Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
1
2
6
7
9
10
11
12
13
14
18
19
20
21
23
27
28
30
12:00 AM - Hepatology 2021
31
1
2
3
4
Heart Care and Diseases 2021
2021-03-03    
All Day
Euro Heart Conference 2020 will join world-class professors, scientists, researchers, students, Perfusionists, cardiologists to discuss methodology for ailment remediation for heart diseases, Electrocardiography, Heart Failure, [...]
Gastroenterology and Digestive Disorders
2021-03-04 - 2021-03-05    
All Day
Gastroenterology Diseases is clearing a worldwide stage by drawing in 2500+ Gastroenterologists, Hepatologists, Surgeons going from Researchers, Academicians and Business experts, who are working in [...]
Environmental Toxicology and Ecological Risk Assessment
2021-03-04 - 2021-03-05    
All Day
Environmental Toxicology 2021 you can meet the world leading toxicologists, biochemists, pharmacologists, and also the industry giants who will provide you with the modern inventions [...]
Dermatology, Cosmetology and Plastic Surgery
2021-03-05 - 2021-03-06    
All Day
Market Analysis Speaking Opportunities Speaking Opportunities: We are constantly intrigued by hearing from professionals/practitioners who want to share their direct encounters and contextual investigations with [...]
World Dental Science and Oral Health Congress
2021-03-08 - 2021-03-09    
All Day
About The Webinar Conference Series LLC Ltd invites you to attend the 42nd World Dental Science and Oral Health Congress to be held in March 08-09, 2021 with the [...]
Euro Metabolomics & Systems Biology
2021-03-08 - 2021-03-09    
All Day
Euro Metabolomics 2021 will be a platform to investigate recent research and advancements that can be useful to the researchers. Metabolomics is a rapidly emerging [...]
International Summit on Industrial Engineering
2021-03-15 - 2021-03-16    
All Day
Industrial Engineering conference invites all the participants to attend International summit on Industrial Engineering during March15-16, 2021 Webinar. This has prompt keynotes, Oral talks, Poster [...]
Digital Health 2021
2021-03-15 - 2021-03-16    
All Day
The use of modern technologies and digital services is not only changing the way we communicate, they also offer us innovative ways for monitoring our [...]
Genetics and Molecular biology 2021
2021-03-15    
All Day
Human genetics is study of the inheritance of characteristics by children from parents. Inheritance in humans does not differ in any fundamental way from that [...]
Food Science and Food Safety
2021-03-16 - 2021-03-17    
All Day
Food Safety. It also provides the premier multidisciplinary forum for researchers, professors and educators to present and discuss the most recent innovations, trends, and concerns, [...]
Traditional and Alternative Medicine
2021-03-16 - 2021-03-17    
All Day
Traditional Medicine 2021 welcomes attendees, presenters, and exhibitors from all over the world. We are glad to invite you all to attend and register for [...]
Carbon and Advanced Energy Materials
2021-03-16 - 2021-03-17    
All Day
Materials Science 2021 was an enchanted achievement. We give incredible credits to the Organizing Committee and participants of Materials Science 2021 Conference. Numerous tributes from [...]
Advancements in Tuberculosis and Lung Diseases
2021-03-17 - 2021-03-18    
All Day
Tuberculosis is a communicable disease, caused by the infectious bacterium Mycobacterium tuberculosis. It affects the lungs and other parts of the body (brain, spine). People [...]
