Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
26
27
28
29
30
31
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
17
18
20
21
22
24
25
26
27
28
29
30
1
2
3
4
5
6
BARDA Industry Day
2020-10-27    
12:00 am
Organized by BARDA BARDA Industry Day is the annual meeting held to increase potential partner’s awareness of U.S. Government medical countermeasure priorities, interact with BARDA [...]
The Future of Insurance USA
2020-11-16 - 2020-11-18    
All Day
We’re excited to announce today the launch of The Future of Insurance USA (November 16-18 2020), an online 3-day conference by Reuters Events. The Future [...]
Geneva Health Forum 2020
2020-11-16 - 2020-11-18    
12:00 am
Geneva Health Forum 2020 The 8th edition of the Geneva Health Forum will take place from 16-18 November 2020. The thematic of the year will [...]
19 Nov
2020-11-19 - 2020-11-20    
12:00 am
The stage is set for a paradigm shift in healthcare. The opportunity exists to redefine healthcare in a way that transforms patient outcomes, drives efficiency [...]
The 2nd Saudi International Pharma Expo
2020-11-23 - 2020-11-24    
All Day
ABOUT THE 2ND SAUDI INTERNATIONAL PHARMA EXPO SAUDI INTERNATIONAL PHARMA EXPO offers you an EXCELLENT opportunity to expand your business in Saudi Arabia and international [...]
World Congress on Medical Toxicology
2020-12-01 - 2020-12-02    
12:00 am
World Congress on Medical Toxicology Medical Toxicology Pharma 2020 provides a global platform to meet and develop interpersonal relationship with the world’s leading toxicologists, pharmacologists, [...]
01 Dec
2020-12-01 - 2020-12-02    
All Day
International Conference on Food Technology & Beverages” at Kyoto, Japan in the course of Kyoto, Japan, December, 01-02, 2020 Theme of the Food Tech 2020 [...]
Biomedical, Bio Pharma and Clinical Research
2020-12-03 - 2020-12-04    
12:00 am
Biomedical, Bio Pharma and Clinical Research Conference Series LLC LTD cordially invites you to be a part of “2nd International Conference on Biomedical, Bio Pharma [...]
Events on 2020-10-27
BARDA Industry Day
27 Oct 20
Events on 2020-11-16
Events on 2020-11-19
Events on 2020-11-23
The 2nd Saudi International Pharma Expo
23 Nov 20
King Abdullah
Events on 2020-12-03
Articles

6 Ways Healthcare Facilities Can Address Cybersecurity Threats

cybersecurity

6 Ways Healthcare Facilities Can Address Cybersecurity Threats

Healthcare institutions are responsible not only for the physical health of patients but for their personal data. The Health Insurance Portability and Accountability Act requires facilities to guard the confidentiality of protected health information, which includes contact information as well as medical records, and imposes penalties on entities that fail to do so. Data breaches can be costly not only in terms of fines and reparations to affected patients but to reputation.

Not only that, but a cyberattack can also affect doctors’ and hospitals’ ability to provide care to patients. Like almost every other industry, health care facilities now rely heavily on computers and other internet-connected devices. While these are convenient, they also increase vulnerability to cyberattack. The last few years have seen the rise of ransomware, a type of malicious software that encrypts all the records in a system with a message that the creator of the malware will only reverse the encryption upon receiving a hefty payment. With the system inaccessible, it becomes difficult, if not impossible, for doctors to perform imaging studies and surgeries, even on critically ill patients.

Cybersecurity for healthcare facilities is therefore a life-and-death matter. While 92% of organizations that operate such facilities are confident in their ability to respond appropriately to an online attack, it never hurts to perform an audit and look for ways to improve.

1. Control Access to PHI

No one should have the ability to view protected health information unless he or she has a reason to see it. Therefore, access in the form of passwords and clearance should never be provided to unauthorized personnel. Systems should have different types of authentication in place to prevent unauthorized access from either inside or outside the facility, whether on purpose or by accident.

2. Protect Connected Devices

Any portable electronic device used to store, access, or share patient information with authorized personnel should be carefully protected, including devices such as tablets, smartphones, and laptops. This means cybersecurity measures, such as antivirus software and firewalls, but it also involves physical safeguards. For example, all such devices should be password protected and encrypted in case they fall into the wrong hands.

3. Use Strong Passwords

People often create weak passwords, or just keep the defaults, because they are easier to remember. However, these are easier for unauthorized personnel to figure out. Therefore, they do not provide adequate protection. Employees of a healthcare facility should receive instruction on how to create a strong password, what to do with the password once created, and how often to switch to a new password. Weak passwords are responsible for over half of all healthcare data breaches.

4. Maintain Antivirus Software

Those who launch cyberattacks are always looking for vulnerabilities in antivirus software that they can exploit. Therefore, the software is not something that a healthcare facility can just install once and then forget about. To provide adequate protection, it requires occasional updates so that it is ready to meet and defend against the most recent threats.

5. Prepare for the Unexpected

Despite the best efforts of the facility’s management and staff, data breaches and other cyberattacks may happen occasionally. Health care organizations can mitigate the damage done by backing up all files and records in a system separate from the main network in case of a ransomware attack. This means that the information will be accessible and patients can receive the care they need when they need it.

6. Limit Network Access

Do not allow just anyone to install applications or software on computers and other devices connected to the system. Require that they receive the permission from the proper organizational authorities first.

Rarely, if ever, do health care employees or management intentionally cause a data breach or leave the system vulnerable to cyberattack. Rather, it is the result of thoughtlessness or carelessness. Nevertheless, the consequences are significant for the patients and the facility alike. Facilities should be diligent about fostering a culture of security among all staff members.