HIPAA Compliance Is Not Enough to Curtail PHI Data Breaches

“As the value of protected health information soars for a host of nefarious purposes, there is now a need for the convergence between privacy, compliance and security in healthcare,” said Long. “It is no longer ‘am I simply compliant with HIPAA.’ It’s ‘will my hospital be offline for a week because of a ransomware attack.’”

Long continued, “Information security bad actors are moving faster than ever in attacking healthcare providers in compromising patient information and institutions. For businesses relying strictly on HIPAA compliance and an industry waiting on OCR enforcement of HIPAA, this approach is simply not enough. Care providers need to secure and protect their applications that hold the mother-load of patient information, their Electronic Health Records as well as all the supporting applications.”

