Skip to main content

Author: Allison Burke

HHS Providers Resource for Change Healthcare Recovery

In light of continuing concerns expressed by health providers about their difficulty getting answers from healthcare plans about the availability of prospective payments or the flexibilities while the Change Healthcare platform is unavailable, HHS asked health plans to provide specific national contact information that providers can use when they need this information. The attached letter from HHS with an appendix for Plan/Payer contact information is made widely available and should be shared with providers who need it. HHS also advises that if a provider has a regional point of contact for your health plan, they suggest you reach out to them first. If you reach out to these contacts and do not receive a response, please contact HHS at HHScyber@hhs.gov.

Health Sector Publishes Privacy and Security Coordination Guide

Washington, DC – February 16, 2024 – The Healthcare and Public Health Sector Coordinating Council (HSCC) Cybersecurity Working Group today published a guide for health providers and companies to coordinate privacy and cybersecurity functions for improved overall compliance and operational efficiencies and effectiveness. It is found here: https://healthsectorcouncil.org/privacy-security-coordination/

Continue reading

Medtech Vulnerability Communications Toolkit (MVCT)

MVCT is a toolkit written to provide specific tools to medical device manufacturers and software developers for creating cybersecurity vulnerability communications related to their products or services. This toolkit focuses on vulnerability communications directed to non-security professionals, including clinicians, patients, users and other readers not familiar with cybersecurity and connected technologies. It is intended to help medical device manufacturers formulate and communicate vulnerability disclosures that all affected audiences, including nontechnical stakeholders, can understand.

Continue reading

Health Industry Cybersecurity – Securing Telehealth and Telemedicine (HIC-STAT)

HIC-STAT identifies cyber risks and best practices associated with the use of telehealth and telemedicine, and summarizes the policy and regulatory underpinnings for telehealth/telemedicine cyber risk management. It is targeted for senior executives in healthcare and IT, telehealth service and product companies, and regulators.

Continue reading

HSCC Comment Letter on CISA Cross-Sector Cybersecurity Performance Goals

The HSCC Cybersecurity Working Group advises CISA to recognize the many cybersecurity tools and resources developed specifically for the health sector, and that any CISA Common Baseline Cybersecurity Performance Goals should align closely to these health sector resources to minimize confusion in the sector about the preferred frameworks to implement.

The letter was developed by members of the Measurement and Policy Task Groups, and the CWG Executive Committee.

Continue reading

The Future of Secure Healthcare Systems Podcast

The intersection between cybersecurity and healthcare can sometimes be a complicated gray area for people that don’t know much about this topic. In this episode, we talk with Erik Decker, the Chief Information Security Officer at Intermountain Healthcare, a mastermind leader in cybersecurity in the healthcare field. When it comes to the healthcare sector, Erik reflects on how technology has to keep up with the pace we are now running in, addressing threats around cybersecurity and the relationship between AI and machine learning in this topic.

Continue reading