Understanding the Importance of Cybersecurity and Privacy in Healthcare
Real-world data breaches have brought to light the gaps in security within the healthcare industry, emphasizing the need for readiness and ongoing vigilance, according to Dr. Hannah K. Galvin, Chief Medical Information Officer at Cambridge Health Alliance.
Panel Discussion at HIMSS25 Cybersecurity Forum
At the Healthcare Cybersecurity Forum at HIMSS25, a panel discussion was moderated by Dr. Galvin, focusing on privacy standards, cybersecurity culture, and data protection. Erik Decker, VP and CISO at Intermountain Health, highlighted the alignment of the discussion with the goals of the Healthcare and Public Health Sector Coordinating Council Cyber Working Group’s strategic plan.
Alex Enriquez, Cyber Security Solution Lead at Avanade, referenced recent cyberattacks, such as the Change Healthcare breach and the Rhode Island Department of Administration’s Bridges system attack, underscoring the reputational harm caused by such incidents.
Challenges and Concerns
Erika Riethmiller, VP and Chief Privacy Officer at UCHealth, expressed concerns about vendor breaches and the downstream effects of cyber actors posting stolen data on the dark web. She emphasized the importance of having a robust incident response plan in place to address such security incidents.
Addressing interoperability issues, the panel discussed the controversy surrounding the use of the Carequality Network and the allowable uses of patient data under exchange agreements. The importance of scaling interoperable ecosystems while adhering to data sharing agreements was highlighted.
Moving Towards a Secure Healthcare Environment
The panelists acknowledged the significance of the voluntary Cybersecurity Performance Goals set by the U.S. Health and Human Services and emphasized the need for ongoing security measures beyond audits. Developing a security mindset and being proactive in addressing potential threats were deemed essential in safeguarding healthcare data.
As the healthcare industry continues to navigate the complexities of cybersecurity and privacy, it is imperative for organizations to stay informed, vigilant, and prepared to address evolving threats.
Andrea Fox is a Senior Editor at Healthcare IT News. For inquiries, please contact afox@himss.org.
Healthcare IT News is a HIMSS Media publication.