Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
27
12:00 AM - Arab Health 2020
29
1
7
10
12
14
16
20
23
25
27
28
29
1
Arab Health 2020
2020-01-27 - 2020-01-30    
All Day
ABOUT ARAB HEALTH 2020 Arab Health is an industry-defining platform where the healthcare industry meets to do business with new customers and develop relationships with [...]
12th International Conference on Acute Cardiac Care
2020-01-28 - 2020-01-29    
All Day
ABOUT 12TH INTERNATIONAL CONFERENCE ON ACUTE CARDIAC CARE Acute Cardiac Care has been undergoing a substantial transformation in recent years as the population ages and [...]
30 Jan
2020-01-30 - 2020-01-31    
All Day
The ICMHS conference is an international forum for the presentation of technological advances and research results in the fields of Medical and Health Sciences. The [...]
Annual Lower and Upper Canada Anesthesia Symposium 2020 (LUCAS)
2020-01-31 - 2020-02-02    
All Day
ABOUT ANNUAL LOWER & UPPER CANADA ANESTHESIA SYMPOSIUM 2020 (LUCAS) On behalf of the Departments of Anesthesia of McGill University, Queen’s University, and the University [...]
RF - 577th International Conference On Medical & Health Science - ICMHS 2020
2020-02-02 - 2020-02-03    
All Day
577th International Conference on Medical & Health Science - ICMHS 2020. It will be held during 2nd-3rd February, 2020 at Berlin , Germany. ICMHS 2020 [...]
ISER- 747th International Conference On Science, Health And Medicine ICSHM
2020-02-02 - 2020-02-03    
All Day
ISER- 747th International Conference on Science, Health and Medicine ICSHM is a prestigious event organized with a motivation to provide an excellent international platform for [...]
International Conference On Medical And Health SciencesICMHS-2020
2020-02-03 - 2020-02-04    
All Day
The ICMHS conference is an international forum for the presentation of technological advances and research results in the fields of Medical and Health Sciences. The [...]
Medlab Middle East 2020
2020-02-03 - 2020-02-06    
All Day
ABOUT MEDLAB MIDDLE EAST 2020 Medlab Middle East is the only medical laboratory industry event that offers manufacturers the opportunity to meet a diverse audience [...]
Cloud Architecture Implementation Healthcare 2020
2020-02-04 - 2020-02-06    
All Day
This summit brings together leaders from healthcare organizations to scale up their cloud infrastructure, implement cloud technology and share use cases about the success and [...]
4th Microbiome Movement - Drug Development Summit Europe 2020 - London, UK
2020-02-04 - 2020-02-06    
All Day
A unique forum focusing on pursuing disease causation to foster the creation of targeted Microbiome-based therapeutics, biomarkers and diagnostics. Time: 8:30 am - 5:50 pm [...]
Structural Heart Intervention And Imaging Feb 2020 CME Conference-San Diego
2020-02-05 - 2020-02-07    
All Day
The Scripps Structural Heart Intervention and Imaging conference features live case demonstrations, lectures from renowned faculty, hands-on workshops, and extensive satellite symposia. Time: 7:00 am [...]
Structural Heart Intervention And Imaging Feb 2020 CME Conference-San Diego
2020-02-05 - 2020-02-07    
All Day
The Scripps Structural Heart Intervention and Imaging conference features live case demonstrations, lectures from renowned faculty, hands-on workshops, and extensive satellite symposia. Time: 7:00 am [...]
18th Annual South Beach Symposium
2020-02-06 - 2020-02-09    
All Day
ABOUT 18TH ANNUAL SOUTH BEACH SYMPOSIUM The 18th Annual South Beach Symposium will take place in Miami Beach, Florida from February 6-9, 2020 at the [...]
Primary Care CME In Clearwater Beach, Florida February 2020
2020-02-08 - 2020-02-10    
All Day
Topics include latest hypertension guidelines, cancer screening, cholesterol management, immunizations, COPD, skin and soft tissue infections, etc. Time: 08:00 - 11:00
Primary Care CME In Clearwater Beach, Florida February 2020
2020-02-08 - 2020-02-10    
All Day
Topics include latest hypertension guidelines, cancer screening, cholesterol management, immunizations, COPD, skin and soft tissue infections, etc. Time: 08:00 - 11:00  
World Congress On Medical Imaging And Clinical Research WCMICR-2020
2020-02-09 - 2020-02-10    
All Day
The WCMICR conference is an international forum for the presentation of technological advances and research results in the fields of Medical Imaging and Clinical Research. [...]
Medical Design & Manufacturing (MD&M) West
