Hospitals, doctors’ networks, insurance companies, and other healthcare organizations are guardians of valuable protected health information (PHI). As such they are particularly vulnerable to cyber attacks – and these threats are escalating. In 2020, healthcare IT security breaches increased by 55% year-over-year, with over 26 million individuals impacted.
Security specialists have been sounding the alarm about cybersecurity performance issues in the healthcare sector for some time. In fact, Bitsight research shows that healthcare organizations have much to do to improve their security postures. For instance, 61% of these companies are at heightened risk of ransomware attack due to poor security hygiene and vulnerabilities.
Fortunately, there are some basic measures that healthcare organizations can practice to reduce cybersecurity risk, protect PHI, and ensure the continuity of patient care.
1. Understand the attack surface
The first step to better healthcare IT security is understanding the extent of the organization’s digital footprint and what needs protecting. This includes servers in the data center, medical devices in the ICU, assets and applications in the cloud, and more.
But this isn’t easy. Healthcare organizations have large and complex network infrastructures. Traditional IT inventory audits can help, but they tend to be a one-and-done approach and don’t always account for new devices as they come online or the “hidden” nature of cloud-based services.
A better way to understand and manage cyber risk is to conduct an attack surface scan. Performed in real-time as needed, attack surface monitoring lets security and risk teams quickly discover and visualize digital assets on-premises, in the cloud, and across geographies, subsidiaries, and a remote workforce. The scan will also assess each device for cyber risk exposure so healthcare IT security pros can make informed and comparative decisions about where to prioritize cybersecurity efforts.
For instance, if a healthcare system has 100,000 devices across 15 locations, the scan will display all devices and identify, by location, those with security vulnerabilities or malware infections. It will also visualize which assets have the highest risk exposure. With these insights, teams can pinpoint the location of potential security issues and focus resources on those devices that are essential to the continuity of operations or contain a vast amount of sensitive data.