Events Calendar

Mon
Tue
Wed
Thu
Fri
Sat
Sun
M
T
W
T
F
S
S
31
1
4
5
10
11
12
17
24
25
26
28
29
30
1
2
3
30 Mar
2020-03-30 - 2020-03-31    
All Day
This Cardio Diabetes 2020 includes Speaker talks, Keynote & Poster presentations, Exhibition, Symposia, and Workshops. This International Conference will help in interacting and meeting with diabetes and [...]
Trending Topics In Internal Medicine 2020
2020-04-02 - 2020-04-04    
All Day
Trending Topics in Internal Medicine is a CME course that will tackle the latest information trending in healthcare today.   This course will help you discuss options [...]
2020 Summit On National & Global Cancer Health Disparities
2020-04-03 - 2020-04-04    
All Day
The 2020 Summit on National & Global Cancer Health Disparities is planned with the goal of creating a momentum to minimize the disparities in cancer [...]
2020 Primary Care Kauai- Caring For The Active And Athletic Patient
2020-04-06 - 2020-04-10    
All Day
CMX Travel and Meetings programs meetings and group conferences for physicians and medical professionals throughout the United States. CMX Travel and Meetings programs meetings and [...]
ISER- 787th International Conference On Science, Health And Medicine ICSHM
2020-04-07 - 2020-04-08    
All Day
ISER- 787th International Conference on Science, Health and Medicine (ICSHM) is a prestigious event organized with a motivation to provide an excellent international platform for the academicians, [...]
RW- 801st International Conference On Medical And Biosciences ICMBS
2020-04-08 - 2020-04-09    
All Day
About the EventConference : RW- 801st International Conference on Medical and Biosciences ICMBS is a prestigious event organized with a motivation to provide an excellent [...]
Palliative Care 2020
2020-04-08 - 2020-04-09    
All Day
ABOUT PALLIATIVE CARE 2020 Palliative Care 2020 welcomes attendees, presenters, and exhibitors from all over the world to Dubai, UAE. We are glad to invite [...]
The 4th Annual Dubai International Paediatric Neurology Congress
2020-04-09 - 2020-04-11    
All Day
Based on the sound success of previous Dubai International paediatric Neurology congresses the 4th Annual Dubai International paediatric Neurology Conference expects to attract over 400 delegates devoted [...]
13 Apr
2020-04-13 - 2020-04-14    
All Day
IASTEM - 814th International Conference on Medical, Biological and Pharmaceutical Sciences (ICMBPS) will be held on 13th - 14th April, 2020 at Dammam, Saudi Arabia . ICMBPS is to bring together [...]
Patient Engagement USA At Eyeforpharma Philadelphia
2020-04-14 - 2020-04-15    
All Day
As we enter election year in 2020, the pressure has never been higher on our industry to justify what we add to the cost of [...]
28th International Conference On Clinical Pediatrics
2020-04-15 - 2020-04-16    
All Day
It is our great pleasure to invite you to participate in the 28th International Conference on Clinical Pediatrics Clinical Pediatrics 2020 which will take place [...]
5th World Congress On Public Health And Health Care Management
2020-04-16 - 2020-04-17    
All Day
We would like to invite you all people to take part in our Public Health and Health Care Management-2020 Conference in Miami, USA during 16-17 [...]
Topics In Emergency Medicine, Pain Management, And Palliative Care CME Cruise
2020-04-18 - 2020-04-25    
All Day
These set of lectures is designed to provide important updates in emergency medicine with a focus on anticoagulation and the management of venous thromboembolism as [...]
RW- 809th International Conference On Medical And Biosciences ICMBS
2020-04-19 - 2020-04-20    
All Day
RW- 809th International Conference on Medical and Biosciences (ICMBS) is a prestigious event organized with a motivation to provide an excellent international platform for the academicians, researchers, [...]
RF - 627th International Conference On Medical & Health Science - ICMHS 2020
2020-04-20 - 2020-04-21    
All Day
Welcome to the Official Website of the  627th International Conference on Medical & Health Science - ICMHS 2020. It will be held during 20th-21st April, 2020 at San [...]
30th Annual Art And Science Of Health Promotion Conference
2020-04-20 - 2020-04-24    
All Day
Integrating Health Promotion into the Organization’s and Community’s Core Values A common element of virtually every successful health promotion program in workplace, clinical and community [...]
ISER- 796th International Conference On Science, Health And Medicine ICSHM
2020-04-21 - 2020-04-22    
All Day
ISER- 796th International Conference on Science, Health and Medicine ICSHM is a prestigious event organized with a motivation to provide an excellent international platform for [...]
Biomolecular Condensates Summit
2020-04-21 - 2020-04-23    
All Day
An ever-increasing amount of evidence points towards the importance of Biomolecular Condensates function to health and disease. However, with many of the fundamental questions behind [...]
The Middle East Pharma Cold Chain Congress
2020-04-22 - 2020-04-23    
All Day
The pharma sector in the MENA region has witnessed rapid development, which has been largely fueled by high population growth, increased life expectancy coupled with [...]
45th Annual Regional Anesthesiology And Acute Pain Medicine Meeting
2020-04-23 - 2020-04-25    
All Day
ASRA was officially "re-founded" in 1975, led by Alon P. Winnie, MD, who had a dream of a society devoted to teaching regional anesthesia. (An [...]
25th International Conference on Dermatology & Skin Care
2020-04-27 - 2020-04-28    
All Day
About Conference Derma 2020 Derma 2020 welcomes all the attendees, lecturers, patrons and other research expertise from all over the world to 25th International Conference on Dermatology & [...]
Events on 2020-03-30
Events on 2020-04-02
Events on 2020-04-03
Events on 2020-04-08
Events on 2020-04-14
Events on 2020-04-15
Events on 2020-04-22
Events on 2020-04-23
Events on 2020-04-27
Articles