2020-02-11 - 2020-02-13    
All Day
ABOUT MEDICAL DESIGN & MANUFACTURING (MD&M) WEST Medical Design & Manufacturing (MD&M) West is where serious professionals find the technologies, education, and connections to stay [...]
Third International Conference On Zika Virus And Aedes Related Infections
2020-02-13    
All Day
This Conference will bring together multidisciplinary experts aiming to tackle the challenges that Aedes related infections present including zika, dengue, yellow fever, and chikungunya. Time: [...]
The IRES - 791st International Conferences On Medical And Health Science ICMHS
2020-02-15 - 2020-02-16    
All Day
The IRES - 791st International Conferences on Medical and Health Science ICMHS aimed at presenting current research being carried out in that area and scheduled [...]
4th International Conference on Chronic Diseases
2020-02-17 - 2020-02-18    
All Day
ABOUT 4TH INTERNATIONAL CONFERENCE ON CHRONIC DISEASES It takes immense pleasure to invite you to attend the 4th International Conference on Chronic Diseases (Chronic Diseases [...]
European Gynecology and Obstetrics Congress
2020-02-17 - 2020-02-18    
All Day
ABOUT EUROPEAN GYNECOLOGY AND OBSTETRICS CONGRESS Gynecology 2020 destine to endeavor leading-edge memoranda of eminent keynote speakers, universal personalities, special sessions and poster presentations attracting [...]
18 Feb
2020-02-18 - 2020-02-20    
All Day
Technology Networks is a global online scientific publication that covers the latest research, industry news, and technologies. Our 12 online communities provide focused coverage of [...]
6th International Conference On Food And Beverages
2020-02-19 - 2020-02-20    
All Day
Meetings International Meetings Int. invites you to attend the ‘6th International Conference on Food and Beverages 2020” which is to be held on February 19-20, [...]
10th Global Summit on Neuroscience and Neuroimmunology
2020-02-19 - 2020-02-20    
All Day
ABOUT 10TH GLOBAL SUMMIT ON NEUROSCIENCE AND NEUROIMMUNOLOGY 10th Global Summit on Neuroscience and Neuroimmunology (Neuroimmunology 2020) is aimed at improving health across the globe, [...]
Mayo Clinic Nephrology And Transplantation For The Clinician 2020
2020-02-21 - 2020-02-22    
All Day
Nephrology and Transplantation for the Clinician: 18th Annual Update From Mayo Clinic is a two-day course designed to u-p-d-a-t-e participants on nephrology topics relevant to [...]
28th International Conference on Cancer Research and Pharmacology
2020-02-21 - 2020-02-22    
All Day
ABOUT 28TH INTERNATIONAL CONFERENCE ON CANCER RESEARCH AND PHARMACOLOGY PULSUS Conferences is glad to invite all the participants across the globe to attend 28th International [...]
Rocky Mountain Winter Conference On Emergency Medicine 2020
2020-02-22 - 2020-02-26    
All Day
Each day the conference starts with a hot breakfast followed by engaging, cutting edge didactics led by experts from the countrys top academic programs. Please [...]
CRT20 Conference
2020-02-22 - 2020-02-25    
All Day
ABOUT CRT20 CONFERENCE CRT, one of the world’s leading interventional cardiology conferences, is attended by more than 3,000 interventional and endovascular specialists. At the 2019 [...]
3rd International conference on  Diabetes, Hypertension and Metabolic Syndrome
2020-02-24 - 2020-02-25    
All Day
About Diabetes Meet 2020 Conference Series takes the immense Pleasure to invite participants from all over the world to attend the 3rdInternational conference on Diabetes, Hypertension and [...]
3rd International Conference on Cardiology and Heart Diseases
2020-02-24 - 2020-02-25    
All Day
ABOUT 3RD INTERNATIONAL CONFERENCE ON CARDIOLOGY AND HEART DISEASES The standard goal of Cardiology 2020 is to move the cardiology results and improvements and to [...]
Medical Device Development Expo OSAKA
2020-02-26 - 2020-02-28    
All Day
ABOUT MEDICAL DEVICE DEVELOPMENT EXPO OSAKA What is Medical Device Development Expo OSAKA (MEDIX OSAKA)? Gathers All Kinds of Technologies for Medical Device Development! This [...]
Events on 2020-01-27
Arab Health 2020
27 Jan 20
Dubai
Events on 2020-01-28
Events on 2020-01-30
Events on 2020-01-31
Events on 2020-02-03
Events on 2020-02-06
18th Annual South Beach Symposium
6 Feb 20
Miami Beach
Events on 2020-02-09
Events on 2020-02-11
Events on 2020-02-17
Events on 2020-02-18
18 Feb
Events on 2020-02-22
CRT20 Conference
22 Feb 20
National Harbor
Events on 2020-02-26
Articles

