2. OCTOBER 23, 2019 | 100% FREE | 100% ONLINE
LEARN MORE AT
WWW.ITLEADERSHIPSUMMIT.COM/CYBER-SECURITY
3. Agenda Items
It’s Drafty Down There: Healthcare Exposures
Reducing the Cost of a Data Breach
What’s Worse Than a Root Canal?
4. Situation Analysis Recommendations
Exploit Type:
Exposure: Attack Vectors:Impact:
Phishing Training
Vendor Risk Management
Privilege Management
Email Security
Two-factor Authentication
Incident Response Planning
Patient data had more exposure than a hospital gown. Current data
breaches are impacting vendors of healthcare systems as well as the
healthcare systems directly. Healthcare records are more valuable
than financial records on the dark web.
Data Breach
Healthcare Breach: Over 700,000 Affected
Phishing
Third-Party
44
Data Breaches
In August
PHI/PII
Compromised
5. For What It’s Worth…
Credit Cards: Average $1- $10
Driver’s License: $20
1234 0000 0000 0000
Loyalty Accounts: $20
Medical Records: $1 - $1000
Sources: Experian, CIS
7. We’ve Upped our Data Breaches… Now Up Yours!
billion records were
exposed in more than
3,800 data breaches
reported in the first half
of the year
increase in data
breaches over last
year, with half the
year remaining
of compromised data
so far this year stems
from emails, according
to the report
8. You’ve Been Breached. What You Do Next Matters
($400,000)
($350,000)
($300,000)
($250,000)
($200,000)
($150,000)
($100,000)
($50,000)
$0
Cost Mitigators
9. You’ve Been Breached. What You Do Next Matters
$0
$50,000
$100,000
$150,000
$200,000
$250,000
$300,000
$350,000
$400,000
Cost Amplifiers
10. Situation Analysis Recommendations
Exploit Type:
Exposure: Attack Vectors:Impact:
Backup and Recovery
Don’t Pay the Ransom
Patch Vulnerabilities
Restrict Admin Privileges
Vendor Risk Management
After being hit with ransomware, dentists were left with a bad taste in
their mouth. The principal data service provider for hundreds of dental
offices was the target of this attack.
Ransomware
Dental Offices: Hundreds Felt the Pain
400+
Dental Offices System
Lockout
Third-Party
Custom
Ransomware
11. Get the latest updates at: ivanti.com/ThreatThursday
Thank You!
Editor's Notes
We’re starting to get some great data on what it costs to recover from a data breach. You can use these figures when doing a risk assessment. As an organization you can expect to suffer a breach once every ten years
The average dentist office has a dozen computers and maybe a few thousand records. Take 400 dental offices and now you have significant amount of pain. That’s exactly what the bad guys did here. Instead of extorting 400 individual dentist offices – they got smart and went after the service providers.