SlideShare a Scribd company logo
1 of 1
Healthcare Providers are at
risk, now more than ever.
In July 2016, Catholic Health Care Services of the Archdiocese of
Philadelphia (CHCS) lost $650,000 due to a data breach of 412
individuals. Sensitive information including their Social Security
numbers, information regarding diagnosis and treatment, medical
procedures, names of family members and legal guardians, and
medication information were compromised. The Office of Civil Rights
(OCR) conducted an investigation and concluded that the CHCS “had
no risk analysis or risk management plan.” As the number of physicians
and healthcare providers using electronic medical records increases,
coupled with the drastic rise in hacking and IT data breaches within the
healthcare industry, it is imperative to be prepared, informed, and insured.
As the number of malicious cyber-attacks and data breaches
increases year over year, the prevailing thinking of physicians
and other healthcare providers in regards to cyber risk has
now become “When will it happen to us?”
WHAT CAN GALLAGHER DO FOR YOU?
Our exclusive relationships make it possible to do
business with carriers that offer products such as
HIPAA-Enhanced Cyber protection,which provides
coverage for not only data breaches, but ID theft, cyber
extortion, and loss of revenue due to malicious attacks. It can also include cost
of recovery as well as damages to the reputation of the insured. There are
some provisions that providers may overlook such as regulatory defense costs,
security and privacy liability (including liability to employees and customers
in the event of theft of data), and crisis management costs, including costs of
customer notification, support, and credit monitoring expenses. We will
provide you with the mostappropriate plan to help ensure that you are
properly covered in all facets of your business in order to mitigate risk.
Our consultative approach with clients can provide
you with a personalized plan of action - from loss
prevention methods to claims management. Our
resources have been deployed to all types of clients
within the healthcare industry, from the leaders of Medical Group
Management Associations (MGMAs) to individual service providers.
Our team offers specialized solutions, including benchmarking and
analytics to help you make informed decisions to improve your
business efficiency. We focus on your risks, so you can focus on your
business.
© 2016 Arthur J. Gallagher & Co.
All rights reserved. Gallagher
C y berLiability Practice
% Of Health Providers using Electronic Health Records
Source: HealthIT.gov
Data Breaches of Unsecured Health Information
Source: HealthIT.gov
Gallagher Cyber Liability Practice
Tim Hoover
580 Route 15, Suite A
Sparta, NJ 07871
973.300.4216
Tim_Hoover@ajg.com
www.ajg.com/cyber
As credit card security measures
tighten, hackers are setting their
sights on health records.

More Related Content

What's hot

HIPAA Training Basics
HIPAA Training BasicsHIPAA Training Basics
HIPAA Training Basicssecky65
 
Redspin PHI Breach Report 2012
Redspin PHI Breach Report 2012Redspin PHI Breach Report 2012
Redspin PHI Breach Report 2012Redspin, Inc.
 
Hackproof-Healthcare Supports
Hackproof-Healthcare Supports	Hackproof-Healthcare Supports
Hackproof-Healthcare Supports hackproof12
 
Confidentiality
ConfidentialityConfidentiality
Confidentialitygebrow9764
 
Health information portability and accountability (hipaa)
Health information portability and accountability (hipaa)Health information portability and accountability (hipaa)
Health information portability and accountability (hipaa)kristinleighclark
 
Doing Business On Internet -- HIPAA Challenge
Doing Business On Internet -- HIPAA ChallengeDoing Business On Internet -- HIPAA Challenge
Doing Business On Internet -- HIPAA ChallengeNick Krym
 
Hipaa and him security brunelle
Hipaa and him security brunelleHipaa and him security brunelle
Hipaa and him security brunellesjbusnpa
 
In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...
In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...
In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...Patton Boggs LLP
 
Confidentiality and you
Confidentiality and youConfidentiality and you
Confidentiality and youyola121
 
TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004
TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004
TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004Paul Peterson
 
Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...
Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...
Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...Brian Dickerson
 
HIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future ExpectationsHIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future ExpectationsPYA, P.C.
 