Cybercrime 2018: Most Hospitals’ IT Security Is Still Not Enough

cybercrime 2018
BIRMINGHAM, UNITED KINGDOM - JUNE 14: A doctor at The Queen Elizabeth Hospital Birmingham does his rounds on the wards on June 14, 2006 in Birmingham, England. Senior managers of the NHS have said that the organisation needs to become more open in the future. (Photo by Christopher Furlong/Getty Images)

Have you noticed? We haven’t read shocking news of record-breaking security breaches, in fact not since 2015-2016. Remember Bon Secours Health System where the information of 655,000 patients was compromised via the internet? Or the breach at 21st Century Oncology Holdings that hit more than two million patients across 181 cancer treatment centers? A cyber attack on Banner Health affected 3.6 million people, and NewKirk Products, a business associate, was hacked to the tune of 3.5 million affected individuals. According to HHS’ Wall of Shame, over 113 million people were hit in 2015 by breaches of their personal data, and in 2016 more than 27 million patient records were impacted. But, in the whole of 2017 “only” about 4.7 million people were victimized, a four year low.  This may seem like good news, but before we get too comfortable with our seemingly safer data security today, here’s the story behind the story —  and it isn’t pretty.

Many big healthcare cybersecurity news stories have focused on ransomware, the frightening new weapon used by hackers to stop healthcare computing operations cold in order to extort bitcoin payoffs. Though ransomware attacks received a lot of press, it is clear that patient identity theft remains the most dangerous threat facing the healthcare industry. Even back  In 2016 the HIMSS Cybersecurity Survey reported that identity theft had become cyber criminals’ strategy of choice because of patient data’s sheer marketplace value.

This year’s HIMSS 2018 Cybersecurity Survey of 239  information security professionals from various healthcare organizations reported a similar predominant trend of identity theft. The number of individuals impacted by security incidents decreased, but the number of incidents has not slowed down. Over 75% reported that their organizations had experienced a significant security incident in the last year. “If anything…significant security incidents will continue to grow in number, complexity, and impact,” according to the report.

Externally based incidents have gotten the most press. HIMSS reports that the three greatest perpetrators of recent significant security incidents are online scam artists (phishing exploiters), negligent hospital insiders, and criminal hackers. These are  followed by malicious insiders and social engineers — hackers who play fraudulent tricks on insiders using tools like phone calls and social media.

If we look a little deeper at the numbers below it becomes clear that our hospital insiders — physicians, nurses, IT and other staff — are complicit, mostly inadvertently (a few, deliberately), in at least 70 percent of security incidents.These would include staff or business associates that are taken in by online scam artists and criminal social engineers, in addition to negligent insiders. Take a look at this screenshot from HIMSS’ 2018 report:

We must squarely look at the unfortunate role of our well-meaning hospital insiders in the dangerous state of healthcare cybersecurity today and step up protections:

  • Phishing and social engineering by bad actors only work if we mere mortals don’t catch these threats before damage occurs. Such incidents accounted for 37.6 percent of security breaches last year.
  • Negligent insiders accounted for 21 percent of incidents.
  • Social engineering (almost five percent of last year’s incidents) succeeds only if our staff doesn’t recognize and catch it.
  • Over five percent of insiders were deliberately bad actors.

It’s clear that healthcare organizations must do more to reduce these internal vulnerabilities, as well as prevent external hacking in its many ever changing forms.

The somewhat good news: About 85% of respondents say that their organizations have increased the resources needed to manage cybersecurity concerns. The following graph shows the percentage of IT budgets allocated to cybersecurity in 2018.

We can all agree that any increased expenditures and efforts to protect our hospitals’ data are important actions, but we all should be concerned that the overall hospital industry’s response to the abundance of security risks has not been greater or more clearly defined as priorities in IT budgets.

Specific efforts focusing on internal vulnerabilities should be especially high priority. Potential issues like the following must be hit hard:

  • How thorough and frequent is staff training? Is it absolutely required of all staff?
  • Are stringent rules in place that clearly include severe consequences?
  • Is the IT department and security staff in control — or instead, overwhelmed or not effectively engaged?  For example, does IT follow and enforce best practices in secure network management, device management, and the simplest of protections, frequent password changes designed for difficulty? Is IT conducting frequent systems penetration testing? Is IT on top of the most dangerous, current potential cyberthreats?
  • Does the IT department include highly trained security staff, either employees or external contractors?
  • Are thorough security risk analyses conducted at least once a year — ideally, more frequently?
  • Is the C-suite committed to data security and privacy, and is this communicated enterprise wide?
  • Are necessary security and privacy protections adequately funded?

Most predictions indicate healthcare is headed into a period of increased cybersecurity risks in 2019 and beyond.  Hospitals, other providers and business associates should complete a security risk analysis soon, if they haven’t yet conducted one this year.  As always, well-qualified internal IT security professionals or an objective third part security professional must lead the process. Then they should calibrate your organization’s unique risks against potential costs — including the privacy costs of patients — to plan ahead for technical and social protections that will minimize your vulnerabilities and thwart the cyberthreats that are sure to come.

________________________________

If you need the security knowledge and expertise of certified specialists with over 20 years of hospital privacy and security experience, contact us.

ABOUT D’ARCY GUERIN GUE

Vice President, Industry Relations

D’Arcy Guerin Gue is a co-founder of Phoenix, with over 25 years of experience in executive leadership, strategic planning, IT services, knowledge leadership, and industry relations —  and a special focus on patient engagement and federal compliance issues.

Phoenix is a division of Medsphere Systems.