Home > EHR Security

EHR Security

There has been a shift in thinking when it comes to IT consumerization for many healthcare IT professionals. They are actually moving away from the BYOD trend and changing their focus toward something more up to date. The end user more »

In a recent guest post on John Halamka’s blog, Fabienne Bourgeois, MD, of Children’s Hospital Boston analyzed some privacy concerns and roadblocks for adolescent personal health record (PHR) interactions while detailing Children’s approach to patient portals. The subject of patient privacy and more »

Mac McMillan, CEO of CynergisTek, Inc. CynergisTek is a healthcare information security services and consultant company that helps providers in areas such as risk assessment and security testing. McMillan is a HIMSS Fellow and current chair of the HIMSS Privacy more »

With literally thousands of staff members operating within your healthcare organization – all asking for more mobility options – how do you create an environment that will work for everyone? Furthermore, what process is involved in making this type of more »

A recent HIMSS Analytics report titled Healthcare Provider Network Solutions, Barriers and Challenges analyzed responses from seven healthcare information officers such as CMIOs, CIOs or IT Directors at HIMSS13. This small focus group decided upon four key health IT concerns more »

Dennis M. Seymour, senior security architect at Ellumen, a government and healthcare solutions provider, and chair of the HIMSS Privacy & Security Steering Committee Chair, has seen mobile security in healthcare shift direction over the past few years. In serving more »

Companies across all industries are creating logical controllers and utilizing intelligent network segmentation to create robust BYOD platforms. Why is this happening? The goal is to create a happier and a more efficiency user. According to a recent Cisco Partner more »

One of the core issues for health data breach victims over the past few years has been the refrain that the incident was an anomaly and won’t happen again. Viewing a breach as a rogue incident would exacerbate the problem more »

According to in-house HHS attorney Iliana Peters, the Department of Health and Human Services (HHS) will be offering additional guidance on the HIPAA omnibus rule. Rachel Seeger, Senior Health Information Privacy Outreach Specialist for the Office for Civil Rights (OCR), told more »

BYOD is becoming more and more popular in healthcare because of its convenience and potential cost savings. A recent Cisco study reporting that 88.6 percent of healthcare respondents using smartphones for work purposes is certainly a strong reflection of this more »

A new case study published by the Commonwealth Fund demonstrates how the Colorado Beacon Consortium (CBC), one of the 17 communities selected by the Office of the National Coordinator for Health Information Technology (ONC) through its Beacon Community Program, handles more »

Among the main security challenge with healthcare BYOD security lies in the dual-use nature of mobile devices. A stolen or lost physician’s laptop will probably already have security measures built in such as whole disk encryption and authentication requirements, but more »

In a proposed rule similar to another presented by the Centers for Medicare & Medicaid Services (CMS), the Office of the Inspector General (OIG) is proposing to extend the exception for donors of electronic health record (EHR) systems (i.e., safe more »

How healthcare providers and vendors that are part of a health information exchange (HIE) should be segmenting and securing sensitive information, such as mental health data, sexually transmitted disease (STD) information or drug/alcohol abuse history, remains somewhat ambiguous for many more »

With the HIPAA omnibus rule going into effect recently and the compliance date coming in September, not just healthcare providers are preparing but vendors as well. Below are a couple of recent offerings that are meant to help providers become more »

TriRivers Health Partners agreed to a deal back in October 2012 with RSA, EMC’s security division, to augment its security architecture, but there is value in taking time to integrate these types of products into current security environments. HealthITSecurity.com caught up with more »

Though Software as a Service (SaaS) is often referred to as a generally solid option for healthcare organizations looking to use cloud computing, the SaaS privacy and security implications can be ambiguous at times. In a recent blog post, John more »

The HIPAA omnibus rule went into effect yesterday and with it will come varying degrees of change for healthcare organizations. Some believe that the HIPAA changes are more cosmetic for healthcare organizations. But others such as Diana Warner, Director of more »

Today marks the effective date for the HIPAA omnibus final rule and the beginning of the six-month period in which covered entities, business associates and subcontractors have to ensure they’re HIPAA compliant. While the details of the new regulations have more »

NEW ORLEANS — The College of Healthcare Information Management Executives (CHIME) recently named Russell Branzel its new CEO and he’ll begin that role on April 5. Branzel has a wealth of experience in managing and securing patient data and was more »

Outgoing Assistant Secretary for Information and Technology and U.S. Department of Veterans Affairs (VA) CIO Roger W. Baker provided testimony last week on the VA and Department of Defense (DoD) joint EHR venture. In doing so, he highlighted how the more »

HIMSS13 will provide a variety of opportunities for attendees. Networking (and perhaps commiserating) with fellow healthcare executives will be important. Checking out vendors’ latest and greatest products will be worthwhile. They may even have time to grab some fresh New more »

The Electronic Health Record Association (EHR Association), recently released advice on EHR and data transmission security in its paper titled, Practical Guidance to Implement Meaningful Use Stage 2 Secure Health Transport for Certification and Meaningful Use. The group broke down more »

In sifting through the recent HIPAA omnibus changes, healthcare organizations that currently are or plan to be affiliated with military organizations such as the Department of Defense (DoD) or the Veterans Administration (VA) may want to analyze some rule overlaps. more »

The United States Government Accountability Office (GAO) released a report yesterday titled “Sustained and Coordinated Efforts Could Facilitate Data Sharing While Protecting Privacy.” The report explained the organization’s work in analyzing privacy and security issues related to data sharing, including more »

  • HealthIT Security Watch

     
  • Most Popular Topics