Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
26
27
28
30
2
8
9
10
11
12
13
14
19
21
24
26
28
29
30
1
2
3
4
5
6
Neurology Certification Review 2019
2019-08-29 - 2019-09-03    
All Day
Neurology Certification Review is organized by The Osler Institute and will be held from Aug 29 - Sep 03, 2019 at Holiday Inn Chicago Oakbrook, [...]
Ophthalmology Lecture Review Course 2019
2019-08-31 - 2019-09-05    
All Day
Ophthalmology Lecture Review Course is organized by The Osler Institute and will be held from Aug 31 - Sep 05, 2019 at Holiday Inn Chicago [...]
Emergency Medicine, Sex and Gender Based Medicine, Risk Management/Legal Medicine, and Physician Wellness
2019-09-01 - 2019-09-08    
All Day
Emergency Medicine, Sex and Gender Based Medicine, Risk Management/Legal Medicine, and Physician Wellness is organized by Continuing Education, Inc and will be held from Sep [...]
Medical Philippines 2019
2019-09-03 - 2019-09-05    
All Day
The 4th Edition of Medical Philippines Expo 2019 is organized by Fireworks Trade Exhibitions & Conferences Philippines, Inc. and will be held from Sep 03 [...]
Grand Opening Celebration for Encompass Health Katy
2019-09-04    
4:00 pm - 7:00 pm
Grand Opening Celebration for Encompass Health Katy 23331 Grand Reserve Drive | Katy, Texas Sep 4, 2019 4:00 p.m. CDT Encompass Health will host a grand opening [...]
Galapagos & Amazon 2019 Medical Conference
2019-09-05 - 2019-09-17    
All Day
Galapagos & Amazon 2019 Medical Conference is organized by Unconventional Conventions and will be held from Sep 05 - 17, 2019 at Santa Cruz II, [...]
Mesotherapy Training (Sep 06, 2019)
2019-09-06    
All Day
Mesotherapy Training is organized by Empire Medical Training (EMT), Inc and will be held on Sep 06, 2019 at The Westin New York at Times [...]
Aesthetic Next 2019 Conference
2019-09-06 - 2019-09-08    
All Day
Aesthetic Next 2019 Conference Venue: SEPTEMBER 6-8, 2019 RENAISSANCE DALLAS HOTEL, DALLAS, TX www.AestheticNext.com On behalf Aesthetic Record EMR, we would like to invite you [...]
Anti-Aging - Modules 1 & 2 (Sep, 2019)
2019-09-07    
All Day
Anti-Aging - Modules 1 & 2 is organized by Empire Medical Training (EMT), Inc and will be held on Sep 07, 2019 at The Westin [...]
Allergy Test and Treatment (Sep, 2019)
2019-09-15    
All Day
Allergy Test and Treatment is organized by Empire Medical Training (EMT), Inc and will be held on Sep 15, 2019 at Aloft Chicago O'Hare, Chicago, [...]
Biosimilars & Biologics Summit 2019
2019-09-16 - 2019-09-17    
All Day
TBD
Biosimilars & Biologics Summit 2019 is organized by Lexis Conferences Ltd and will be held from Sep 16 - 17, 2019 at London, England, United [...]
X Anniversary International Exhibition of equipment and technologies for the pharmaceutical industry PHARMATechExpo
2019-09-17 - 2019-09-19    
All Day
X Anniversary International Exhibition of equipment and technologies for the pharmaceutical industry PHARMATechExpo is organized by Laboratory Marketing Technology (LMT) Company, Shupyk National Medical Academy [...]
2019 Physician and CIO Forum
2019-09-18 - 2019-09-19    
All Day
Event Location MEDITECH Conference Center 1 Constitution Way Foxborough, MA Date : September 18th - 19th Conference: Wednesday, September 18  8:00 AM - 5:00 PM [...]
Stress, Depression, Anxiety and Resilience Summit 2019
2019-09-20 - 2019-09-21    
All Day
Stress, Depression, Anxiety and Resilience Summit is organized by Lexis Conferences Ltd and will be held from Sep 20 - 21, 2019 at Vancouver Convention [...]
Sclerotherapy for Physicians & Nurses Course - Orlando (Sep 20, 2019)
2019-09-20    
All Day
Sclerotherapy for Physicians & Nurses Course is organized by Empire Medical Training (EMT), Inc and will be held on Sep 20, 2019 at Sheraton Orlando [...]
Complete, Hands-on Dermal Filler (Sep 22, 2019)
2019-09-22    
All Day
Complete, Hands-on Dermal Filler is organized by Empire Medical Training (EMT), Inc and will be held on Sep 22, 2019 at Sheraton Orlando Lake Buena [...]
The MedTech Conference 2019
2019-09-23 - 2019-09-25    
All Day
The MedTech Conference 2019 is organized by Advanced Medical Technology Association (AdvaMed) and will be held from Sep 23 - 25, 2019 at Boston Convention [...]
23 Sep
2019-09-23 - 2019-09-24    
All Day
ABOUT 2ND WORLD CONGRESS ON RHEUMATOLOGY & ORTHOPEDICS Scientific Federation will be hosting 2nd World Congress on Rheumatology and Orthopedics this year. This exciting event [...]
25 Sep
2019-09-25 - 2019-09-26    
All Day
ABOUT 18TH WORLD CONGRESS ON NUTRITION AND FOOD CHEMISTRY Nutrition Conferences Committee extends its welcome to 18th World Congress on Nutrition and Food Chemistry (Nutri-Food [...]
ACP & Stem Cell Therapies for Pain Management (Sep 27, 2019)
2019-09-27    
All Day
ACP & Stem Cell Therapies for Pain Management is organized by Empire Medical Training (EMT), Inc and will be held on Sep 27, 2019 at [...]
01 Oct
2019-10-01 - 2019-10-02    
All Day
The UK’s leading health technology and smart health event, bringing together a specialist audience of over 4,000 health and care professionals covering IT and clinical [...]
Events on 2019-08-29
Events on 2019-08-31
Events on 2019-09-03
Medical Philippines 2019
3 Sep 19
Pasay City
Events on 2019-09-04
Events on 2019-09-05
Galapagos & Amazon 2019 Medical Conference
5 Sep 19
Galapagos Islands
Events on 2019-09-06
Events on 2019-09-07
Events on 2019-09-15
Events on 2019-09-16
Events on 2019-09-18
2019 Physician and CIO Forum
18 Sep 19
Foxborough
Events on 2019-09-22
Events on 2019-09-23
The MedTech Conference 2019
23 Sep 19
Boston
23 Sep
Events on 2019-09-25
Events on 2019-09-27
Events on 2019-10-01
01 Oct
Articles