Herbal Medicine and Acupuncture 2021
2021-03-22 - 2021-03-23    
All Day
The event offers a best platform with its well organized scientific program to the audience which includes interactive panel discussions, keynote lectures, plenary talks and [...]
Hospital Management and Health Care
2021-03-22 - 2021-03-23    
All Day
Healthcare system refers to the totality of resource that a society distributes with in organization and health facilities delivery for the aim of upholding or [...]
Hematology and Infectious Diseases
2021-03-22 - 2021-03-23    
All Day
Hematology is the discipline concerned with the production, functions, bone marrow, and diseases which are related to blood, blood proteins. The main aim of this [...]
Aquaculture & Marine Biology
2021-03-24 - 2021-03-25    
All Day
The 15th International Conference on Aquaculture & Marine Biology is delighted to welcome the participants from everywhere the planet to attend the distinguished conference scheduled [...]
Artificial Intelligence & Robotics 2021
2021-03-24 - 2021-03-25    
All Day
The Conference Series LLC Ltd organizes conferences around the world on all computer science subjects including Robotics and its related fields. Here we are happy [...]
Tissue Engineering & Regenerative Medicine
2021-03-24 - 2021-03-25    
All Day
Tissue Engineering & Regenerative Medicine mainly focuses on Stem Cell Research and Tissue Engineering. Stem cell Research includes stem cell treatment for various disease and [...]
Nursing Research and Evidence Based Practice
2021-03-25 - 2021-03-26    
12:00 am
Global Nursing Practice 2021 has been circumspectly organized with various multi and interdisciplinary tracks to accomplish the middle objective of the gathering that is to [...]
Earth & Environmental Science 2021
2021-03-26 - 2021-03-27    
All Day
Earth Science 2021 is the integration of new technologies in the field of environmental science to help Environmental Professionals harness the full potential of their [...]
Earth & Environmental Science 2021
2021-03-26 - 2021-03-27    
All Day
Earth Science 2021 is the integration of new technologies in the field of environmental science to help Environmental Professionals harness the full potential of their [...]
Nanomaterials and Nanotechnology
2021-03-26 - 2021-03-27    
All Day
Nanomaterials are the elements which have at least one spatial measurement in the size range of 1 to 100 nanometre. Nanomaterials can be produced with [...]
Smart Materials and Nanotechnology
2021-03-29 - 2021-03-30    
All Day
Smart Material 2021 clears a stage to globalize the examination by introducing an exchange amongst ventures and scholarly associations and information exchange from research to [...]
World Nanotechnology Congress 2021
2021-03-29    
All Day
Nano Technology Congress 2021 provides you with a unique opportunity to meet up with peers from both academic circle and industries level belonging to Recent [...]
Nanomedicine and Nanomaterials 2021
2021-03-29    
All Day
NanoMed 2021 conference provides the best platform of networking and connectivity with scientist, YRF (Young Research Forum) & delegates who are active in the field [...]
Hepatology 2021
2021-03-30 - 2021-03-31    
All Day
Hepatology 2021 provides a great platform by gathering eminent professors, Researchers, Students and delegates to exchange new ideas. The conference will cover a wide range [...]
Events on 2021-03-03
Events on 2021-03-05
Events on 2021-03-17
Events on 2021-03-25
Events on 2021-03-30
Hepatology 2021
30 Mar 21
Articles