Time to update your security precautions? Take these five basic steps.

security precautions
Time to update your security precautions? Take these five basic steps.

If you’re a small healthcare IT operation, a simple spreadsheet might do the trick. If you’re larger, a not-so-simple spreadsheet might be in order.

Regardless of how you do it, hospitals, clinics and other healthcare organizations must identify and monitor every single instance of computer network access. They’re called endpoints, says Larry Ponemon, founder of the security consulting firm the Ponemon Institute, and for you they exist as vulnerabilities.

Your job is to eliminate them through a series of basic security-promoting tasks.

While your IT security staff may have conducted such work in the past related to HIPAA, “in the past” is never recent enough for a robust security program in the hyper-changing technology world, especially if the work was incomplete or conducted over a year ago. In too many hospitals, security protections have been a one-shot effort conducted years ago with little follow-up. Your hospital may need to undertake the following actions from a blank slate perspective in order to combat today’s sophisticated threats.

Identify every device on the network.

We’re not talking about just desktops and laptops, here. Think more broadly and identify everything that has a network connection—desktops, laptops, tablets, mobile phones, IoT devices, etc.  You may have also permitted network access for clinicians and staff using their own devices, so take the time to identify those users as well.

Update your software.

After figuring out how many networked devices you have, make sure the security applications on each, which includes operating systems, are up to date.

“One of the main reasons hospitals have become ground zero for ransomware attacks is that almost every modern medical device is now a computer,” writes Phillip Hallam-Baker, vice president and principal scientist for cybersecurity firm Comodo, in Health Data Management. “It is not uncommon to find a multi-million dollar device such as an MRI machine running Windows XP Embedded, an operating system version that was last updated when it was retired in 2011.”

Hallam-Baker adds that defeating malware, particularly ransomware, requires a three-pronged approach:

  • Scan inbound email for infected attachments and links to malware sites that automatically download to your computer.
  • Block access to malware sites.
  • Run anti-virus software on every computer in use.

Spread the security gospel.

Now, it’s time for the social engineering. According to respondents in a Ponemon Institute study on networks and cybercrime, 81 percent feel the greatest threat to security is negligent and careless employees who don’t follow established policies and practices. This issue has been complicated in recent years by threats from insecure mobile devices. Train every employee in proper security practices, and reinforce them frequently.

Secure the patient portal.

At some point, turn your attention to the patient portal you installed to meet Meaningful Use. Keith Fricke, the principal consultant at tw-Security, wants you to know that it could create vulnerabilities. Imagine, for example, hostile code that lives on a popular website and downloads to a patient’s home computer. Later visits by that patient to an insecure hospital patient portal might provide a hacker with access to numerous patient records and the opportunity to pass along a virus, hitting your organization with a double whammy.

Cover your business associate bases.

In recent years, according to Ponemon, business associates (BAs) have endured even more data security incidents than healthcare providers.  A major reason is that HIPAA-required BA agreements, once signed, tend to sit on the shelves of all parties. Your partners, including IT vendors, may feel much less urgency about patient data security than you do. Make sure their lack of urgency does not impact your security by taking these steps:

  • Evaluate your entire list of vendors and similar partners to determine which have access to protected health information (PHI). Perhaps some BA agreements were never signed, which puts your organization at great risk.
  • Review all of your BA agreement files. Those dated prior to 2013 are obsolete, which adds to your hospital’s security vulnerability. The 2013 Omnibus HIPAA regulations are much stricter with business associates than the original HIPAA security rules, so it is critical to your security program that all BA partners sign an updated agreement.
  • Insist on compliance with the newer rules as a condition of your continued relationship. Double check your BA’s level of security and ask to see its most recent security risk assessment, one of its many obligations under HIPAA.

Taking these actions will greatly improve your organization’s security position and give you much, if not all, the information you need to perform your own HIPAA-required security risk assessment.

A final note on the costs of data security

Many organizations are ill-prepared for the growing onslaught of security incidents, not because they don’t care, but because of inadequate funding and security expertise. High expenditures for recent initiatives such as Meaningful Use and ICD-10 implementation have not helped. Moving forward, senior management must view data security as a cost of doing business, just as it is with financial services and retail. You will have to spend money on security regularly to make it work. As technologies change and security risks increase, a sustainable security program must include regular updates and different and/or additional spending.

In 2017, the security race between hackers and healthcare is going stronger than ever, but it’s not too late to secure your organization’s network if you move quickly and deliberately.

D’Arcy Gue is Director of Industry Relations for Medsphere Systems Corporation.