Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
31
1
4
5
10
11
12
17
24
25
26
28
29
30
1
2
3
30 Mar
2020-03-30 - 2020-03-31    
All Day
This Cardio Diabetes 2020 includes Speaker talks, Keynote & Poster presentations, Exhibition, Symposia, and Workshops. This International Conference will help in interacting and meeting with diabetes and [...]
Trending Topics In Internal Medicine 2020
2020-04-02 - 2020-04-04    
All Day
Trending Topics in Internal Medicine is a CME course that will tackle the latest information trending in healthcare today.   This course will help you discuss options [...]
2020 Summit On National & Global Cancer Health Disparities
2020-04-03 - 2020-04-04    
All Day
The 2020 Summit on National & Global Cancer Health Disparities is planned with the goal of creating a momentum to minimize the disparities in cancer [...]
2020 Primary Care Kauai- Caring For The Active And Athletic Patient
2020-04-06 - 2020-04-10    
All Day
CMX Travel and Meetings programs meetings and group conferences for physicians and medical professionals throughout the United States. CMX Travel and Meetings programs meetings and [...]
ISER- 787th International Conference On Science, Health And Medicine ICSHM
2020-04-07 - 2020-04-08    
All Day
ISER- 787th International Conference on Science, Health and Medicine (ICSHM) is a prestigious event organized with a motivation to provide an excellent international platform for the academicians, [...]
RW- 801st International Conference On Medical And Biosciences ICMBS
2020-04-08 - 2020-04-09    
All Day
About the EventConference : RW- 801st International Conference on Medical and Biosciences ICMBS is a prestigious event organized with a motivation to provide an excellent [...]
Palliative Care 2020
2020-04-08 - 2020-04-09    
All Day
ABOUT PALLIATIVE CARE 2020 Palliative Care 2020 welcomes attendees, presenters, and exhibitors from all over the world to Dubai, UAE. We are glad to invite [...]
The 4th Annual Dubai International Paediatric Neurology Congress
2020-04-09 - 2020-04-11    
All Day
Based on the sound success of previous Dubai International paediatric Neurology congresses the 4th Annual Dubai International paediatric Neurology Conference expects to attract over 400 delegates devoted [...]
13 Apr
2020-04-13 - 2020-04-14    
All Day
IASTEM - 814th International Conference on Medical, Biological and Pharmaceutical Sciences (ICMBPS) will be held on 13th - 14th April, 2020 at Dammam, Saudi Arabia . ICMBPS is to bring together [...]
Patient Engagement USA At Eyeforpharma Philadelphia
2020-04-14 - 2020-04-15    
All Day
As we enter election year in 2020, the pressure has never been higher on our industry to justify what we add to the cost of [...]
28th International Conference On Clinical Pediatrics
2020-04-15 - 2020-04-16    
All Day
It is our great pleasure to invite you to participate in the 28th International Conference on Clinical Pediatrics Clinical Pediatrics 2020 which will take place [...]
5th World Congress On Public Health And Health Care Management
2020-04-16 - 2020-04-17    
All Day
We would like to invite you all people to take part in our Public Health and Health Care Management-2020 Conference in Miami, USA during 16-17 [...]
Topics In Emergency Medicine, Pain Management, And Palliative Care CME Cruise
2020-04-18 - 2020-04-25    
All Day
These set of lectures is designed to provide important updates in emergency medicine with a focus on anticoagulation and the management of venous thromboembolism as [...]
RW- 809th International Conference On Medical And Biosciences ICMBS
2020-04-19 - 2020-04-20    
All Day
RW- 809th International Conference on Medical and Biosciences (ICMBS) is a prestigious event organized with a motivation to provide an excellent international platform for the academicians, researchers, [...]
RF - 627th International Conference On Medical & Health Science - ICMHS 2020
2020-04-20 - 2020-04-21    
All Day
Welcome to the Official Website of the  627th International Conference on Medical & Health Science - ICMHS 2020. It will be held during 20th-21st April, 2020 at San [...]
30th Annual Art And Science Of Health Promotion Conference
2020-04-20 - 2020-04-24    
All Day
Integrating Health Promotion into the Organization’s and Community’s Core Values A common element of virtually every successful health promotion program in workplace, clinical and community [...]
ISER- 796th International Conference On Science, Health And Medicine ICSHM
2020-04-21 - 2020-04-22    
All Day
ISER- 796th International Conference on Science, Health and Medicine ICSHM is a prestigious event organized with a motivation to provide an excellent international platform for [...]
Biomolecular Condensates Summit
2020-04-21 - 2020-04-23    
All Day
An ever-increasing amount of evidence points towards the importance of Biomolecular Condensates function to health and disease. However, with many of the fundamental questions behind [...]
The Middle East Pharma Cold Chain Congress
2020-04-22 - 2020-04-23    
All Day
The pharma sector in the MENA region has witnessed rapid development, which has been largely fueled by high population growth, increased life expectancy coupled with [...]
45th Annual Regional Anesthesiology And Acute Pain Medicine Meeting
2020-04-23 - 2020-04-25    
All Day
ASRA was officially "re-founded" in 1975, led by Alon P. Winnie, MD, who had a dream of a society devoted to teaching regional anesthesia. (An [...]
25th International Conference on Dermatology & Skin Care
2020-04-27 - 2020-04-28    
All Day
About Conference Derma 2020 Derma 2020 welcomes all the attendees, lecturers, patrons and other research expertise from all over the world to 25th International Conference on Dermatology & [...]
Events on 2020-03-30
Events on 2020-04-02
Events on 2020-04-03
Events on 2020-04-08
Events on 2020-04-14
Events on 2020-04-15
Events on 2020-04-22
Events on 2020-04-23
Events on 2020-04-27
Articles

Healthcare aware of security threats, but not really ready for them

medsphere

You may be suffering from IT security fatigue at this point, for which I offer a half-hearted apology.

