IDG Contributor Network: Healthcare security and HIPAA: Why compliance and security are still lacking
A number of healthcare data breaches have made the news of late, particularly involving large insurance companies and data clearinghouses. As the media portrays the situation, our private health information is leaking to the outside world at an alarming rate. Based on BitSight's recently-released Third Annual Industry Benchmark Report, we should not be surprised. Based on the BitSight report, the healthcare industry is near worst in overall security, with only education below them.
The data available prompts one big question – why is the security of our most personal data so poor? By comparison, security in the financial industry (best in the BitSight report) is well addressed, with significant guidance and oversight being provided by PCI, GLBA and other bodies of regulations. The healthcare world has HIPAA, which admittedly, as security standards go, is fairly weak. That being said, it does not appear that it is being followed well.
To read this article in full or to leave a comment, please click here