The AHA today hosted a briefing on Capitol Hill to examine cybersecurity threats facing the health care sector, and share how hospitals and health systems are responding. John Riggi, AHA senior advisor for cybersecurity and risk, said hospitals and health systems take seriously the protection of highly-sensitive and valuable information, and employ important security measures to safeguard clinical technologies and information systems, while continuing to enhance their data protection capabilities. “Cybersecurity is not just an information technology issue focused on risk to the security and privacy of patient data, it is an enterprise risk management issue focused on patient safety and delivery of care as a priority,” said Riggi, who joined the AHA in February after spending nearly 30 years with the Federal Bureau of Investigation in a variety of assignments. He explained that many hackers, have moved from hacking credit cards to health records because they can sell the health data for 10 times more than the credit card data on the dark web. Among other key takeaways, Riggi said hospitals and health systems should have good offline backups in case data becomes encrypted from ransomware attacks, and ensure vendors manage cybersecurity risks to their systems, since any potential attack against a vendor could result in harm to a hospital or health system’s information systems.

Related News Articles

Headline
Evan Williams, a certified association executive, will serve as new executive director for the American Society for Health Care Risk Management and the Society…
Headline
A joint advisory issued the week of July 8 by the Cybersecurity and Infrastructure Security Agency, National Security Agency, FBI and several international…
Headline
The AHA July 2 submitted comments to the Cybersecurity and Infrastructure Security Agency on its proposed rule establishing reporting requirements for…
Headline
The Department of Health and Human Services Health Sector Cybersecurity Coordination Center June 27 issued an alert about a critical vulnerability in MOVEit, a…
Headline
A joint report released June 26 by the Cybersecurity and Infrastructure Security Agency, FBI, the Australian Cyber Security Centre and Canadian Centre for…
Headline
The Health Information Sharing and Analysis Center June 27 issued a threat bulletin alerting the health sector to active cyberthreats exploiting TeamViewer. H-…