There’s No Straight Line to the CISO Chair

Tamra Durfee’s Path Through Healthcare Cybersecurity When Becker’s Hospital Review named its 2026 “Women in Health IT to Know,” Tamra Durfee was again one of 170 honorees. While many think of cybersecurity as firewalls and frameworks, Tamra has a different perspective, focused on the people behind them. “Every time I reduce risk,” she says, “I am making […]
Turning Your Program Rationalization Into a Board-Level Strategic Asset

Healthcare CISOs are working under three kinds of pressure that aren’t going away: budgets are getting tighter, regulatory expectations keep climbing, and board scrutiny is now a permanent feature of the job. Cyber program rationalization is one of the most underused levers for getting out from under that pressure. Done right, it isn’t a cost-cutting […]
CISO Brief: May 2025 Recap – Ransomware Trends, Endpoint Evasion, and the Kettering Health Breach

In our CISO Brief looking at May 2025, we saw threat actors sharpening their techniques and targeting healthcare organizations in ways that challenge our traditional security assumptions. New endpoint evasion tactics, a shift in ransomware strategy targets, and the ransomware group that targeted DaVita may have struck again. This time, it was a different healthcare […]