CASE STUDY

Lakeview Medical Group's path to hands-free security training

CASE STUDY

Lakeview Medical Group's path to hands-free security training

CASE STUDY

Lakeview Medical Group's path to hands-free security training

Completion transformed

Completion went from 50% to 94%. Training is 5 minutes, not 12—so clinical staff actually finish it between patients.

Admin time eliminated

I stopped sending "please complete your training" emails on day one.

Audit-ready

Admin time dropped from 6+ hours per month to zero. HIPAA audit prep went from half a day to 2 minutes.

Industry

Healthcare

Region

United States

Integrations

Microsoft 365

Teams

Employees

220

INTRO

I'm the IT Manager at a 220-person medical group—12 clinics across the region. Security awareness training isn't optional for us. As a covered entity, we're required to have a security awareness and training program for all members of our workforce, including management. That's not optional. It's HIPAA.

We'd had SAT for three years. The platform worked. But I was the one doing all the work.

CHALLENGES

Overwhelmed by choices

Our old platform had hundreds of training modules. That sounds impressive until you're the one filtering through them every month trying to figure out what to assign to clinical staff vs. front desk vs. billing. Every campaign meant scrolling through lessons, manually selecting content, setting schedules, and hoping it was "appropriate for the members of the workforce to carry out their functions"—which is what HIPAA actually requires.

Content went stale

The first year was fine. By year two, employees were seeing the same scenarios. "Didn't I already do this one?" became a regular question. Engagement dropped. Completion rates stuck around 50%. Not because people didn't care about protecting patient data—because they'd seen it all before.

Training didn't fit clinical workflows

Training took 12+ minutes. For clinical staff with 15-minute windows between patients, that's impossible. So they'd start it, get interrupted, forget, and never finish.

I'd get emails from nurses: "I don't have 12 minutes. I have patients." They weren't wrong.

Reporting didn't match what auditors needed

When our HIPAA audit came up, I needed to show documented training records for every workforce member. The platform had reports, but none of them matched what the auditor was asking for.

Here's what I actually had to do: Export training completion from one place. Export phishing simulation results from another. Export user roster from a third. Paste everything into Excel across 7+ sheets. Build a summary sheet with formulas to show compliance by department. Cross-check for gaps. Format it so it looked professional enough to hand to the auditor.

Every audit was the same scramble. And with OCR enforcement increasing, I couldn't afford gaps in documentation.

Support took days, not hours

When I had questions—especially during audit prep—I'd submit a ticket and wait. Sometimes two days. Sometimes a week. When you're trying to hit a compliance deadline, that's not acceptable. I felt like I was on my own.

Pricing kept creeping up

Every year, something new. Want to add a training module? Extra charge. Want phishing simulations for a new department? Extra charge. The licensing model nickel-and-dimed us. I never knew what the final bill would look like until renewal.

Our renewal was 90 days out. I couldn't cancel—we need SAT for HIPAA and insurance. But I started looking for something that didn't require me to be the managed service, didn't surprise me with fees, and actually responded when I needed help.

SOLUTIONS

Setup took 10 minutes

Not hours. Connect Microsoft 365, users sync automatically. I didn't select content from a massive library. I didn't manually assign different training to clinical vs. admin staff. I just turned it on.

No content overwhelm

Curated workshops that meet our compliance needs—not hundreds of modules I have to filter through. The content rotates automatically. Fresh scenarios. No repeats. No more "I've already seen this" complaints from staff.

Training that fits clinical workflows

5 minutes. Text-based. Staff can finish it between patients or during a quick break. No more "I don't have 12 minutes" emails.

Runs in the background

Once set up, it just runs. Reminders go out automatically through Teams and email. When someone's behind, their manager gets notified directly. I set it up once and now I just review results.

Audit-ready reports

One click: "Audit Export." Documented training for all workforce members—formatted for HIPAA compliance and our insurance carrier. No more Excel gymnastics.

Support that actually responds

I had a question during setup. Got a response same day. Had another question before our audit. Same day. That alone was worth the switch.

One price, everything included

Training, phishing simulations, reporting—all included. No per-module charges. No surprise fees. I know exactly what I'm paying.

I shared it with a few nurses before rolling out. Their feedback: "That was quick." In healthcare IT, that's a standing ovation.

The platform worked. But I was the one doing all the work. Now, I can show HIPAA auditors proof in 2 minutes instead of half a day.

The platform worked. But I was the one doing all the work. Now, I can show HIPAA auditors proof in 2 minutes instead of half a day.

Dana

IT Director

RESULTS

After 90 days:
Completion rate: 50% → 94%

Training is 5 minutes. Clinical staff finish it between patients. No more "I don't have time" excuses.

Admin time: 6+ hours/month → 0

Reminders go out automatically. Managers get notified when their team is behind. I don't chase anyone.

Setup: 10 minutes (vs. hours before)

Connect Microsoft 365, users sync, training starts. That's it.

Employee complaints: Zero

Not one "why do I have to do this" email. Not one "I already did this" complaint. Staff actually said it was quick.

Content stays fresh

Rotating workshops. New scenarios. No repetition fatigue.

HIPAA audit: 2 minutes

Documented training for all workforce members. One click. Auditor got what they needed.

Cyber insurance: No issues

Sent the compliance report to our carrier. Questions answered. Renewal approved.

Support: Same-day responses

When I have a question, I get an answer. Not two days later. Not a week later. Same day.

No surprise fees

One price. Everything included. Budget stays predictable.

PHI is safer

94% of our workforce can now recognize phishing. That's 94% less likely to click something that compromises patient data.

INTRO

I had done the math. My "managed" security awareness training wasn't managed at all. My previous platform promised "set it and forget it." In practice, it was "set it and forget it, mostly"—and "mostly" meant 7+ hours a month I didn't have.

Always automated. Nothing to manage.

Leave Training & Simulated Phishing to us.

Always automated. Nothing to manage.

Leave Training & Simulated Phishing to us.

© 2026 Kinds Security Inc. All rights reserved.

© 2026 Kinds Security Inc. All rights reserved.

© 2026 Kinds Security Inc. All rights reserved.