Most Popular Stories
- Cloud-based EHRs raise data rights questions
- Study: E-prescribing improves medication adherance
- Texting helps with at-risk pregnancies, Partners plans to expand program
- Healthcare jobs will grow the fastest of all industries
- GE to discontinue EHR stand-alone product
- Health network hires ONC's community college consortia students for EHR implementation
Featured Jobs
-
Epic Ambulatory Beacon Consultant
Meditology Services - NC -
ICD-10 Revenue Cycle, Manager
Meditology Services - Atlanta, GA
Events
- 3rd Healthcare IT Innovation Asia
Mar 14-15 2012 — Singapore - From IHI: The Patient Experience Seminar
March 27-28 — Boston, MA - ICD-10 Reality Check - Breakfast Panel at HiMSS 2012!
February 22, 2012 - Medical Devices Summit 2012
March 6-7 2012 — The Boston Park Plaza Hotel & Towers, Boston, MA
Paid Research Reports
- Electronic health records: getting it right first time
- Cloud Computing Adoption In The APAC Life Sciences Industry
- Stakeholder Opinions: Ophthalmology - Leading brands under threat
- Genomics, Proteomics and Metabolomics in Diagnostics: Market landscape, innovative technologies and future outlook
- Healthcare Regulatory Update: The United Arab Emirates
- Point of Care Testing: Evaluating the return to evidence based medicine, novel technologies and the competitive landscape
Latest News
Free Newsletter
FierceHealthIT is the leading source of Healthcare IT news with a special focus on CPOE, EMR adoption, HIPAA compliance and other critical areas. Join 44,00 healthcare industry insiders who get FierceHealthIT via daily email for their must know IT news. Sign up today!
About | View Sample | Privacy
Top Tags
Whitepapers
- qMetrix for Healthcare
- Improving Self Pay At All Points of Service
- Leveraging Uptime and Availability to Improve Productivity with EMR/EHR
- Solutions for Health Insurance Portability and Accountability Act (HIPAA) Compliance
- KPIs for Effective Real-Time Dashboards in Hospitals
- The State of EHRAdoption: On The Road to Improving Patient Safety
FTC lawyer: Multi-layered data security essential in healthcare
Want to safeguard health information against the growing specter of identity theft? Try a strategy of "defensive depth," such as two-factor authentication and other multi-layered security policies, a government attorney recommends.
"Relying on one defense is problematic," Alain Sheer, a lawyer from the Federal Trade Commission's Division of Privacy and Identity Protection, said at the Safeguarding Health Information: Building Assurance Through HIPAA Security conference in Washington, D.C., last week, Health Data Management reports. For example, a weak authentication system could invite a hacker to find the decryption key and access encrypted data.
Sometimes, good, old common sense comes into play. Sheer told of how the FTC and HHS sanctioned CVS Caremark for improperly telling the public that the pharmacy chain would safeguard patient information. In reality, according to Sheer, CVS employees were disposing of paper pharmacy records--complete with patient identifiers and credit/debit card numbers--in public trash receptacles.
It's also a good idea for healthcare organizations to block peer-to-peer file sharing, Sheer said. An FTC investigation turned up sensitive personal data on more than 100 publicly accessible file-sharing sites. "We found health information, drivers' licenses, financial information and Social Security numbers, among other information," Sheer said.
For more details:
- read this Health Data Management story
Related Articles:
It's time to revisit biometrics for patient ID, security
Report: Healthcare organizations may have a false sense of data security
Related Stories
- SPOTLIGHT: Digital copiers pose HIPAA security risks
- Massachusetts hospital may have lost backup files affecting 800,000 people
- Report: Healthcare organizations may have a false sense of data security
- Remote users often lax with health data protection
- Renamed Direct Project to demonstrate email-like secure messaging
- HHS: Laptop theft is No. 1 source of health data breaches
- Pharmacies sue CVS Caremark over privacy issues
- HHS quietly withdraws HIPAA breach-notification rule
- New HIPAA rules shine light on remote access controls
- WellPoint data may have been compromised
Home
| Subscribe | Advertise | Mobile Edition | RSS |
Privacy
| Site Map
| Editors | List in Marketplace | Supplier in MarketplaceTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |
