News | Cybersecurity | March 11, 2022

New report identifies connected medical devices, understaffed IT departments, and lack of employee security training as top threats to patient health information and electronic health records

Protected Harbor, a full-service IT solution and consulting firm, just announced the launch of its latest whitepaper on healthcare cybersecurity.

March 11, 2022 — Protected Harbor, a full-service IT solution and consulting firm, just announced the launch of its latest whitepaper on healthcare cybersecurity.  The whitepaper, titled “2021 Healthcare Data Breach Trend Report” offers readers an insight into evolving healthcare data breach patterns, predictive threats for 2022, and a playbook on how to increase IT durability to stop future healthcare data attacks.  

“Due to the financial value of patient health information, electronic health records stored in healthcare organizations are a major target for cybercriminals,” said Richard Luna, CEO of Protected Harbor. “Attacks and exploits are evolving every day, becoming more sophisticated and carrying more devastating payloads. Protections must be implemented at every layer of a system.”

The healthcare data breach report, conducted by Protected Harbor, included statistics from 686 security breaches of 500 or more healthcare records; as reported by HHS’ Office for Civil Rights (OCR). 74% of all healthcare data breaches are from hacking and IT incidents, attributed to understaffed healthcare IT departments, legacy technologies not configured properly for new medical technology, and a lack of interoperability standards. This problem is costing companies around $9.23M per data breach, as reported by IBM.

The Threats

As the industry continues to evolve and respond to the data growth from increased usage of medical devices and technologies, more vulnerabilities are discovered. The “2021 Healthcare Data Breach Trend Report,” by Protected Harbor, has identified the following top healthcare data security threat issues heading into 2022:

·       IoT connected medical devices

·       mHealth & Telehealth technologies

·       The Cures Act & remote patient access

·       Understaffed & underfunded IT departments

·       Lack of employee security training

 

The Solutions

Improving healthcare cybersecurity and network architecture will harden healthcare infrastructure, increase application durability, decrease overall costs, and increase public trust. The report also identified the following data protection suggestions for Healthcare IT departments:

·       Fast healthcare Interoperability resource standards

·       Multi-factor authentication

·       Mobile device security strategy

·       Isolated and validated backups

·       Integration of managed service teams

“Digitalization has drastically increased the amount of data and how the healthcare industry does business. But the original network architectural designs were not meant to handle this size of a workload,” continued Luna. “Teams need to do more regular penetration tests, malware tests, backup validation, disaster recovery drills, improve monitoring, run compliance scans, and keep to a maintenance schedule. It is not easy to keep track of so many moving parts that have been integrated since Covid-19. That is why so many HCIT departments are teaming up with managed service firms.”

The Numbers

Additional findings from the 2021 Healthcare Data Breach Trend Report, include network server attacks accounting for 53% of all incidents in 2021, followed by email attacks at 27%. 21% of breaches can be attributed to unauthorized access, such as granting too much-privileged access to third parties. Hacking and IT incidents targeting outpatient and specialty clinics have grown 41% in the past year. 30% of all large data breaches in the U.S. are from hospitals. And California has the most healthcare data breaches, making up 10% of all breaches in 2021; followed by Texas (8%) and New York (6%).

For more information: https://protectedharbor.com/

More HIMSS 2022 content


Related Content

Feature | Radiology Business | By Melinda Taschetta-Millane

One on One interviews with radiology trailblazers and historic FDA clearances made the top-read list for April. Take a ...

Time May 03, 2024
arrow
Feature | Information Technology | By Melinda Taschetta-Millane

The Healthcare Information and Management Systems Society (HIMSS) Global Health Conference and Exhibition brought ...

Time May 01, 2024
arrow
News | FDA

April 30, 2024 — International medical imaging IT and Cybersecurity company Sectra’s digital pathology solution together ...

Time April 30, 2024
arrow
News | Enterprise Imaging

April 25, 2024 — International medical imaging IT and cybersecurity company Sectra has signed two contracts to provide ...

Time April 25, 2024
arrow
News | Artificial Intelligence

April 19, 2024 — Large language model GPT-4 matched the performance of radiologists in detecting errors in radiology ...

Time April 22, 2024
arrow
News | PACS

April 11, 2024 — Mach7 Technologies, a company specializing in innovative medical imaging and data management solutions ...

Time April 11, 2024
arrow
News | Radiation Dose Management

April 11, 2024 — Prelude Corporation (PreludeDx), a leader in precision diagnostics for early-stage breast cancer ...

Time April 11, 2024
arrow
News | Mammography

April 11, 2024 — Volpara Health Technologies Ltd., a global leader in software for the early detection and prevention of ...

Time April 11, 2024
arrow
News | Society of Breast Imaging (SBI)

April 11, 2024 — iCAD, Inc., a global leader in clinically proven AI-powered cancer detection solutions, announced today ...

Time April 11, 2024
arrow
News | Cybersecurity

April 10, 2024 — The American Medical Association (AMA) released informal survey findings (PDF) showing the ongoing ...

Time April 10, 2024
arrow
Subscribe Now