By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Health Works CollectiveHealth Works CollectiveHealth Works Collective
  • Health
    • Mental Health
  • Policy and Law
    • Global Healthcare
    • Medical Ethics
  • Medical Innovations
  • News
  • Wellness
  • Tech
Search
© 2023 HealthWorks Collective. All Rights Reserved.
Reading: 3rd Annual Benchmark Study on Patient Privacy & Healthcare Data Security
Share
Notification Show More
Font ResizerAa
Health Works CollectiveHealth Works Collective
Font ResizerAa
Search
Follow US
  • About
  • Contact
  • Privacy
© 2023 HealthWorks Collective. All Rights Reserved.
Health Works Collective > eHealth > 3rd Annual Benchmark Study on Patient Privacy & Healthcare Data Security
eHealth

3rd Annual Benchmark Study on Patient Privacy & Healthcare Data Security

thielst
thielst
Share
4 Min Read
SHARE

The Third Annual Benchmark Study on Patient Privacy & Data Securityby Ponemon Institute and ID Experts, has been released and reports that healthcare organizations face a huge challenge in stopping data breaches. 

The Third Annual Benchmark Study on Patient Privacy & Data Securityby Ponemon Institute and ID Experts, has been released and reports that healthcare organizations face a huge challenge in stopping data breaches. 

  • 94% of healthcare organizations surveyed suffered at least one data breach
  • 45% of organizations experienced more than five data breaches during the past two years
  • Astonishingly,  69% off organizations still have not secure medical devices—such as mammogram imaging and insulin pumps (IT and Biomed have to talk!)
  • The cost to the industry could average $7 billion annually. 

Most organizations surveyed say they have insufficient resources to prevent and detect data breaches, but consider the alternatives.  Patients are at increased risk for medical identity theft and their PHI and privacy could be violated as mobile and cloud technology becomes pervasive.

Change is needed and recommendations include:

More Read

3 Key Takeaways from 2011 mHealth Summit
Studies: Texting Between Providers and Patients Can Improve Health Care
Head of the DOJ’s Antitrust Division Raises Concerns About Two Proposed Mega-Mergers Between Leading Health Insurers
Medical Innovation – Big Data and Patient Engagement
Why Digital Marketing is an ROI Life-Saver for Clinical Trials
  1. Operationalize pre-breach and post-breach processes, including incident assessment and incident response processes
  2. Restructure the information security function to report directly to the board to symbolize commitment to data privacy and security
  3. Conduct combined privacy and security compliance assessments annually
  4. Update policies and procedures to include mobile devices and cloud
  5. Ensure the Incident Response Plan (IRP) covers business associates, partners, cyber insurance

If you like visuals, check out the infographic.  If you are into details, read the entire report and consider:

  • Information breached is largely medical files and billing and insurance records. According to the research, 54% of organizations have little or no confidence that they can detect all patient data loss or theft. Based on the experience of the 80 healthcare organizations participating in this research, the resulting cost to the U.S. healthcare industry could be $6.87 billion, up from 2011. The average impact of a data breach is $1.2 million per organization.
  • The causes of data breach cited were loss of equipment (46%), employee errors (42%), third-party snafu (42%), criminal attack (33 %), and technology glitches (31%). Cases of medical identity theft occurred at 52% of the organizations, and it lead to inaccuracies in the patient’s medical record (39%) and/or affected the patient’s medical treatment (26%).
  • Mobile devices in the workplace pose threats to patients’ PHI.  Employees are permitted to use their own mobile devices—commonly called Bring Your Own Device (BYOD)—often to access organization data (81%), yet organizations are not confident that these personally owned mobile devices are secure (54%). Hospitals surveyed are using cloud-based services (91%) to store patient records, patient billing information, and financial information, but 47% percent lack confidence in the data security of the cloud.
  • This past year, 36% of healthcare organizations made improvements in their privacy and security programs, in response to the threat of audits conducted by the U.S. Department of Health and Human Services Office for Civil Rights. While 48% of organizations are now conducing security risk assessments, only 16% are conducting privacy risk assessments. Organizations still have insufficient resources to prevent and detect data breaches (73%) and/or don’t have controls to prevent and/or quickly detect medical identity theft (67%).

Now that I have an headache, I think I’ll stop here.

TAGGED:data security
Share This Article
Facebook Copy Link Print
Share

Stay Connected

1.5KFollowersLike
4.5KFollowersFollow
2.8KFollowersPin
136KSubscribersSubscribe

Latest News

The Evolving Role of Nurse Educators in Strengthening Clinical Workforce Readiness
Career Nursing
December 22, 2025
back health
The Quiet Strain: How Digital Habits Are Reshaping Back Health
Infographics
December 22, 2025
in-home care service
How to Choose the Best In-Home Care Service for Seniors with Limited Mobility
Senior Care Wellness
December 19, 2025
What Are the Steps to Obtain Health Equity Accreditation?
What Are the Steps to Obtain Health Equity Accreditation?
Health
December 18, 2025

You Might also Like

Medical-Device-Marketing-Digital-Marketing-Healthcare-Marketing
eHealthMedical DevicesSocial MediaTechnology

How Does Your Medical Device (Digital) Marketing Support Your Sales Force?

August 19, 2015
Example of Patient Check-in Workflow
Medical Records

Analyze Your Workflow Before Selecting a HIPAA Hosting Provider

March 13, 2012
Image
OrthopaedicsSocial Media

What is the Future of Social Media for Orthopedic Surgeons?

May 1, 2012
Dr. Ryan Greysen, pictured on right, in a hypothetical photo demonstrating what type of online physician behavior could prompt state boards to investigate. (Image used with permission by Dr. Ryan Greysen.)
Social Media

Doctors and Social Media – Two Photos Which Could Prompt State Boards to Investigate

January 24, 2013
Subscribe
Subscribe to our newsletter to get our newest articles instantly!
Follow US
© 2008-2025 HealthWorks Collective. All Rights Reserved.
  • About
  • Contact
  • Privacy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?