Mha 690 presentation hippa
Mha 690 presentation hippaMha 690 presentation hippa
Mha 690 presentation hippabelle0508
 
The importance of hipaa compliance and training
The importance of hipaa compliance and trainingThe importance of hipaa compliance and training
The importance of hipaa compliance and trainingLaDavia Day, MHA, BS
 
The Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOTThe Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOTCompliancy Group
 
Perspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_Cloud
Perspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_CloudPerspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_Cloud
Perspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_CloudCheryl Goldberg
 

What's hot (20)

Addressing Data Security Issues in Healthcare
Addressing Data Security Issues in Healthcare Addressing Data Security Issues in Healthcare
Addressing Data Security Issues in Healthcare
 
HIPAA Training Basics
HIPAA Training BasicsHIPAA Training Basics
HIPAA Training Basics
 
Redspin PHI Breach Report 2012
Redspin PHI Breach Report 2012Redspin PHI Breach Report 2012
Redspin PHI Breach Report 2012
 
Hackproof-Healthcare Supports
Hackproof-Healthcare Supports	Hackproof-Healthcare Supports
Hackproof-Healthcare Supports
 
Confidentiality
ConfidentialityConfidentiality
Confidentiality
 
Health information portability and accountability (hipaa)
Health information portability and accountability (hipaa)Health information portability and accountability (hipaa)
Health information portability and accountability (hipaa)
 
Mha690 disc 2 week 1
Mha690 disc 2 week 1Mha690 disc 2 week 1
Mha690 disc 2 week 1
 
Doing Business On Internet -- HIPAA Challenge
Doing Business On Internet -- HIPAA ChallengeDoing Business On Internet -- HIPAA Challenge
Doing Business On Internet -- HIPAA Challenge
 
Hipaa and him security brunelle
Hipaa and him security brunelleHipaa and him security brunelle
Hipaa and him security brunelle
 
Compliance
ComplianceCompliance
Compliance
 
In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...
In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...
In Good News For Providers, OIG and CMS Propose Extensions And Modifications ...
 
Discussion 2
Discussion 2Discussion 2
Discussion 2
 
Confidentiality and you
Confidentiality and youConfidentiality and you
Confidentiality and you
 
TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004
TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004
TouchWorks Named Top EMR by KLAS - Allscripts MDRX press release Feb 26 2004
 
Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...
Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...
Failure to Execute a HIPAA Business Associate Agreement Results in $1.55 Mill...
 
HIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future ExpectationsHIPAA Security Trends and Future Expectations
HIPAA Security Trends and Future Expectations
 
Mha 690 presentation hippa
Mha 690 presentation hippaMha 690 presentation hippa
Mha 690 presentation hippa
 
The importance of hipaa compliance and training
The importance of hipaa compliance and trainingThe importance of hipaa compliance and training
The importance of hipaa compliance and training
 
The Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOTThe Most Wonderful Time of the Year for Health-IT...NOT
The Most Wonderful Time of the Year for Health-IT...NOT
 
Perspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_Cloud
Perspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_CloudPerspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_Cloud
Perspecsys_Best_Practices_Guide_for_Protecting_Healthcare_Data_in_the_Cloud
 

Similar to Healthcare Providers at Growing Risk of Data Breaches and Cyber Attacks

Healthcare preparedness 2010
Healthcare preparedness 2010Healthcare preparedness 2010
Healthcare preparedness 2010DataMotion
 
Healthcare preparedness 2010
Healthcare preparedness 2010Healthcare preparedness 2010
Healthcare preparedness 2010DataMotion
 
medi-lynx letterhead
medi-lynx letterheadmedi-lynx letterhead
medi-lynx letterheadAndre Bayards
 
HEALTHCARE IT: IS YOUR INFORMATION AT RISK?
HEALTHCARE IT: IS YOUR INFORMATION AT RISK? HEALTHCARE IT: IS YOUR INFORMATION AT RISK?
HEALTHCARE IT: IS YOUR INFORMATION AT RISK? IJNSA Journal
 
Where in the world is your PII and other sensitive data? by @druva inc
Where in the world is your PII and other sensitive data? by @druva incWhere in the world is your PII and other sensitive data? by @druva inc
Where in the world is your PII and other sensitive data? by @druva incDruva
 
Hot Topics in Privacy and Security
Hot Topics in Privacy and SecurityHot Topics in Privacy and Security
Hot Topics in Privacy and SecurityPYA, P.C.
 
