Addressing Data Security Issues in
Healthcare
In business organizations, data security issues are bad news. While affecting the
reputation and financial stability of the organization, data breach undermines
consumer confidence. In healthcare, the risk is limited not just to the concerned
hospital, business associate or provider, but affects the entire medical industry.
Breaches involving the personal information of patients are one of the major risks
that healthcare providers face today.
Electronic Health Records and Breach of Protected Health
Information (PHI)
The number of hospitals that have implemented Electronic Health Record (EHR)
systems has increased rapidly over the last few years. Though the system improves
efficiency, care delivery, and patient outcomes, it can be meaningful only if there are
proper mechanisms to ensure information security. According to a Redspin Breach
Report published in February 2014, the PHI of over 7 million patients was
compromised in 99 large breaches in 2013, as reported to the Department of Health
and Human Services’ Office of Civil Rights. The number of data breaches rose by as
much as 137 percent in 2012-2013.
Source: Redspin Annual Data Breach Report 2013
Healthcare Data Breaches that Made Headlines
According to a CTV Calgary report published on October 7, 2014, the personal health
information of 247 patients at Alberta Children's Hospital was accessed by an
unauthorized person – a former employee of the hospital. An audit showed that the
breach extended over a 14-month period. Data that may have been compromised
includes patient history, contact information, date of birth, names of relatives, and
emergency contact information.
In August, Chinese hackers stole 4.5 million medical records of Community Health
Systems patients including their Social Security numbers, putting their identities at
risk.
NRAD Medical Associates made news in July when it was reported that the personal
information of almost 97,000 patients in Long Island, NY were stolen from this
practice. Based in New York, NRAD is one of the area's largest radiology groups with
18 locations and thousands of patients. According to the report, one of its employee
radiologists accessed and acquired data relating to patient names, addresses, social
security numbers, diagnosis codes, and insurance information.
Consumers should be aware of the signs of a medical identity theft:
 Obtaining a bill for medical services
from a doctor or hospital that the
patient has never used
 Receiving bills in other people’s
names
 Getting collection calls for payments
on medical accounts of other people
 Obtaining a change of address
notification from the insurance
provider
 Denial of medical insurance
 Receiving notification from a hospital
or doctor that your private medical
information was compromised
Measures to Minimize Risk of PHI Security Issues
Healthcare organizations are prone to PHI security issues and given the dynamic
nature of technology, these are hard to avoid. However, industry experts say they
can be minimized by measures such as implementing periodic HIPAA risk analysis,
assessing new vulnerabilities that may have arisen, encryption of data on all portable
devices, and security awareness training for employees. Finally, healthcare providers
need to ensure that their outsourcing vendor for data entry, document scanning
or medical billing and coding handles PHI effectively.
Contact
Managed Outsource Solutions
8596 E. 101st Street, Suite H
Tulsa, OK 74133
Main: (800) 670 2809
Fax: (877) 835-5442
E-mail: info@managedoutsource.com

More Related Content

PPTX
Covered California Calls Collection of Patient Data a Good Thing
PPTX
Maintaining patient privacy
PDF
Health Care Technology And Privacy
PDF
How to Make a boring slide Interesting WITHOUT using images
PDF
Sample HIPAA Training
PPT
Finding Policy Solutions for Provider Directories and Surprise Medical Bills
DOCX
West Virginia AGO - Concerns about new Health Insurance Exchanges
DOCX
Cyber-Liability for Healthcare Providers Marketing Piece
Covered California Calls Collection of Patient Data a Good Thing
Maintaining patient privacy
Health Care Technology And Privacy
How to Make a boring slide Interesting WITHOUT using images
Sample HIPAA Training
Finding Policy Solutions for Provider Directories and Surprise Medical Bills
West Virginia AGO - Concerns about new Health Insurance Exchanges
Cyber-Liability for Healthcare Providers Marketing Piece

What's hot (20)

