Research from Accenture and the American Medical Association (AMA) reveals a sobering statistic about cybersecurity: “more than four in five U.S. physicians (83 percent) have experienced some form of a cybersecurity attack.”
Healthcare facilities and providers are encouraged to review the updated list of penalties for compliance purposes.
HHS has issued an alert that a phishing scam email is being circulated on mock HHS departmental letterhead. This email, which appears to be an official government communication to HIPAA covered entities, prompts recipients to click a link regarding possible inclusion in the HIPAA audit program.
All healthcare related entities should periodically complete a system-wide risk analysis, implement a risk management plan and strengthen internal policies and procedures to mitigate, if not eliminate, the possibility of such an event from occurring. As highlighted by this case, such risk analysis must take into account computers and devices used by employees both in and out of the office or facility.