Close Menu
Gossips Today
  • Tech & Innovation
  • Healthcare
  • Personal Finance
  • Lifestyle
  • Travel
  • Business
  • Recipes
What's Hot

Laser-powered fusion experiment more than doubles its power output

AdvaMed CEO Scott Whitaker pleads for tariff relief in Senate hearing

Prime Members Are Ahead of the Game With These 50 Exclusive Early Memorial Day Deals at Amazon—Up to 86% Off

Facebook X (Twitter) Instagram
Sunday, May 18
Gossips Today
Facebook X (Twitter) Instagram
  • Tech & Innovation

    Laser-powered fusion experiment more than doubles its power output

    May 18, 2025

    MIT disavows doctoral student paper on AI’s productivity benefits

    May 18, 2025

    Build, don’t bind: Accel’s Sonali De Rycker on Europe’s AI crossroads

    May 17, 2025

    OpenAI’s planned data center in Abu Dhabi would be bigger than Monaco

    May 17, 2025

    xAI blames Grok’s obsession with white genocide on an ‘unauthorized modification’

    May 16, 2025
  • Healthcare

    AdvaMed CEO Scott Whitaker pleads for tariff relief in Senate hearing

    May 18, 2025

    House committees advance reconciliation text with big impacts on healthcare

    May 18, 2025

    Rite Aid sells upwards of 1,000 stores to CVS, Walgreens, others

    May 17, 2025

    Residents more likely to suffer physical restraints, bedsores at bankrupt nursing homes: report

    May 16, 2025

    Kaiser invests in AI supply chain startup

    May 16, 2025
  • Personal Finance

    4 Steps to Navigate Marriage and Debt

    May 11, 2025

    Buying a Fixer-Upper Home: What to Know

    May 10, 2025

    How to Talk to Your Spouse About Money

    May 10, 2025

    Millennials and Retirement – Ramsey

    May 9, 2025

    Retirement Education – Ramsey

    May 9, 2025
  • Lifestyle

    3 Fixes If You Hate the Way Your Pants Fit (That Have Nothing to Do with Your Waist Size)

    May 14, 2025

    On Sale Now: 9 Nike Sneakers Under $100 You’ll Want to Wear All Summer

    May 10, 2025

    Get the Look: Chateau Vibes, Courtyard Rates

    May 8, 2025

    Midlife Crisis, but Make It Casual

    May 6, 2025

    The Shoes You Buy Will Last Longer If You Just Understand This

    April 23, 2025
  • Travel

    Prime Members Are Ahead of the Game With These 50 Exclusive Early Memorial Day Deals at Amazon—Up to 86% Off

    May 18, 2025

    This Weeklong, Food-focused Train Ride Through Europe Was an Unexpected Way to Taste My Way Through the Region

    May 17, 2025

    I’m a TSA Employee—These 10 Mistakes Will Make You 'That' Person in the Security Line, and How to Avoid Them

    May 17, 2025

    This U.S. State Has the Most Road Rage, Report Finds

    May 16, 2025

    One of New Zealand's Most Impressive Resorts Has 20 Suites Set Along the Country's Longest River

    May 16, 2025
  • Business

    Housing market shift: Foreclosures are creeping back up again

    May 18, 2025

    North Dakota’s Theodore Roosevelt Presidential Library will redefine what a presidential library can be

    May 17, 2025

    From lab to market: Monetizing R&D 

    May 17, 2025

    OpenAI launches Codex, an AI agent for coding

    May 16, 2025

    Will NJ Transit go on strike? New warning as Friday midnight deadline nears

    May 16, 2025
  • Recipes

    challah french toast

    May 6, 2025

    charred salt and vinegar cabbage

    April 25, 2025

    simplest brisket with braised onions

    April 2, 2025

    ziti chickpeas with sausage and kale

    February 26, 2025

    classic lemon curd tart

    February 1, 2025
Gossips Today
  • Tech & Innovation
  • Healthcare
  • Personal Finance
  • Lifestyle
  • Travel
  • Business
  • Recipes
Health & Wellness

New legislation aims to tame ‘Wild West’ in healthcare cybersecurity

gossipstodayBy gossipstodayOctober 17, 2024No Comments5 Mins Read
Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
New Legislation Aims To Tame ‘wild West’ In Healthcare Cybersecurity
Share
Facebook Twitter LinkedIn Pinterest Email

New federal legislation that aims to set cybersecurity standards for healthcare organizations is needed, but many hospitals will likely require more funds to bring their defenses into compliance — and maintain those improvements, experts say.

The Health Infrastructure Security and Accountability Act, introduced by Sens. Ron Wyden, D-Ore., and Mark Warner, D-Va., last month, would direct the HHS to develop minimum cybersecurity standards for providers, health plans, claims clearinghouses and business associates, including stronger requirements for systemically important entities and those deemed key to national security. 

It also would require covered entities to conduct annual security risk audits, and provide funds to hospitals to help them adopt cybersecurity practices. The bill was referred late last month to the Senate Committee on Finance for consideration. 

“With hacks already targeting institutions across the country, it’s time to go beyond voluntary standards and ensure health care providers and vendors get serious about cybersecurity and patient safety,” Warner said in a statement when the bill was released. 

Experts say the bill is a good starting point to boost cyber preparedness, especially because the healthcare sector is often vulnerable to dangerous attacks.

“We can’t really just let the whole industry do what it wants to do,” said Steve Cagle, CEO of healthcare cybersecurity firm Clearwater. “It’s a bit of the Wild West.”