Adrs Presentation March 2008
Adrs Presentation March 2008Adrs Presentation March 2008
Adrs Presentation March 2008guestabd20
 
Preventing Provider Medical Identity Theft
Preventing Provider Medical Identity TheftPreventing Provider Medical Identity Theft
Preventing Provider Medical Identity Theft- Mark - Fullbright
 
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...mosmedicalreview
 
Affirmative Defense Response System (ADRS)
Affirmative Defense Response System (ADRS)Affirmative Defense Response System (ADRS)
Affirmative Defense Response System (ADRS)guest95afa8
 
Adrs Flip Chart From Ppl
Adrs Flip Chart From PplAdrs Flip Chart From Ppl
Adrs Flip Chart From PplSue Tjernlund
 
Adrs Flip Chart From Ppl
Adrs Flip Chart From PplAdrs Flip Chart From Ppl
Adrs Flip Chart From Pplsusantj3
 
Safeguarding Patient Privacy in a Digital Age (Brian Kalis)
Safeguarding Patient Privacy in a Digital Age (Brian Kalis)Safeguarding Patient Privacy in a Digital Age (Brian Kalis)
Safeguarding Patient Privacy in a Digital Age (Brian Kalis)U.S. News Healthcare of Tomorrow
 
Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...
Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...
Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...Ryan Starkes
 
Information+security rutgers(final)
Information+security rutgers(final)Information+security rutgers(final)
Information+security rutgers(final)Amy Stowers
 

Similar to Healthcare Providers at Growing Risk of Data Breaches and Cyber Attacks (20)

Healthcare preparedness 2010
Healthcare preparedness 2010Healthcare preparedness 2010
Healthcare preparedness 2010
 
Healthcare preparedness 2010
Healthcare preparedness 2010Healthcare preparedness 2010
Healthcare preparedness 2010
 
Accounting
AccountingAccounting
Accounting
 
CYVA_EMA3PageVentureSummaryAngelAM020150717
CYVA_EMA3PageVentureSummaryAngelAM020150717CYVA_EMA3PageVentureSummaryAngelAM020150717
CYVA_EMA3PageVentureSummaryAngelAM020150717
 
CYVA_EMA3PageVentureSummaryAngelAM020150717
CYVA_EMA3PageVentureSummaryAngelAM020150717CYVA_EMA3PageVentureSummaryAngelAM020150717
CYVA_EMA3PageVentureSummaryAngelAM020150717
 
CYVA_EMA3PageVentureSummaryAngelAM020150717
CYVA_EMA3PageVentureSummaryAngelAM020150717CYVA_EMA3PageVentureSummaryAngelAM020150717
CYVA_EMA3PageVentureSummaryAngelAM020150717
 
medi-lynx letterhead
medi-lynx letterheadmedi-lynx letterhead
medi-lynx letterhead
 
HEALTHCARE IT: IS YOUR INFORMATION AT RISK?
HEALTHCARE IT: IS YOUR INFORMATION AT RISK? HEALTHCARE IT: IS YOUR INFORMATION AT RISK?
HEALTHCARE IT: IS YOUR INFORMATION AT RISK?
 
Where in the world is your PII and other sensitive data? by @druva inc
Where in the world is your PII and other sensitive data? by @druva incWhere in the world is your PII and other sensitive data? by @druva inc
Where in the world is your PII and other sensitive data? by @druva inc
 
Hot Topics in Privacy and Security
Hot Topics in Privacy and SecurityHot Topics in Privacy and Security
Hot Topics in Privacy and Security
 
Adrs Presentation March 2008
Adrs Presentation March 2008Adrs Presentation March 2008
Adrs Presentation March 2008
 
Preventing Provider Medical Identity Theft
Preventing Provider Medical Identity TheftPreventing Provider Medical Identity Theft
Preventing Provider Medical Identity Theft
 
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
Healthcare Attorneys Feel the Healthcare Industry Is More Vulnerable to Cyber...
 
