Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
1
2
5
6
7
9
10
12
13
14
17
18
19
20
22
23
25
26
29
1
2
3
4
5
2014 OSEHRA Open Source Summit: Global Collaboration in Health IT
2014-09-03 - 2014-09-05    
8:00 am - 5:00 pm
OSEHRA is an alliance of corporations, agencies, and individuals dedicated to advancing the state of the art in open source electronic health record (EHR) systems [...]
Connected Health Summit
2014-09-04    
All Day
The inaugural Connected Health Summit: Engaging Consumers is the only event focused exclusively on the consumer-focused perspective of the fast-growing digital health/connected health market. The [...]
Health Impact MidWest
2014-09-08    
All Day
The HealthIMPACT Forum is where health system C-Suite Executives meet.  Designed by and for health system leaders like you, it provides an unmatched faculty of [...]
Simulation Summit 2014
2014-09-11    
All Day
Hilton Toronto Downtown | September 11 - 12, 2014 Meeting Location Hilton Toronto Downtown 145 Richmond Street West Toronto, Ontario, M5H 2L2, CANADA Tel: 416-869-3456 [...]
Webinar : EHR: Demand Results!
2014-09-11    
2:00 pm - 2:45 pm
09/11/14 | 2:00 - 2:45 PM ET If you are using an EHR, you deserve the best solution for your money. You need to demand [...]
Healthcare Electronic Point of Service: Automating Your Front Office
2014-09-11    
3:00 pm - 4:00 pm
09/11/14 | 3:00 - 4:00 PM ET Start capitalizing on customer convenience trends today! Today’s healthcare reimbursement models put a greater financial risk on healthcare [...]
e-Patient Connections 2014
2014-09-15    
All Day
e-Patient Connections 2014 Follow Us! @ePatCon2014 Join in the Conversation at #ePatCon The Internet, social media platforms and mobile health applications are enabling patients to take an [...]
Free Webinar - Don’t Be Denied: Avoiding Billing and Coding Errors
2014-09-16    
1:00 pm - 2:00 pm
Tuesday, September 16, 2014 1:00 PM Eastern / 10:00 AM Pacific   Stopping the denial on an individual claim is just the first step. Smart [...]
Health 2.0 Fall Conference 2014
2014-09-21    
12:00 am
We’re back in Santa Clara on September 21-24, 2014 and once again bringing together the best and brightest speakers, newest product demos, and top networking opportunities for [...]
Healthcare Analytics Summit 14
2014-09-24    
All Day
Transforming Healthcare Through Analytics Join top executives and professionals from around the U.S. for a memorable educational summit on the incredibly pressing topic of Healthcare [...]
AHIMA 2014 Convention
2014-09-27    
All Day
As the most extensive exposition in the industry, the AHIMA Convention and Exhibit attracts decision makers and influencers in HIM and HIT. Last year in [...]
2014 Annual Clinical Coding Meeting
2014-09-27    
12:00 am
Event Type: Meeting HIM Domain: Coding Classification and Reimbursement Continuing Education Units Available: 10 Location: San Diego, CA Venue: San Diego Convention Center Faculty: TBD [...]
AHIP National Conferences on Medicare & Medicaid
2014-09-28    
All Day
Balancing your organization’s short- and long-term needs as you navigate the changes in the Medicare and Medicaid programs can be challenging. AHIP’s National Conferences on Medicare [...]
A Behavioral Health Collision At The EHR Intersection
2014-09-30    
2:00 pm - 3:30 pm
Date/Time Date(s) - 09/30/2014 2:00 pm Hear Why Many Organizations Are Changing EHRs In Order To Remain Competitive In The New Value-Based Health Care Environment [...]
Meaningful Use and The Rise of the Portals
2014-10-02    
12:00 pm - 12:45 pm
Meaningful Use and The Rise of the Portals: Best Practices in Patient Engagement Thu, Oct 2, 2014 10:30 PM - 11:15 PM IST Join Meaningful [...]
Events on 2014-09-04
Connected Health Summit
4 Sep 14
San Diego
Events on 2014-09-08
Health Impact MidWest
8 Sep 14
Chicago
Events on 2014-09-15
e-Patient Connections 2014
15 Sep 14
New York
Events on 2014-09-21
Health 2.0 Fall Conference 2014
21 Sep 14
Santa Clara
Events on 2014-09-24
Healthcare Analytics Summit 14
24 Sep 14
Salt Lake City
Events on 2014-09-27
AHIMA 2014 Convention
27 Sep 14
San Diego
Events on 2014-09-28
Events on 2014-09-30
Events on 2014-10-02
Articles

How to Improve Healthcare Information System Security

healthcare

How to Improve Healthcare Information System Security

The healthcare space deals with a lot of sensitive information about patients and their medical needs. Protecting this properly is essential to running an effective health organization. Fortunately, there are a number of solutions aimed at helping hospitals, clinics and other practices with this. Nonetheless, it can be challenging to achieve optimal security. These tips will help:

Start With the People

In almost all information systems, the biggest vulnerability is the behavior of the users. People make lots of mistakes. They open spam emails, they download questionable software, they use weak passwords and generally don’t worry too much about security. So, the most important thing you can do to improve security is to educate people.

An often-overlooked element of this is teaching people what to do if they make a mistake or otherwise suspect a threat. Don’t just train them on how to create better passwords or to not open suspicious emails. Also, teach them what to do in the event of an error.

Protect Data According to HIPAA

The Health Insurance Portability and Accountability Act of 1996 plays a big role in how healthcare organizations handle their data. It lays down a lot of rules for protecting and transmitting information about patients. It should be a major guideline for how you deal with your information systems.

First, you have to be in compliance with the act to legally handle patient information. Additionally, you will have a relatively strong system if you simply follow the rules.

Carefully Manage Access Permissions

Access permissions are at the heart of a lot of security strategies. These are the digital rights that you give to your users. People should have access to the information they need to perform their jobs and nothing more. For example, your system should only allow practitioners access to information on their current patients.

You can think of access permissions as rooms in a building. Your workspace likely has rooms that require keycard access or some similar system. This segments who is allowed in which areas of the building. Digital permissions should be conceptually similar but even stricter.

Integrate Carefully With Partners and Vendors

One of the challenges of securing any information system is the need to integrate with providers, vendors and partners. These third-party organizations can provide some invaluable features and functionality for healthcare organizations. However, there is always added risk when integrating.

Look for third-party partners that know their API security, data encryption and HIPAA requirements inside and out. Organizations that are really well-versed in their security protocols and industry best practices will typically provide sufficient security.

Implement Strong Password Policies

A lot of people have their children’s birthdays as their passwords. Alternatively, they may have chosen a short password of six characters. These types of passwords are extremely easy to break with social engineering (in the case of the first example) or brute force (in the case of the second example).

The best passwords are long and random. They shouldn’t have patterns that can be learned or exploited. Furthermore, they should be long enough that a computer can’t easily guess them. Of course, people have a hard time remembering such passwords. One good solution is to use single sign-on so users only have to remember one set of credentials.

Keep Systems Up To Date

Your software should always be up to date. Developers regularly find vulnerabilities and patch them out. However, many healthcare organizations are working on outdated software, especially on laptops and mobile devices.
Implementing good device updating procedures will help protect against a lot of avoidable vulnerabilities. This has the added benefit of ensuring that all your systems are working on the same version at the same time.

Learn More

The better you understand the essentials of information security and handling healthcare information, the stronger the digital foundations of your health organization will be. Get started today by implementing some of the above basics. As you progress, you can take things further and truly optimize your security.