3 EHR Security Lessons from Anthem’s Security Breach

3 ehr security

Exclusive Article by Ronald Vatalaro at EMRIndustry.com

As the medical industry goes high-tech with the implementation of electronic health records (EHR), credit card companies are not the only targets catching the eye of cybercriminals.

A massive security breach made public in February at Anthem, the nation’s second largest health insurer, sheds light on the importance of security and vigilance as healthcare providers and others bring sensitive patient information into the world of e-healthcare.

About the Anthem Breach

The breach at Anthem, the medical insurer of one in nine Americans, occurred on Dec. 10, 2014. The compromise went undetected until Jan. 27, 2015, when a database administrator became aware of someone using his credentials to perform a suspicious query.

Just two days later, Anthem reported the findings of its internal investigation to federal authorities and the breach was made public on Feb. 4.

Anthem’s breach makes it very clear that vigilance is necessary as EHRs are implemented in practices and facilities across the country.

Safe data storage with networks and security processes designed to protect patient information that includes account numbers, names, addresses, Social Security numbers and more, must be created.

3 Key Takeaways

The highly publicized breach at Anthem teaches lessons all healthcare-related providers using EHRs can benefit from.

Three main takeaways from the cyberattack pinpoint the responsibilities providers and support agencies, such as insurance companies, have in safeguarding their patient and/or client information:

System Considerations

Selection of systems to handle the need for EHR must go beyond program features and bells and whistles. Organizations must seek out products that deliver security features consistent with their needs and the sensitivity of the information stored on patients’ behalf.

Sound EHRs offer the ability to limit access and provide screening controls so only authorized staff can access sensitive information.

In addition, user activity logging features provide audit trails that record all navigation in the system while features that require users to justify manual printing of information limit the potential for unauthorized screen printing and unauthorized downloading of information.

Seeking out and demanding informatics systems that offer these safeguards and more is fast becoming critical.

Recommendations for HIM Professionals

Health Information Management professionals find themselves in not just the role of organizing, collecting and managing patient data, but also making sure it is protected.

With that in mind, HIM professionals must ensure their EHRs offer the functionality necessary for the organization to meet regulatory and operational requirements while safeguarding patient information.

Recommendations for doing so include:

  • Identifying the location of information in the organization to verify state-specific guidelines
  • Identifying functions in the system that create risk and working to limit or restrict their use
  • Identifying security features that deliver higher levels of protection and implementing their use to safeguard sensitive information
  • When choosing an EHR system, it falls on HIM professionals to systematically and independently evaluate the system without relying on vendor information to gauge system functionality
  • Creating partnerships with IT counterparts to ensure the best functionality and security on a day-to-day basis

Security Features to Consider

Making sure EHRs deliver the necessary level of security to avoid breaches such as Anthem’s requires inclusion of a number of security features in the system itself.

These distinct features can make a difference in providing appropriate levels of protection:

  • Role-based security that restricts access to information based on pre-established categories of patients, encounters and documents based on specific job requirements of the user
  • VIP status indicators that enable restriction of identified patients and encounters to only those with VIP permissions
  • Ability to create an alias to mask patient identity
  • Ability to restrict physician access to only those patients the doctor serves as the physician of record for
  • Blocking abilities for specific progress notes or lab results
  • Ability to track and mask sensitive entries for release of information

Where to Turn for More Assistance

HIM professionals and others interested in learning more about how to safeguard sensitive patient data will find the federal government provides a clearinghouse of information on privacy and security via HealthIT.gov.

This website provides step-by-step plans for ensuring patient privacy and security, offers advice on how to integrate privacy and security into a medical practice and discusses privacy and security in regard to meaningful use, among other crucial topics.

As EHRs take the practice of medicine further into the high-tech world, cybercriminals are taking note. Safeguarding sensitive information is critical for protecting patients and their identities.

As the Anthem breach demonstrates, this brave new world is giving rise to potential pitfalls that HIM professionals must serve as sentinels against.

Ron Vatalaro works at Bisk Education with the USF Health online and writes about health informatics. Ron holds an advanced degree in Business Administration with a concentration in technology.

Take the USF Health Online 2015 Health IT Industry Survey .