Revenue Cycle Experts

Pay Your Bill Client Log In

Cybersecurity Risk Facing the Healthcare Industry in 2022

September 22, 2022

In episode 45 of the Revenue Roundtable podcast, the co-hosts discussed cybersecurity risks facing the healthcare industry. Their guest was Brad Rounding, CIO for Revco Solutions. Rounding has a strong background in cybersecurity, holding bachelor’s and master’s degrees in cybersecurity, along with certifications. He’s worked with federal, state, and local governments, plus private equity companies and American corporations.

Healthcare Security Concerns

Image via Unsplash by danny144

In the healthcare industry, the main concerns are data breaches and system availability. Disruption to the vital information systems in healthcare clinics and hospitals can have an impact on the lives of patients. Data security is another concern, particularly a breach of sensitive and confidential patient records. Mitigating these risks involves creating a solid backup strategy for systems, strong endpoint encryption, and anti-virus and anti-malware software to avoid ransomware attacks.

On the data breach side, it’s critical to ensure a strong account management process is in place, maintain data security at rest and at motion, and monitor phishing risks. Phishing continues to be a major threat to healthcare clients and other industries, as it uses email to breach the security of an organization. Revco Solutions is addressing phishing through a randomized test about once a month across the organization. This testing tracks how the recipient interacts with an email.

Phishing Tests

In the early simulations, the emails had high click rates in the 30% range, especially when they came from Human Resources (HR). Since then, the employees are more cautious and may not even click on an email that actually does come from HR or another internal department. The current click rate is closer to 1%.

The top vulnerabilities impacting organizations can change week to week and month to month, so having a strong patch management system is important. Employees also serve as the first line of defense (or the weakest link) as they use the systems in place in the clinic or hospital setting, so education is key.

Damage Control

Since there’s no way to avoid 100% of all attacks, it’s helpful to know how to mitigate the damage. In the healthcare industry, the HIPAA High Trust certification is worth considering. Those who handle credit card information should adhere to the PCI framework. Select a framework and adapt to its controls, and then implement a third-party monitor to certify an organization’s compliance and adherence to the rules.

Why Healthcare Organizations Are Targeted

Healthcare organizations are often targets of cyberattacks. Hackers look for “low-hanging fruit,” or easy targets. Many healthcare organizations use outdated systems and infrastructure that aren’t protecting patient information as well as they should be. These organizations also hold a vast amount of information, including personal and financial details. A hacker who uses ransomware to target a healthcare organization may get a large payout because that organization will do whatever it takes to protect their information and keep their systems online. Revco Solutions is a trusted partner that can monitor the risks of cybersecurity attacks and help prevent them. Healthcare organizations that want to protect their patient data and system availability can partner with Revco Solutions by contacting 855-202-0113 or visiting revcosolutions.com.

Affiliations Audits & Achievements

  • HFMA: Healthcare, financial, management, association
  • AAHAM: American Association of Healthcare Administrative Management
  • ACA International

Revco Solutions Locations

Durham, NC (Corporate Headquarters)

2700 Meridian Parkway
Suite 200
Durham, NC 27713

Oradell, NJ

800 Kinderkamack Rd
Suite 206 North
Oradell, NJ 07649

Jacksonville, FL

7016 AC Skinner Parkway
Suite 160
Jacksonville, FL 32256

Dewitt, MI

1161 E Clark Road
Suite 240
Dewitt, MI 48820

Dayton, OH

6450 Poe Ave
Suite 301
Dayton, OH 45414

Columbus, OH

250 E Broad Street
4th Floor
Columbus, OH 43215

Omaha, NE

5807 N 102nd St
Omaha, NE, 68134

Indianapolis, IN

9339 Priority Way West
Suite 120
Indianapolis, IN 46240

Austin, TX

Financial Corporation of America (FCOA)
A Revco Management Company
12515 Research Blvd., Suite 200
Austin, TX  78759