PPTX
Pricing Transparency In Healthcare Reform
DOC
asha legree
PDF
AMA Fears Privacy Loss - Medicare Moves to Reveal Doc Pay
PDF
CSFA medical billing[684]
PPT
Emr powerpoint for IPM
PPT
HIPAA HITECH E-Prescribing / E-Prescription
PDF
Hippa breaches
PPTX
mHealth Israel_Ellen Janos_Healthcare Partner_Mintz Levin_ US Regulatory Envi...
PPT
Preventative Malpractice Insurance_02
PDF
Feds Launch Long-Awaited HIPAA Audits
PPT
Medical Presentation Final3
PDF
Medical Billing Simple Manual
PPTX
PDF
Press Release
PPTX
MHA 690 Medical Confidentiality Discussion
PPTX
U.S. HealthCare System Economic Structure
PPTX
What is this Marketplace and Why Should I Care?
PPT
Medline Plus
PDF
bwmedicalidt
Pricing Transparency In Healthcare Reform
asha legree
AMA Fears Privacy Loss - Medicare Moves to Reveal Doc Pay
CSFA medical billing[684]
Emr powerpoint for IPM
HIPAA HITECH E-Prescribing / E-Prescription
Hippa breaches
mHealth Israel_Ellen Janos_Healthcare Partner_Mintz Levin_ US Regulatory Envi...
Preventative Malpractice Insurance_02
Feds Launch Long-Awaited HIPAA Audits
Medical Presentation Final3
Medical Billing Simple Manual
Press Release
MHA 690 Medical Confidentiality Discussion
U.S. HealthCare System Economic Structure
What is this Marketplace and Why Should I Care?
Medline Plus
bwmedicalidt
Ad

Similar to Addressing Data Security Issues in Healthcare (20)

PPTX
Data Breach: It Can Happen To You
DOCX
Page 9 of 15Capstone ProjectYaima OrtizIDS-4934.docx
DOCX
Page 9 of 15Capstone ProjectYaima OrtizIDS-4934.docx
PDF
Availability, Accessibility, Privacy and Safety Issues Facing Electronic Medi...
PDF
AVAILABILITY, ACCESSIBILITY, PRIVACY AND SAFETY ISSUES FACING ELECTRONIC MEDI...
PDF
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
PDF
MANAGING THE INFORMATION SECURITY ISSUES OF ELECTRONIC MEDICAL RECORDS
PDF
Managing the Information Security Issues of Electronic Medical Records
DOCX
Page 1 Executive Summary Policy makers are looking.docx
PDF
Why merging medical records, hospital reports, and clinical trial data is a v...
DOCX
Patient Privacy Patient Privacy Issu.docx
PDF
Digital Health Data
DOCX
Sarah Kim HIPAA for Small Providers
PDF
Cybercrime and the Healthcare Industry
 
DOCX
(Executive Summary)MedStar Health Inc, a leader in the healthc
PDF
Redspin PHI Breach Report 2012
PDF
Cybercrime and the Healthcare Industry
 
PDF
Why cyber-criminals target Healthcare - Panda Security
PDF
HC-CA Infographic REV_05
PDF
Top 7 Best Practices for Securing Patient Information
Data Breach: It Can Happen To You
Page 9 of 15Capstone ProjectYaima OrtizIDS-4934.docx
Page 9 of 15Capstone ProjectYaima OrtizIDS-4934.docx
Availability, Accessibility, Privacy and Safety Issues Facing Electronic Medi...
AVAILABILITY, ACCESSIBILITY, PRIVACY AND SAFETY ISSUES FACING ELECTRONIC MEDI...
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
MANAGING THE INFORMATION SECURITY ISSUES OF ELECTRONIC MEDICAL RECORDS
Managing the Information Security Issues of Electronic Medical Records
Page 1 Executive Summary Policy makers are looking.docx
Why merging medical records, hospital reports, and clinical trial data is a v...
Patient Privacy Patient Privacy Issu.docx
Digital Health Data
Sarah Kim HIPAA for Small Providers
Cybercrime and the Healthcare Industry
 
(Executive Summary)MedStar Health Inc, a leader in the healthc
Redspin PHI Breach Report 2012
Cybercrime and the Healthcare Industry
 
Why cyber-criminals target Healthcare - Panda Security
HC-CA Infographic REV_05
Top 7 Best Practices for Securing Patient Information
Ad

Recently uploaded (20)

