Why National Cybersecurity Awareness Month Matters

In 2004, the Department of Homeland Security (DHS) declared the month of October National Cybersecurity Awareness Month. At this time: Apple’s iPhone was three years away from being released Google had just become a public company The majority of healthcare information still sat in file drawers. More than most, DHS was acutely aware that we […]
Cybersecurity Resolutions: Focus on the Fundamentals

2018 is here. While many of us are a couple of weeks into our New Year’s resolutions, some may have already broken them, or are waiting for “tomorrow” to start them. Some resolutions remain the same and some are filled with new ambitions. Regardless, the only way to keep things moving forward is to start. […]
Can We Overcome Human Error in Cybersecurity?

In the wisdom of Alexander Pope, “To err is human, to forgive, divine.” But if the English poet was a CIO or CISO for a hospital today, he’d be sorely tested by any employee who falls victim to a phishing attack. Regulations require employee training to prevent phishing attacks, as well as sanction policies for […]
Why Interoperability Makes Pen Testing Even More Important

Healthcare organizations within every medical specialty continue to expand, making interoperability a top priority for physicians, providers, and patients. As healthcare facilities’ IT systems and digital infrastructures grow, interoperability enables seamless care and coverage, both on an individual and community level. As a result, providers, administrators, and stakeholders find themselves working on a nearly full-time […]
Prepare Your Organization to Fight Phishing

Phishing attacks can result in ransomware or other types of malware. Read on to learn what healthcare cybersecurity teams can do to protect their organization and patient information. The human element of cyberattacks Humans are often the weakest link in the cybersecurity chain, with curiosity or inattention taking the place of vigilance and caution […]
How to Educate Multiple Generations on Security Risks and Protocols

Healthcare employees are the backbone of daily operations. When interacting with patients and handling ePHI, your employees can make or break your cybersecurity strategy. This is why cybersecurity awareness training and education should be on your priority list. But security awareness training isn’t necessarily a one-size-fits-all approach. Currently four main generations comprise the majority of […]
Take This Step to Level Up Your Cybersecurity Program

Penetration testing, or pen testing as it’s often called, is one of the fundamental building blocks for a cybersecurity program. It provides vital information about an organization’s cybersecurity posture and seeks to uncover previously undiscovered vulnerabilities. It also demonstrates the impact of previously known vulnerabilities for more accurate risk assessment. Unfortunately, according to a Ponemon […]
How to Get C-Suite Buy-In for Healthcare Cybersecurity

Giving a cybersecurity presentation to the C-suite can be a challenge for even the most experienced Chief Information Security Officer (CISO). You’re often not talking to technical people, for one thing. You might look up from your carefully crafted slides about Zero Trust or third-party risk management and see glazed eyes. Every executive at the […]
Supporting HHS’s Renewed Focus on Cybersecurity in Healthcare

At Fortified Health Security, we are encouraged by the Department of Health and Human Services’ (HHS) continued commitment to advancing cybersecurity across the healthcare sector. The proposed updates to the HIPAA Security Rule represent a significant step forward, ensuring providers adopt best-practice measures proven to protect healthcare networks against evolving cyber threats. As demonstrated by […]
The 2025 Horizon Report: Your Roadmap to Cybersecurity Resilience

The healthcare industry is under siege. As we move into 2025, the cybersecurity challenges facing hospitals, health systems, and vendors are growing more complex, more sophisticated, and more frequent. The stakes have never been higher; patient safety, operational continuity, and trust hang in the balance. Cybercriminals are evolving their strategies, leveraging advanced technologies like artificial […]