loader from loading.io

The CyberPHIx Roundup: Industry News & Trends, 4/21/22

The CyberPHIx: Meditology Services Podcast

Release Date: 04/21/2022

Artificial Intelligence: Use Cases and Cybersecurity & Privacy Implications in Healthcare show art Artificial Intelligence: Use Cases and Cybersecurity & Privacy Implications in Healthcare

The CyberPHIx: Meditology Services Podcast

Join us for this episode of The CyberPHIx podcast, where we hear from Morgan Hague.   Morgan is the manager of IT Risk Management at Meditology Services and has been in the industry for nearly a decade. He has worked with hundreds of organizations in an advisory capacity helping to assess or audit security functions to drive program maturity. He also leads Meditology’s strategic risk management consulting service line and is a subject matter expert in threat mitigation and risk program development.  Topics covered in this session include:   A deep dive into...

info_outline
The CyberPHIx Roundup: Industry News & Trends, 5/8/23 show art The CyberPHIx Roundup: Industry News & Trends, 5/8/23

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry.  In this episode, our host Britton Burton highlights the following topics trending in healthcare cybersecurity this month:  The Changes to HHS 405(d) HICP publication on the top 5 threats and top 10 security practices for healthcare  The NIST Cyber Security Framework 2.0 Discussion Draft   The riskiest connected medical devices and IoT (including nurse call, infusion pumps, and...

info_outline
HITRUST v11 and Third-Party Risk: Insights from HITRUST Leadership show art HITRUST v11 and Third-Party Risk: Insights from HITRUST Leadership

The CyberPHIx: Meditology Services Podcast

Join us for this episode of The CyberPHIx podcast where we hear from Ryan Patrick, Vice President of Adoption at HITRUST.   Ryan works with clients to understand and implement the HITRUST-validated assessments that best suit their organization’s risk profile. Prior to this role, he spent many years as a security practitioner and IT lead in a wide range of organizations from the US Army to Covered Entities to healthcare cybersecurity consulting firms. He has a wealth of practical security experience that informs every discussion about security or HITRUST.   ...

info_outline
The CyberPHIx Roundup: National Cybersecurity Strategy, 3/22/23 show art The CyberPHIx Roundup: National Cybersecurity Strategy, 3/22/23

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry.  Our host Britton Burton spends this entire episode reviewing and analyzing the recently released National Cybersecurity Strategy, including:  Summarizing, and in some cases quoting, the key points from the document that are most relevant to healthcare security pros who may have time to listen but not read  Analyzing how those key points will affect the healthcare industry in the coming months...

info_outline
THE CYBERPHIX ROUNDUP: INDUSTRY NEWS & TRENDS, 2/7/23 show art THE CYBERPHIX ROUNDUP: INDUSTRY NEWS & TRENDS, 2/7/23

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry.  In this episode, our host highlights the following topics trending in healthcare cybersecurity this month:  The Federal Trade Commission’s (FTC) first Health Breach Notification Rule Enforcement action against GoodRx  An unsurprising report from OCR on security rule compliance areas that HIPAA-regulated entities need improvement plus the most common remediation actions taken by breached...

info_outline
THE CYBERPHIX ROUNDUP: INDUSTRY NEWS & TRENDS, 3/1/23 show art THE CYBERPHIX ROUNDUP: INDUSTRY NEWS & TRENDS, 3/1/23

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry.  In this episode, our host highlights the following topics trending in healthcare cybersecurity this month:  The Federal Trade Commission’s (FTC) first Health Breach Notification Rule Enforcement action against GoodRx  An unsurprising report from OCR on security rule compliance areas that HIPAA-regulated entities need improvement plus the most common remediation actions taken by breached...

info_outline
The CyberPHIx Roundup: Industry News & Trends, 2/7/23 show art The CyberPHIx Roundup: Industry News & Trends, 2/7/23

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry.  In this episode, our host highlights the following topics trending in healthcare cybersecurity this month:  A new National Cybersecurity Strategy coming from the Biden administration in the next few weeks  Healthcare cybersecurity legislation with mandatory requirements coming from Senator Mark Warner by the end of 1Q  More ChatGPT analysis on malware writing and that it is NOT suitable...

info_outline
The CyberPHIx Roundup: Industry News & Trends, 1/16/22 show art The CyberPHIx Roundup: Industry News & Trends, 1/16/22

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry.  In this episode, our host highlights the following topics trending in healthcare cybersecurity this month:  New FDA authority granted by December’s omnibus bill is a big step towards better medical device security  HITRUST teases their new CSF v11 release  CommonSpirit Health class action lawsuit  The fallout from the LastPass follow-on breach  The possibly similar situation...

info_outline
Top 10 Cyber Risk Exposure Trends and Predictions for 2023 show art Top 10 Cyber Risk Exposure Trends and Predictions for 2023

The CyberPHIx: Meditology Services Podcast

The CyberPHIx is your source for keeping up with the latest cybersecurity news, trends and industry leading practices, specifically for the healthcare industry.  In this episode, our host highlights some bold, and some not so bold, predictions for healthcare cybersecurity in 2023. Topics covered include:  Continued escalation and evolution of ransomware attacks  Our growing dependency on cloud platforms and vendor solutions shifting the attacker’s focus and changing breach trends  New baseline expectations for critical infrastructure cybersecurity that could...

info_outline
The CyberPHIx Roundup: Industry News & Trends, 12/15/22 show art The CyberPHIx Roundup: Industry News & Trends, 12/15/22

The CyberPHIx: Meditology Services Podcast

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry leading practices, specifically for the healthcare industry.  In this episode, our host Britton Burton highlights the following topics trending in healthcare cybersecurity this week:  OCR releases more detail on their Recognized Security Practices (RSPs) and what they mean for Covered Entities  A cool new tool from the FTC for mobile health app developers to quickly determine which security and privacy regulations are in scope for their app  Trends in...

info_outline
 
More Episodes

The CyberPHIx Roundup is your quick source for keeping up with the latest cybersecurity news, trends, and industry-leading practices, specifically for the healthcare industry. 

In this episode, our host Brian Selfridge highlights the following topics trending in healthcare cybersecurity this week: 

  • Healthcare Cybersecurity Act introduced in the U.S. Senate; details and analysis about the proposed regulation
  • HHS and OCR seek feedback on new HITECH safe harbors for the adoption of cybersecurity best practices including NIST and HITRUST
  • OCR requests feedback on how HIPAA civil monetary penalties should be shared with individuals that have been victims of breaches
  • University of Pittsburgh Medical Center is required to make payments to 66,000 employees that were victims of a 2014 cyber breach as part of legal settlement
  • Proposed PATCH Act that would see the FDA require cybersecurity measures for medical device manufacturers; details and analysis
  • New NIST standards for enterprise patching management including NIST SP 800-40 and NIST SP 1800-31
  • FDA releases updated guidance on medical device cybersecurity (in addition to the PATCH Act)
  • Lapsus$ cyber threat group alerts from the Health Sector Cybersecurity Coordination Center (HC3) as well as prominent arrests of the Lapsus$ gang’s teenage leader 
  • Arrest of ransomware leader responsible for 13 ransomware attacks; details of attacks and sentencing
  • Germany and the U.S. shut down the world’s largest illegal darknet marketplace
  • CISA warns of Uninterruptible Power Supply (UPS) device cyberattacks
  • Urgent security alert for Philips MRI monitoring software
  • A new zero-day vulnerability in the Spring Core Java framework called 'Spring4Shell'
  • S State Department announces Bureau of Cyberspace and Digital Policy (CDP)