PDF
Kishore Vora - Best CFO in India to watch in 2025.pdf
PPT
Lecture 3344;;,,(,(((((((((((((((((((((((
PDF
Chapter 2 - AI chatbots and prompt engineering.pdf
PPTX
Slide gioi thieu VietinBank Quy 2 - 2025
DOCX
Handbook of Entrepreneurship- Chapter 5: Identifying business opportunity.docx
PPTX
TRAINNING, DEVELOPMENT AND APPRAISAL.pptx
PDF
Robin Fischer: A Visionary Leader Making a Difference in Healthcare, One Day ...
PDF
Solaris Resources Presentation - Corporate August 2025.pdf
PPTX
basic introduction to research chapter 1.pptx
PPTX
2 - Self & Personality 587689213yiuedhwejbmansbeakjrk
PDF
income tax laws notes important pakistan
PDF
Satish NS: Fostering Innovation and Sustainability: Haier India’s Customer-Ce...
PPTX
operations management : demand supply ch
PDF
533158074-Saudi-Arabia-Companies-List-Contact.pdf
PPTX
IITM - FINAL Option - 01 - 12.08.25.pptx
PPTX
BUSINESS CYCLE_INFLATION AND UNEMPLOYMENT.pptx
PDF
Introduction to Generative Engine Optimization (GEO)
PDF
ANALYZING THE OPPORTUNITIES OF DIGITAL MARKETING IN BANGLADESH TO PROVIDE AN ...
PDF
ICv2 White Paper - Gen Con Trade Day 2025
PDF
Keppel_Proposed Divestment of M1 Limited
Kishore Vora - Best CFO in India to watch in 2025.pdf
Lecture 3344;;,,(,(((((((((((((((((((((((
Chapter 2 - AI chatbots and prompt engineering.pdf
Slide gioi thieu VietinBank Quy 2 - 2025
Handbook of Entrepreneurship- Chapter 5: Identifying business opportunity.docx
TRAINNING, DEVELOPMENT AND APPRAISAL.pptx
Robin Fischer: A Visionary Leader Making a Difference in Healthcare, One Day ...
Solaris Resources Presentation - Corporate August 2025.pdf
basic introduction to research chapter 1.pptx
2 - Self & Personality 587689213yiuedhwejbmansbeakjrk
income tax laws notes important pakistan
Satish NS: Fostering Innovation and Sustainability: Haier India’s Customer-Ce...
operations management : demand supply ch
533158074-Saudi-Arabia-Companies-List-Contact.pdf
IITM - FINAL Option - 01 - 12.08.25.pptx
BUSINESS CYCLE_INFLATION AND UNEMPLOYMENT.pptx
Introduction to Generative Engine Optimization (GEO)
ANALYZING THE OPPORTUNITIES OF DIGITAL MARKETING IN BANGLADESH TO PROVIDE AN ...
ICv2 White Paper - Gen Con Trade Day 2025
Keppel_Proposed Divestment of M1 Limited

Addressing Data Security Issues in Healthcare

  • 1. Addressing Data Security Issues in Healthcare In business organizations, data security issues are bad news. While affecting the reputation and financial stability of the organization, data breach undermines consumer confidence. In healthcare, the risk is limited not just to the concerned hospital, business associate or provider, but affects the entire medical industry. Breaches involving the personal information of patients are one of the major risks that healthcare providers face today. Electronic Health Records and Breach of Protected Health Information (PHI) The number of hospitals that have implemented Electronic Health Record (EHR) systems has increased rapidly over the last few years. Though the system improves efficiency, care delivery, and patient outcomes, it can be meaningful only if there are proper mechanisms to ensure information security. According to a Redspin Breach Report published in February 2014, the PHI of over 7 million patients was compromised in 99 large breaches in 2013, as reported to the Department of Health and Human Services’ Office of Civil Rights. The number of data breaches rose by as much as 137 percent in 2012-2013. Source: Redspin Annual Data Breach Report 2013
  • 2. Healthcare Data Breaches that Made Headlines According to a CTV Calgary report published on October 7, 2014, the personal health information of 247 patients at Alberta Children's Hospital was accessed by an unauthorized person – a former employee of the hospital. An audit showed that the breach extended over a 14-month period. Data that may have been compromised includes patient history, contact information, date of birth, names of relatives, and emergency contact information. In August, Chinese hackers stole 4.5 million medical records of Community Health Systems patients including their Social Security numbers, putting their identities at risk. NRAD Medical Associates made news in July when it was reported that the personal information of almost 97,000 patients in Long Island, NY were stolen from this practice. Based in New York, NRAD is one of the area's largest radiology groups with 18 locations and thousands of patients. According to the report, one of its employee radiologists accessed and acquired data relating to patient names, addresses, social security numbers, diagnosis codes, and insurance information. Consumers should be aware of the signs of a medical identity theft:  Obtaining a bill for medical services from a doctor or hospital that the patient has never used  Receiving bills in other people’s names  Getting collection calls for payments on medical accounts of other people  Obtaining a change of address notification from the insurance provider  Denial of medical insurance  Receiving notification from a hospital or doctor that your private medical information was compromised
  • 3. Measures to Minimize Risk of PHI Security Issues Healthcare organizations are prone to PHI security issues and given the dynamic nature of technology, these are hard to avoid. However, industry experts say they can be minimized by measures such as implementing periodic HIPAA risk analysis, assessing new vulnerabilities that may have arisen, encryption of data on all portable devices, and security awareness training for employees. Finally, healthcare providers need to ensure that their outsourcing vendor for data entry, document scanning or medical billing and coding handles PHI effectively. Contact Managed Outsource Solutions 8596 E. 101st Street, Suite H Tulsa, OK 74133 Main: (800) 670 2809 Fax: (877) 835-5442 E-mail: info@managedoutsource.com