Despite years of federal warnings, many HIPAA regulated organizations neglect to expand their security risk analysis very far beyond electronic health records, said ...