Most Popular Stories
Featured Jobs
-
Electronic Health Records Application Support Manager RN-New Year New Career
Avanti on behalf of Respected Health System - San Francisco, CA -
ICD-10 Revenue Cycle, Manager
Meditology Services - Atlanta, GA
Events
- IHI's Transforming the Primary Care Practice
May 1-3, 2012 — San Diego, CA - IHI's Breakthrough Series College
April 11-13, 2012 — Cambridge, MA - 3rd Healthcare IT Innovation Asia
Mar 14-15 2012 — Singapore - From IHI: The Patient Experience Seminar
March 27-28 — Boston, MA
Paid Research Reports
- Electronic health records: getting it right first time
- Cloud Computing Adoption In The APAC Life Sciences Industry
- Stakeholder Opinions: Ophthalmology - Leading brands under threat
- Genomics, Proteomics and Metabolomics in Diagnostics: Market landscape, innovative technologies and future outlook
- Healthcare Regulatory Update: The United Arab Emirates
- Point of Care Testing: Evaluating the return to evidence based medicine, novel technologies and the competitive landscape
Free Newsletter
Latest News
Free Newsletter
FierceHealthIT is the leading source of Healthcare IT news with a special focus on CPOE, EMR adoption, HIPAA compliance and other critical areas. Join 44,00 healthcare industry insiders who get FierceHealthIT via daily email for their must know IT news. Sign up today!
About | View Sample | Privacy
Top Tags
Whitepapers
- Enterprise Security for the Healthcare Industry – Assuring Regulatory Compliance, ePHI Protection and Secure Healthcare Delive
- qMetrix for Healthcare
- Even More Than Medicine: How Illinois Hospitals Help Their Communities
- MPERS TECHNOLOGY: Facilitating an Independent Lifestyle for the Growing Senior Population
- Enterprise Security for the Healthcare Industry - Assuring Regulatory Compliance, ePHI Protection and Secure Healthcare Delivery
- ICD-10-CM/PCS
Professionalism of your hospital's info security staff vital to data protection
Hospital IT departments need to increase the professionalism of staff assigned to data security, said Ali Pabrai, a Newport Beach, Calif., health IT consultant, in an article published in a patient privacy newsletter from AIS Health. (Full disclosure: FierceHealthcare has a business relationship with AIS.)
"Many organizations lack the concept of a true information security team with the skill sets that you'd expect a security team to have," Pabrai said, addressing CIOs. "So take a deeper look at the skills, the knowledge [of] your information security officer, across the security professionals that may be within the IT department. It's very important to make sure you've got the appropriate skill sets applied to the security controls you've acquired within your enterprise."
Pabrai urged CIOs to address the security of personal identification information, as well as personal health information. He also stressed the importance of audit log consolidation to make sure that hospitals know when data has been lost, stolen, or compromised.
"Is someone really looking at those log files being generated by the system applications to make a determination that there may have been any unauthorized access?" he asked. "Those are questions that we need to ask ... to take a look at what is the state of our information security within the organization."
Pabrai also hit familiar bases, such as the need for stronger encryption and authentication. Every action that affects a database, he said, should be traceable back to an identifiable individual.
Because of the rise in news reports about security breaches, Pabrai noted, privacy officials in healthcare organizations have an unparalleled opportunity to get the attention of their chief executives and board members. They should seize this opportunity, he said, to "execute and fund a robust information security plan."
"A breach is not just a compliance issue," he concluded. "It's a significant risk to the organization, and if an organization suffers a breach, chances are it will impact the organization in seven figures."
To learn more:
- read the AIS summary of Pabrai's report (registration required)
- visit the Privacy Rights Clearinghouse website
Related Articles:
Hospital use of data breach insurance increases as incidents multiply
Health data breaches cost $6.5 billion annually
Related Stories
- Renamed Direct Project to demonstrate email-like secure messaging
- HHS: Laptop theft is No. 1 source of health data breaches
- VA regional CIO: Security is everyone's responsibility
- New HIPAA rules shine light on remote access controls
- Laptop stolen at TX hospital
- CompTIA survey: Mobile devices adding to security threats across industries
- Report: Data breaches from unencrypted devices up 525% in 2011
- Patient privacy concerns lead VA to test cloud application
- Privacy bill requires consent for collection of personal health info
- Arizona hospital, California health department lose patient records
Home
| Subscribe | Advertise | Mobile Edition | RSS |
Privacy
| Site Map
| Editors | List in Marketplace | Supplier in MarketplaceTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceCRO | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2012 FierceMarkets. All rights reserved. |
![]() |