‘A little drop in the ocean’

The legislation would allocate $800 million over two years for 2,000 rural and urban safety-net hospitals to adopt essential cybersecurity standards. It would also provide $500 million to incentivize all hospitals to follow enhanced cyber practices.

But those funds likely won’t be enough for all hospitals to adopt and sustain cyber improvements, said David Chaddock, managing director in consultancy West Monroe’s cybersecurity practice.

“That will be a little drop in the ocean,” he said.

The problem is that cybersecurity isn’t an issue that requires just one investment — it’s an ongoing practice that needs a host of personnel, Cagle said.

Finding workers could be challenging. Cybersecurity talent is already in shortage globally, and salaries at health systems often can’t compete with compensation in other sectors that are also on the hunt for cyber workers. 

Under-resourced hospitals likely won’t have the scale to attract an experienced cybersecurity leader, and may need to outsource their cybersecurity programs to an outside provider to keep up, Cagle said. 

That can be difficult to fit into their budgets, especially when hospitals have other needs to contend with, like new equipment or nurse staffing.

Some small hospitals employ just one or two people in their IT departments in total, compared with dozens of personnel dedicated to security alone at larger health systems. 

Monitoring for threats, detecting suspicious activity, responding to potential attacks and patching vulnerabilities in hospitals’ technology systems is a 24/7 job, needed 365 days a year, Cagle said. 

And that doesn’t include other key work, like policy and procedure writing, technical testing and risk analysis. 

“These are the basic, essential things we have to have. It’s multiple people, and it’s multiple skill sets,” Cagle said. “Money is going to help them. [But] you’re not going to give them enough people.”

More prescriptive cyber assessments

HIPAA has long been the go-to law when it comes to healthcare privacy and security, said Melissa Crespo, a partner at law firm Morrison Foerster.

But the law was enacted in 1996, a different era when it comes to healthcare technology. Even when Crespo began practicing years later, most data breaches were related to lost laptops or paper records, not ransomware attacks supported by hostile nations. 

HIPAA also requires covered entities to conduct security risk assessments, but it’s a more general framework and organizations can conduct the reviews internally, Crespo said. 

The latest bill would be much more prescriptive, requiring healthcare organizations to document an independent security risk analysis, develop a recovery plan in case of attack and conduct a stress test of their capabilities on an annual basis. 

The company’s CEO and chief information security officer will have to confirm their companies are in compliance, and they could face fines or prison time if they knowingly submit false documentation about their cyber posture or willingly fail to submit their report.

That liability could push some potential leaders to avoid those roles, Crespo said.

“It is a double-edged sword, because I think it will potentially scare off a lot of people that may have actually otherwise been really strong security advocates for an organization from that role,” she said. “But at the same time, it kicks up the burden and the obligation to comply and the need to get it right.”

The HHS will also take on new oversight responsibilities. The bill would require the agency to annually audit the data security practices of at least 20 covered entities or business associates, chosen based on their systemic importance, complaints about their practices and previous history of violations. 

Some of those decisions could be made based on priority and service territory, which might put a focus on East coast hospitals near government facilities, West Monroe’s Chaddock said. 

It’s an additional burden on both healthcare organizations and the HHS, experts said. But the industry is no stranger to heavy regulatory requirements, said Elizabeth Southerlan, partner in West Monroe’s healthcare and life sciences practice. 

“Hospitals are so used to dropping everything when [the Joint Commission] arrives and just doing it,” she said. “[…] If it’s not clear what they’re going to have to go through during the audit, then that will be chaos. And if it’s not predictable, then that will be chaos. But hospitals can handle it if they know what’s coming.”

Aims cybersecurity healthcare legislation tame West Wild
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleHow Much to Spend on a Wedding Gift
Next Article Former watch trader is now building the AWS of grid storage, Terralyr
admin
gossipstoday
  • Website

Related Posts

AdvaMed CEO Scott Whitaker pleads for tariff relief in Senate hearing

May 18, 2025

House committees advance reconciliation text with big impacts on healthcare

May 18, 2025

Rite Aid sells upwards of 1,000 stores to CVS, Walgreens, others

May 17, 2025
Leave A Reply Cancel Reply

Demo
Trending Now

How to Get and Stay Motivated When Starting a New Exercise and Diet Phase

Alignment Healthcare names new president as insurer eyes growth

What Is a Bear Market?

Laser-powered fusion experiment more than doubles its power output

Latest Posts

Laser-powered fusion experiment more than doubles its power output

May 18, 2025

AdvaMed CEO Scott Whitaker pleads for tariff relief in Senate hearing

May 18, 2025

Prime Members Are Ahead of the Game With These 50 Exclusive Early Memorial Day Deals at Amazon—Up to 86% Off

May 18, 2025

Subscribe to News

Subscribe to our newsletter and stay updated with the latest news and exclusive offers.

Advertisement
Demo
Black And Beige Minimalist Elegant Cosmetics Logo (4) (1)
Facebook X (Twitter) Pinterest Vimeo WhatsApp TikTok Instagram

Categories

  • Tech & Innovation
  • Health & Wellness
  • Personal Finance
  • Lifestyle & Productivity

Company

  • About Us
  • Contact Us
  • Advertise With Us

Services

  • Privacy Policy
  • Terms & Conditions
  • Disclaimer

Subscribe to Updates

© 2025 Gossips Today. All Right Reserved.

Type above and press Enter to search. Press Esc to cancel.