the complex landscape of healthcare cybersecurity, from compliance to implementation.
James Sonderegger, Pandian Gnanaprakasam and Wes Wright combine expertise in educational technology, networking and healthcare IT. Sonderegger's learning management experience, Gnanaprakasam's engineering leadership and Wright's healthcare CTO background provide helpful insight into the field. This trio offers students a unique blend of technical knowledge and practical healthcare IT experience, preparing them to address complex cybersecurity challenges.
Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Quisque at egestas neque, rhoncus posuere mi.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed sit amet finibus nulla. Integer a ligula viverra, dapibus mi eu, volutpat purus. Praesent posuere et risus nec bibendum. Curabitur quam nibh, maximus lobortis tortor ac, congue pulvinar augue. Pellentesque pretium mauris eget imperdiet laoreet.
There are two options for students to choose when they enroll.
Bundle Pricing: We recommend purchasing the full program of six courses to receive the best discount possible. By prepaying, you will lock in your tuition price of $3,795 and save up to 15% off the total cost of the program.
Pay As You Go: However, if you prefer to purchase courses individually, you can pay as you go. You can register for individual courses, at $745/each, through their respective course pages. The total cost of the program if purchasing courses individually is $4,470.