HIPAA Risk Analysis: 7 Key Considerations for Healthcare

The HIPAA Security Rule mandates that healthcare organizations must have the appropriate technical, administrative, and physical safeguards in place to protect the integrity, security, and confidentiality of electronically stored health data against a data breach or cyber attack. To remain compliant with HIPAA regulations, healthcare organizations must conduct an annual risk analysis. However, each year […]

A Security Checklist for Healthcare Organizations

Cyber attacks and data breaches are on the rise in virtually every industry that utilizes and stores sensitive information to power its operations. However, the healthcare vertical is often particularly vulnerable to a network security lapse, often finding their data loss prevention efforts powerless against the increasingly sophisticated and complex cybercriminal terrain. Additionally, many healthcare […]

Who (And What) Should Have Access to Your Network?

Preventing a data breach or network security lapse is a top priority for healthcare organizations worldwide. The very nature of the devices and data transmitted across every internal system, coupled with a typically (and often, alarmingly) low number of cybersecurity resources makes healthcare environments exceptionally vulnerable to a cyber attack. A recent HIMSS survey of […]

Is Your Organization in Danger of a Security Breach?

Network security and cyber attacks continue to plague healthcare organizations of every size and scope across the US. A recently report, released by the Office for Civil Rights (OCR), showed that over 15 million patient records were compromised in 2018 – a number that’s only expected to grow with the surge of connected medical devices, […]

6 Recommendations to Enhance Healthcare Cybersecurity

Cyber attacks are a regular occurrence throughout the healthcare industry. Unfortunately, not only are data and network security compromises common, they are also costly. A cyberattack can cost the organization $1.4 million in recovery expenses alone on average, including loss of productivity, service disruption, and irreparable reputation damage for medical provider.  Cybercriminals often target the […]

Benefits of Continuous HIPAA Analysis

The HIPAA Security Rule Administrative Safeguards includes requirements that covered entities “implement policies and procedures to prevent, detect, contain and correct security violations.” This standard requires both Risk Analysis and Risk Management.  The Risk Analysis implementation specification requires covered entities to “conduct an accurate and thorough assessment of the potential risks and vulnerabilities to the […]

HIPAA Changes Regarding COVID-19

In light of the COVID-19 pandemic, the Department of Health and Human Services (HHS) and the Office of Civil Rights (OCR) have issued a Limited Waiver of HIPAA Sanctions and Penalties. While HIPAA regulations and protected health information (PHI) protections are still in place, it’s important that healthcare facilities understand what protocols the limited waiver […]

Is Electronic Protected Health Information (ePHI) Getting Outside Your Healthcare Organization?

Under HIPAA regulations, health information or data that can be used to identify an individual patient is categorized as protected health information (PHI) and must undergo a wide range of practices explicitly designed to protect patient confidentiality. Covered entities must implement processes and controls to ensure confidentiality, integrity, and availability of physical PHI and electronic […]

How Healthcare Organizations Should Strengthen Their Cybersecurity Framework

A strong cybersecurity framework guards against the most prominent cyber threats in healthcare.  This framework should also be scalable to meet new threats.  By staying aware of the latest cyber attacks in healthcare and prepping your security team, your organization can keep a step ahead of today’s cyber criminals. Here is what every healthcare organization […]

Data Breach Lawsuits on the Rise: Is Your Healthcare Organization Prepared?

  In addition to the rise in cyber attacks against hospitals and health systems, another alarming trend is the rise in lawsuits against healthcare organizations following a breach. Some recent examples include: While these are some of the higher-profile lawsuits in the industry, organizations of all sizes are facing legal action for data exposure. Lawsuits stem […]