Dec 9 : Top Tips for Keeping Patients’ Healthcare Data Protected

clinical quality

By Stephen Treglia,

Instinctively, we think of our financial data as the most likely target of a cyber attack, while healthcare data is increasingly becoming more valuable. Healthcare data breaches have demonstrated a real appetite among cybercriminals for protected healthcare information (PHI). It begs the question: why might someone’s electronic medical records be considered more valuable than their bank account details?

According to Forrester, a single health record can sell for $20 on the black market. A complete patient dossier can be worth $500. When you extrapolate these figures by the number of patients who have had their information compromised – more than 77 million records in 2013 – the financial incentives are clear. The data for sale can include names, birth dates, policy numbers, diagnosis codes and billing information. Criminals can use this data to create fake identification to buy medical equipment or drugs that can be resold, or file false claims with insurers.

Under both the Health Insurance Portability and Accountability Act (HIPAA) and the Health Information for Economic and Clinical Health Act (HITECH), governing bodies have determined that healthcare organizations are accountable for the proper storage and protection of patients’ PHI. At the risk of stating the obvious, in an age of electronic medical records and portable electronic devices, this is a severely daunting task.

The explosion of portable technology has made healthcare employees more mobile and flexible, but it has also allowed sensitive patient data to travel outside the confines of an organization, making it far more susceptible to attack. IT departments work diligently to reduce the risk of data theft and rightfully so. Recent data breaches and their respective consequences provide telling examples of how destructive these kinds of attacks can be, and the extent to which they can cripple an organization.

In July 2011, an employee of a healthcare organization left an unencrypted laptop containing the PHI of 23,500 patients inside a rental car which was subsequently stolen, never to be recovered. Data on the laptop included patient names, dates of birth, Social Security numbers, billing information, and medical diagnostic information. The organization ended up settling for $2.5 million and was prohibited from doing business in the state of Minnesota for a minimum of two years.

Moreover, the HIPAA penalty was only the start of the organization’s financial setbacks. In its next SEC filing, the organization acknowledged its inability to do business in Minnesota would result in an annual loss of revenue between $22 and $25 million. A shareholder class-action suit was settled for $14 million. This year, the FTC mandated the organization enter into a 20-year consent decree, during which time independent auditors will see to it that proper healthcare data security procedures will be in place. All told, the organization suffered losses well in excess of $60 million dollars for the theft of a single laptop.

This case may sound like an anomaly, but a significant number of devastating healthcare data breachcases originate from a misplaced device. In fact, 39 percent of healthcare security incidents are caused by device theft or loss.

So, how are healthcare organizations expected to protect information that is coveted by cybercriminals? While an organization can never guarantee that their network is impervious to a breach, there are steps your organization can follow to reduce the number of threats.

 

  1. Encrypt PHI stored on portable devices. When it comes to protecting PHI, encryption is the first line of defense and should be applied to all portable devices including laptops, tablets, and smartphones. The recent report from the state of California indicated that 70 percent of the breaches involving the California healthcare industry were due to unencrypted data on lost or stolen hardware or portable media, a problemthat strong encryption would sharply reduce.
  2. Implement an additional layer of persistent security and management software. Most encryption programs are still vulnerable to cold boot attacks and all software-based encryption systems are vulnerable to various side channel attacks. These are extreme cases but with the increase in Advanced Persistent Threats, organizations are experiencing them more frequently.  There is also the human aspect – employees often set easy-to-guess passwords or tape passwords to the device. Additionally, it’s typically lack of attention by an employee that is the root cause of a lost or stolen device. Therefore, it is important to complement encryption with a persistent security and management solution. A persistence software solution offers IT a trusted lifeline to each device in deployment. Administrators can receive encryption status reports, monitor suspicious devices, and remotely invoke security measures to freeze devices and delete or retrieve information from the mobile device. Persistence software technology also restores remote tools back onto any stolen device if the unauthorized user tries common techniques to anonymize the user’s current possession of the devices, such as swapping out the hard drive or re-installing the operating system.
  3. Properly educate employees. Healthcare employees need to understand the severity of potential data breaches. If a lost device does become compromised, it’s important to flag the breach quickly to inform those affected and then take all necessary actions. Healthcare organizations should have a formal process in place so that lost devices are reported quickly and accurately. Promptly alerting IT of these issues can often have a significant impact on reducing corporate repercussions. Review and update HIPAA privacy and security policies/procedures and stay up to date with regulatory compliance requirements to ensure your processes adhere to all regulations.

About Stephen Treglia

As Legal Counsel at Absolute Software, Stephen provides oversight and guidance on regulatory compliance related to data breaches and other security incidents. Stephen counsels the Absolute Investigations team who conduct data forensics, theft investigations, and device recoveries. Stephen has extensive knowledge of the US regulatory landscape, including SOX, HIPAA, and other industry-specific regulatory bodies.

Source