Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
29
1
2
3
4
6
7
8
9
10
11
13
14
15
16
17
7:30 AM - HLTH 2025
18
19
20
22
23
24
25
26
27
28
29
30
31
1
2
12:00 AM - NextGen UGM 2025
TigerConnect + eVideon Unite Healthcare Communications
2025-09-30    
10:00 am
TigerConnect’s acquisition of eVideon represents a significant step forward in our mission to unify healthcare communications. By combining smart room technology with advanced clinical collaboration [...]
Pathology Visions 2025
2025-10-05 - 2025-10-07    
8:00 am - 5:00 pm
Elevate Patient Care: Discover the Power of DP & AI Pathology Visions unites 800+ digital pathology experts and peers tackling today's challenges and shaping tomorrow's [...]
AHIMA25  Conference
2025-10-12 - 2025-10-14    
9:00 am - 10:00 pm
Register for AHIMA25  Conference Today! HI professionals—Minneapolis is calling! Join us October 12-14 for AHIMA25 Conference, the must-attend HI event of the year. In a city known for its booming [...]
HLTH 2025
2025-10-17 - 2025-10-22    
7:30 am - 12:00 pm
One of the top healthcare innovation events that brings together healthcare startups, investors, and other healthcare innovators. This is comparable to say an investor and [...]
Federal EHR Annual Summit
2025-10-21 - 2025-10-23    
9:00 am - 10:00 pm
The Federal Electronic Health Record Modernization (FEHRM) office brings together clinical staff from the Department of Defense, Department of Veterans Affairs, Department of Homeland Security’s [...]
NextGen UGM 2025
2025-11-02 - 2025-11-05    
12:00 am
NextGen UGM 2025 is set to take place in Nashville, TN, from November 2 to 5 at the Gaylord Opryland Resort & Convention Center. This [...]
Events on 2025-10-05
Events on 2025-10-12
AHIMA25  Conference
12 Oct 25
Minnesota
Events on 2025-10-17
HLTH 2025
17 Oct 25
Nevada
Events on 2025-10-21
Events on 2025-11-02
NextGen UGM 2025
2 Nov 25
TN
Articles

Cybersecurity needs to be a fundamental component of all medical practices.

Cybersecurity needs to be a fundamental component of all medical practices.

Cybercriminals are targeting health care targets more often than in the past, which is not surprising given the immense damage they are causing. Amidst a constantly changing threat landscape, medical practices of varying sizes need to take proactive measures to safeguard themselves from these cybercriminals.

It’s not a question of if it will happen to you, but rather when. By routinely assessing your cybersecurity procedures, bolstering the security of your IT system, and educating your personnel to spot dangers, you can defend both your practice and your patients. The American Medical Association (AMA) is a strong advocate for doctors and provides a plethora of tools to safeguard patient medical records and data, as well as internal practice data.

Risk to the health care industry

Cybercriminals target the health care industry for a variety of reasons. More patient data is now at danger due to the long-term transition from paper records to digital data and the enormous number of entry points necessary for efficient exchange of electronic health information. While AI has been helpful in identifying and mitigating cybercrime, it has also made health care providers’ difficulties worse by enabling hackers to conduct extensive, automated social engineering attacks and swiftly pinpoint weak points in their targets, among other issues.

Data breaches continue to provide private medical information in addition to financial data, Social Security numbers, and Medicare numbers. Hackers exploit this information to perpetrate identity theft, insurance fraud, and other crimes, or they sell it to the highest bidder on the dark web. Credit card numbers may be cancelled, but information on electronic health records might remain vulnerable for years. For this reason, a cybercriminal carrying out an attack may find that stolen patient data is worth more than 50 times the amount of money they originally paid for a credit card number.

Phishing scams, denial of service assaults, ransomware attacks, spoofing, and other forms of cybercrime are becoming more and more dangerous. As seen by the terrible blow Change Healthcare and its clients endured in February 2024, so does their influence. Sensitive health information belonging to up to one-third of the country’s population may have been exposed to the dark web, costing more than $1 billion.

The recent July 2024 global IT outage, which was caused by a single cybersecurity company’s faulty software update, highlighted the vulnerability of the world economy and the dangers of IT concentration and centralization within the computer networks that we all rely so heavily on. In varied degrees, hospitals, health systems, medical laboratories, and doctor practices were all impacted, and recovery required a lot of work and time.

Actions that doctors can do
To ensure complete compliance with the HIPAA Security Rule and various Medicare programs, a comprehensive security risk analysis is the first step towards maintaining strong cybersecurity in the healthcare industry. But that’s just the beginning. Effective cybersecurity readiness and resiliency, like almost every other area of health care, need a collaborative effort to create a shared security awareness culture throughout your business. Developing that culture calls for ongoing training to assist medical professionals and employees in identifying and avoiding ransomware, phishing scams, malware, spyware, and other dangers.

Physicians can expect the AMA to assist in putting cybersecurity training into practice. For instance, the AMA Ed HubTM offers a carefully selected CME course titled “Cybersecurity in Medical Practice” that covers the causes, effects, and preventative measures of cyberattacks. In order to further safeguard computers used in medical practices, we additionally provide a checklist. Further AMA cybersecurity materials and advice describe the threats that exist today and provide information on national AMA cybersecurity advocacy. On its landing page dedicated to cybersecurity, the AMA offers more cyber resources.

In order to assist health care providers in enhancing cybersecurity and protecting their IT systems, federal entities such as the Cybersecurity and Infrastructure Security Agency provide vulnerability scanning and security assessment services in addition to other tools and knowledge. Here, health care professionals can access additional resources, information on best practices, and threat intelligence from the Department of Health and Human Services.

Although doctors are adept at many tasks, we are not cybersecurity specialists. In order to enable doctors to concentrate more efficiently on patient care, the AMA is prepared to assist medical professionals and their practices in achieving the highest standards of readiness, prevention, and incident response.