Can I create a new Outlook account that is HIPPA compliant?

Lauren Bailey 40 Reputation points
2025-12-05T16:38:28.6066667+00:00

I currently have an Outlook account for my one job, however I need to create another Outlook 365 email account that is HIPPA compliant. This is for a new business. How do I do this? Thank you!

Microsoft 365 and Office | Microsoft 365 Defender | For home | Windows
0 comments No comments
{count} votes

Answer accepted by question author
  1. Rez 12,075 Reputation points Independent Advisor
    2025-12-05T17:13:36.78+00:00

    Hi Lauren, great question. Outlook by itself isn’t automatically HIPAA compliant, but Microsoft 365 can be configured to meet HIPAA requirements. The key is that compliance depends on the plan and settings, not just creating a new email address. You’ll need a Microsoft 365 Business or Enterprise plan that includes security and compliance features, and you must sign a Business Associate Agreement (BAA) with Microsoft. After that, you’ll want to enable encryption, multi-factor authentication, and data loss prevention policies to protect PHI.

    Can you confirm if you already have a Microsoft 365 subscription for the new business or if you’re starting from scratch?

    Best,

    Rez


Answer accepted by question author
  1. Q&A Assist
    2025-12-05T16:38:37.59+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    To create a new Outlook 365 email account that is HIPAA compliant, you will need to ensure that you are using a Microsoft 365 plan that is specifically designed for compliance with HIPAA regulations. Microsoft 365 offers various plans that can be configured to meet HIPAA requirements, such as the Microsoft 365 Business plans or Enterprise plans that include appropriate security and compliance features.

    Here are the steps you can follow:

    1. Choose the Right Plan: Select a Microsoft 365 plan that offers HIPAA compliance. Plans like Microsoft 365 Business Premium or Enterprise E3/E5 are typically suitable.
    2. Sign a Business Associate Agreement (BAA): Microsoft requires customers to sign a BAA to ensure compliance with HIPAA. This agreement outlines how Microsoft will handle protected health information (PHI).
    3. Set Up Your Account: Once you have selected your plan and signed the BAA, you can create your new Outlook account through the Microsoft 365 admin center.
    4. Configure Security Settings: Ensure that you configure the necessary security settings to protect PHI, such as enabling encryption, setting up multi-factor authentication, and managing user permissions.
    5. Train Your Staff: Make sure that anyone who will be using the account is trained on HIPAA compliance and understands how to handle PHI securely.

    By following these steps, you can create an Outlook account that meets HIPAA compliance requirements for your new business.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.