Accessibility links
  • Skip to main content
News Icon NEWS FILTER
All News Security Education Videos Scams & Phishing Your Security Mobile Security Identity Theft Corporate Security
Search Icon SEARCH
 

Email Icon SUBSCRIBE TO WEEKLY NEWSLETTER
2024 HIPAA Rules Promote Data Privacy, Cyber Awareness Training
Facebook   X   LinkedIn   Email

2024 HIPAA Rules Promote Data Privacy, Cyber Awareness Training

January 28, 2024

The 2024 HIPAA requirements for healthcare organizations include a focus on patient data privacy and cyber incident preparedness. It's a welcome change with new compliance that all Americans can be happy about, especially when their PHI (protected health information) is better guarded from cybercrime.

Employee Education Takes Aim

Among the HIPAA changes is a fortified requirement to cyber-educate employees. Phishing and cyber-awareness are two vital components to avoiding data breaches, and HIPPA is now focusing on the importance of both together. Remember, 90% of all cyberattacks start with a phishing email, and it only takes one employee to take the bait.

Since employees are on the front lines, cyber-education can prevent a massive data breach or malware attack. Training needs to be ongoing since cyberthreats evolve and trend over time, especially when tools like artificial intelligence are available for abuse by cybercriminals. HIPAA now requires employees to be up to date about ongoing threats and how to spot and prevent phishing and other cyberattacks.

Incident Response

The way a healthcare organization responds to a cyberattack helps mitigate the damages and at the beginning is alerting those who need to know, including what data may have been compromised. HIPAA stipulates an effective response plan needs to be in place with a team ready to act on many levels. The incident response team plan has an industry standard to follow. That plan includes attack preparation, setting data compromise indicators, a plan to mitigate and recover, and a review of the attack and response to improve upon going forward.

Data Privacy and Security Together

Acknowledging that electronic health records (ePHI) are here to stay; HIPAA rules view data privacy and security as the same goal. Protecting patient PHI is in the forefront, a necessary response to improved hacking abilities over time and cybercrime using artificial intelligence. The need for bolstered security practices, patient rights, and improved data handling are no longer on the back burner. Protecting all these concerns will keep all PHI safer from potential cyberattacks to come.

If it’s your role at a healthcare organization to secure information, do more research to find out how to bolster security and implement these rules to keep that data as safe as possible.


Has Your Account Been Compromised? Five Cyber Smart Tips Everyone Can Use

Your Security

Has Your Account Been Compromised? Five Cyber Smart Tips Everyone Can Use

The transition to living life through our devices has become very real for scores of people and businesses. By now, the coronavirus has changed our lives in ways we never expected. This transition includes doing most things from home. Unfortunately, adapting to online life also gives bad actor’s a cornucopia of targets to exploit. There are proactive steps to take when you suspect an account may be compromised, including ways to help keep it from happening to begin with. READ FULL STORY

Healthcare Gets A Shot In The Arm From Cybersecurity Toolkit

Identity Theft

Healthcare Gets A Shot In The Arm From Cybersecurity Toolkit

The Healthcare and Public Health (HPH) industry has long been a target for cybercrime. In particular, hospitals continue to be crippled by ransomware attacks. With patient lives and health services at risk, help with these devastating attacks has been desperately needed. And now, that help has arrived with a cybersecurity “toolkit.” The Biden administration created the toolkit in partnership with Health and Human Services (HHS) and the Cybersecurity and Infrastructure Security Agency (CISA). READ FULL STORY

SIM Swap Sinks Data Security For Medical Research Org

Mobile Security

SIM Swap Sinks Data Security For Medical Research Org

A SIM swap attack targeting an Advarra medical research exec recently put the company’s data security at risk. The company, a provider of medical research and clinical trial assistance, experienced the data breach by the ransomware group ALPHV, aka BlackCat. It’s believed the ransomware threat group specifically targeted the victim for his phone number and was not a random attack. Healthcare is one of the top industries targeted by ransomware groups for its data-rich environments. READ FULL STORY








Close
Fraud News & Alerts!

Keep up with the latest cyber security news through our weekly Fraud News & Alerts updates. Each week you will receive an email containing the latest cyber security news, tips and breach notifications.



You're all set!

You will receive your first official security update email within the next week.

A welcome email has also just been sent to you. If you do not receive this email within the next few minutes, please check your Junk box or spam filter to confirm our emails are not being blocked.


 
Help  
Enter any word or words you like.        

The email newsletter will arrive from news@stickleyonsecurity.com


Loading
Please wait...