Most Popular Stories
- Wireless devices highlight list of life-saving technologies
- Study: Cancer drugs shouldn't cost more than $20K per month
- Moody's leery of uncompensated care backlash
- Still not all a-Twitter
- Blues see $350M gain from anti-fraud investigations
- SPOTLIGHT: Medical costs an obstacle for 25 percent of Americans
Featured Jobs
-
Director of Med/Surg Job for Maryland
StaffPointe, LLC - near D.C., MD -
Nursing Infection Control Job for Libya
StaffPointe, LLC - confidential -
HOD Cardiology Nurse Job for Libya
StaffPointe, LLC - confidential, DC -
Dir/Quality Initiatives Job for Texas
StaffPointe, LLC - Fort Worth, TX -
Pediatrician
Executive Office Services - Philadelphia, PA
Events
Paid Research Reports
- Pricing and Reimbursement in Key Asia Pacific Markets
- Delivery Mechanisms for Large Molecule Drugs: Successes and failures of leading technologies and key drivers for market success
- The Cardiovascular Market Outlook to 2013: Competitive landscape, global market analysis and pipeline analysis
- Intellectual Property and Outsourcing in China: Minimizing risk whilst maximizing return on investment
- Health Care Equipment & Supplies: Global Industry Guide
- 2009 Trends to Watch: Healthcare Technology
Hot Topics >> HIPAA | Images of HIMSS09 | iPhone healthcare apps | Health plan CEO compensation
Free Newsletter
FierceHealthIT is the leading source of Healthcare IT news with a special focus on CPOE, EMR adoption, HIPAA compliance and other critical areas. Join 28,000+ healthcare industry insiders who get FierceHealthIT via weekly email for their must know IT news. Sign up today!
About | View Sample | Privacy
Latest News
Popular Topics
Whitepapers
- Information Security in Health Care- Four Critical Errors
- The State of Pay-for-Performance: Frost & Sullivan whitepaper
- Open Source and Healthcare IT
- Financing Options for Nonprofit Rural and Community Hospitals
- The Total Economic Impact of VMware View on the Healthcare Industry
- HIPAA Compliance and Smart Cards: Solutions to Privacy and Security Requirements
Time to become a security advocate

![]()
Folks, please note, you're not going to open up FierceHealthIT and find that I'm arguing for hospitals to spend less time on HIPAA. While it's easy to argue the details in how it's implemented, I think that HIPAA compliance is a good thing for the industry. For one thing, if people don't trust that their data is safe even in their own provider's offices, health data exchanges are pretty much doomed.
That being said, the study summarized in today's issue makes an interesting point. In the study, researchers found that hospitals were spending so much time making sure that they were compliant with HIPAA privacy mandates, they were losing site of other key security risks.
If you're an HIT manager, it's entirely appropriate that you also spend part of your time making sure your systems can ensure that patient records are only being accessed by appropriate parties.
At the same time, I'm sure you spend a meaningful part of your professional life worrying about malicious intruders, lost laptops with unencrypted data and other potential security disasters. But with the huge burden that privacy compliance imposes on hospital executives, you might not.
The truth is, security is one of those painful issues that only seems important to non-specialists once a disaster happens. When a bridge collapses, everyone wants to increase infrastructure funding. And when a health data system break-in happens? By God, go ahead and buy the latest and greatest security suite, Mr./Ms. HIT manager!
The problem is, as you folks know, it's really imprudent to wait until something bad happens to shore up your security infrastructure. Once a break-in happens, your organization could face consequences for years to come. Not only that, since security threats evolve daily, you can't just patch it and forget it the way you could a collapsed beam or broken pipe--so it's critical to think about security systematically. My impression is that hospital CEOs, in a word, don't.
So, HIT pros, I think it's time for you to engage in some serious and systematic research on the problem. By all means, print articles like the one I cited below. Gather statistics on the pervasiveness of HIT threats. And gather a few security nightmare scenarios in your pocket--what could happen to your facility if you're unlucky, and what it would cost. The truth is, if you don't advocate for tough security, it seems nobody will. - Anne
Related Stories
- GA hospital health data breach due to outsourcing error
- Privacy and security in today's health society
- Study: Stronger privacy rules slow EMR adoption
- WA state hospital exposes patient info on Web
- Patient webcam raises privacy issues
- GAO: Gov't HIT efforts lack privacy, security
- SPOTLIGHT: Hospitals face ID security holes
- New Hampshire EMR privacy rule struck down
- HHS plans surprise HIPAA audits
- U.S. hospitals have security 'blind spot'
Comments
Post new comment
Home
| Subscribe | Advertise | Mobile Edition | RSS |
Privacy
| Site MapTHE FIERCEMARKETS NETWORKFierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceVoIP | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe© 2009 FierceMarkets, Inc. All rights reserved. |
![]() |






Click here to get the FierceHealthIT email newsletter for FREE!
Be the first to comment