Affirmative Defense Response System (ADRS)
Affirmative Defense Response System (ADRS)Affirmative Defense Response System (ADRS)
Affirmative Defense Response System (ADRS)
 
Adrs Flip Chart From Ppl
Adrs Flip Chart From PplAdrs Flip Chart From Ppl
Adrs Flip Chart From Ppl
 
Adrs Flip Chart From Ppl
Adrs Flip Chart From PplAdrs Flip Chart From Ppl
Adrs Flip Chart From Ppl
 
Safeguarding Patient Privacy in a Digital Age (Brian Kalis)
Safeguarding Patient Privacy in a Digital Age (Brian Kalis)Safeguarding Patient Privacy in a Digital Age (Brian Kalis)
Safeguarding Patient Privacy in a Digital Age (Brian Kalis)
 
Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...
Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...
Cyber Alert FDA Issues New Cybersecurity Guidelines for Medical Device Manufa...
 
arcsight_scmag_hcspecial
arcsight_scmag_hcspecialarcsight_scmag_hcspecial
arcsight_scmag_hcspecial
 
Information+security rutgers(final)
Information+security rutgers(final)Information+security rutgers(final)
Information+security rutgers(final)
 

Healthcare Providers at Growing Risk of Data Breaches and Cyber Attacks

  • 1. Healthcare Providers are at risk, now more than ever. In July 2016, Catholic Health Care Services of the Archdiocese of Philadelphia (CHCS) lost $650,000 due to a data breach of 412 individuals. Sensitive information including their Social Security numbers, information regarding diagnosis and treatment, medical procedures, names of family members and legal guardians, and medication information were compromised. The Office of Civil Rights (OCR) conducted an investigation and concluded that the CHCS “had no risk analysis or risk management plan.” As the number of physicians and healthcare providers using electronic medical records increases, coupled with the drastic rise in hacking and IT data breaches within the healthcare industry, it is imperative to be prepared, informed, and insured. As the number of malicious cyber-attacks and data breaches increases year over year, the prevailing thinking of physicians and other healthcare providers in regards to cyber risk has now become “When will it happen to us?” WHAT CAN GALLAGHER DO FOR YOU? Our exclusive relationships make it possible to do business with carriers that offer products such as HIPAA-Enhanced Cyber protection,which provides coverage for not only data breaches, but ID theft, cyber extortion, and loss of revenue due to malicious attacks. It can also include cost of recovery as well as damages to the reputation of the insured. There are some provisions that providers may overlook such as regulatory defense costs, security and privacy liability (including liability to employees and customers in the event of theft of data), and crisis management costs, including costs of customer notification, support, and credit monitoring expenses. We will provide you with the mostappropriate plan to help ensure that you are properly covered in all facets of your business in order to mitigate risk. Our consultative approach with clients can provide you with a personalized plan of action - from loss prevention methods to claims management. Our resources have been deployed to all types of clients within the healthcare industry, from the leaders of Medical Group Management Associations (MGMAs) to individual service providers. Our team offers specialized solutions, including benchmarking and analytics to help you make informed decisions to improve your business efficiency. We focus on your risks, so you can focus on your business. © 2016 Arthur J. Gallagher & Co. All rights reserved. Gallagher C y berLiability Practice % Of Health Providers using Electronic Health Records Source: HealthIT.gov Data Breaches of Unsecured Health Information Source: HealthIT.gov Gallagher Cyber Liability Practice Tim Hoover 580 Route 15, Suite A Sparta, NJ 07871 973.300.4216 Tim_Hoover@ajg.com www.ajg.com/cyber As credit card security measures tighten, hackers are setting their sights on health records.