Yes, only half-hearted, because the numbers say healthcare is aware of various security threats but still remains vulnerable, making it imperative that the subject stay top of mind until patient data is reliably protected.

For example, the Sixth Annual Benchmark Study on Privacy and Security of Healthcare Data, published earlier this month, offers interesting perspectives on both healthcare organizations and business associates.

For this ID Experts-sponsored study, The Ponemon Institute engaged 91 covered entities (health plans, healthcare clearinghouses, healthcare providers) and 84 business associates (BAs) like healthcare IT companies. Given that business associates often have access to patient data, it’s appropriate that this study and future research projects include partners not involved in actual provision of care.

A review of the Benchmark Study reveals some overarching themes and messages that may prove valuable to healthcare providers and business associates.

Data breaches are common and happening more frequently.

You know this already, right? Probably, but the frequency suggests that only the really big breaches make it into the healthcare IT press.

In the last two years, 89 percent of healthcare organizations and 61 percent of BAs experienced at least one breach that resulted in a loss of patient data. In that same time period, 45 percent of healthcare organizations had more than five breaches and 28 percent of BAs had more than two.

“The annual economic impact of a data breach has risen over the past six years, as has the frequency of data breaches,” the report reads. “Criminal attacks and internal threats are the leading cause of data breaches.”

Employees are both your strongest asset and greatest liability.

How do your employees at all levels feel about working there? How well trained are they in all aspects of their jobs? Are you aware of any particularly disgruntled employees?

Where once these were primarily questions for human resources, now they are highly relevant to the security of your operation.

When asked what type of security incident they most fear, a majority of both healthcare organizations (69 percent) and BAs (53 percent) identified employee negligence and carelessness.

These percentages remain roughly the same as last year, even while the most common cause of data breaches with healthcare organizations—fully 50 percent—is criminal attacks. Among BAs, an unintentional employee action (55 percent) is still the manner by which patient data is most often compromised.

What may provide some comfort for both healthcare organizations and BAs is that a malicious insider (13 and 6 percent, respectively) is not often the cause of lost patient information.

While concerns about employee carelessness might be more statistically relevant for BAs than healthcare organizations, in both entities the gap between negligence and malice represents an opportunity to make employees the first and most effective line of defense.

Indeed, for most BAs (58 percent), data breaches were discovered by employees. On the healthcare organization side, audits (74 percent) most often received credit for data breach recognition, with employee detection second at 47 percent.

Healthcare organizations and BAs recognize that employees are essential to better security. Both entities said better training, as well as more effective policies and procedures, were the most effective way to combat loss of patient data.

Data security spending and organizational preparation are still not where they need to be.

All of healthcare IT is aware of cyberattacks and the potential danger of losing patient data, and yet IT budgets remain stuck. Among healthcare organizations, 62 percent say their budget for incident response has either decreased (10 percent) or stayed the same (52 percent).

There remains a gap, Ponemon says, between awareness and funding.

“Recent big healthcare data breaches have increased the healthcare industry’s awareness of the growing threats to patient data, resulting in more focus on their security practices and implementing the appropriate policies and procedures, however the research indicates that it is not enough to curtail or minimize data breaches. According to the findings, half of these organizations still don’t have the people or the budget to detect or manage data breaches.”

Perhaps most disconcerting is that while 60 percent of healthcare organizations and 54 percent of BAs assess their organizational vulnerabilities, the overwhelming majority do so on either an annual (41 and 35 percent, respectively) or ad hoc (43 and 35 percent) basis.

Data breach insurance is becoming a standard part of providing healthcare.

The information on data breach insurance from the Ponemon study is interesting and somewhat curious. In the study group, one-third of healthcare organizations and 29 percent of BAs are insured against data breaches and cyberattacks. Of that group, a majority of both healthcare organizations (57 percent) and BAs (52 percent) purchased up to $5 million in coverage.

What do these numbers say about healthcare and preparation for cyberattacks? For one thing, we know that healthcare organizations and BAs are both concerned about liability; the coverage most frequently provided (just north of 70 percent for both groups) by the selected data breach policies is legal defense.

Other than that, it’s hard to draw any definitive conclusions based on the figures alone. On an individual basis, some organizations may find it more affordable to insure than fully prepare. Others may pursue both strategies.

It does seem clear that most of healthcare is under no illusions about how well prepared the industry is for hackers and cyberattacks. When asked why healthcare has a bullseye on its back, healthcare organization respondents said quite clearly that the industry is not doing enough, offering these perspectives:

  • 51 percent: Healthcare organizations are not vigilant in ensuring their partners and other third parties protect patient information.
  • 44 percent: Healthcare organizations are not hiring enough skilled IT security practitioners.
  • 41 percent: Healthcare organizations are not investing in technologies to mitigate a data breach.

The rise in cyberattacks puts many healthcare organizations in a difficult spot. Millions have already been spent on IT systems and security, and in many ways and for many providers, it simply isn’t enough. Insurance is one way to guard against disaster, but more successful attacks will lead to higher premiums, making vigilance and adequate preparation the only realistic option.

D’Arcy Gue is Director of Industry Relations for Medsphere Systems Corporation. 

Source Medsphere