We use cookies, including third-party cookies from Google to serve personalized ads through AdSense, to operate this site and understand how it is used. By continuing to browse, you accept this use. See our Privacy Policy and Terms of Use for details, including how to opt out of personalized advertising.
Accept
Health Works CollectiveHealth Works CollectiveHealth Works Collective
  • Health
    • Mental Health
  • Policy and Law
    • Global Healthcare
    • Medical Ethics
  • Medical Innovations
  • News
  • Wellness
  • Tech
Search
© 2023 HealthWorks Collective. All Rights Reserved.
Reading: Healthcare Industry Loses $7 Billion Due to HIPAA Data Breaches
Share
Notification Show More
Font ResizerAa
Health Works CollectiveHealth Works Collective
Font ResizerAa
Search
Follow US
  • About
  • Contact
  • Privacy
© 2023 HealthWorks Collective. All Rights Reserved.
Health Works Collective > eHealth > Healthcare Industry Loses $7 Billion Due to HIPAA Data Breaches
eHealth

Healthcare Industry Loses $7 Billion Due to HIPAA Data Breaches

onlinetech
onlinetech
Share
6 Min Read
HIPAA Data Breach Economic Impact
SHARE

A recent study released in December 2012 by the Ponemon Institute, the Third Annual Benchmark Study on Patient Privacy & Data Security, reveals an inside look at the growing data breaches in the healthcare industry. Recurring data breaches are increasing among respondents, with 45 percent reporting more than five incidents in the last two years (an increase from 29 percent in 2010). Ninety-four percent of all respondents had at least one data breach in the past two years.

A recent study released in December 2012 by the Ponemon Institute, the Third Annual Benchmark Study on Patient Privacy & Data Security, reveals an inside look at the growing data breaches in the healthcare industry. Recurring data breaches are increasing among respondents, with 45 percent reporting more than five incidents in the last two years (an increase from 29 percent in 2010). Ninety-four percent of all respondents had at least one data breach in the past two years. The figure of a $7 billion loss to the healthcare industry overall was calculated by the Ponemon Institute by multiplying $1,195,135 x 5,754 (average economic impact for a healthcare organization over a one-year period x the total number of registered US hospitals per the AHA).

Why do data breaches happen more than once to the same organization? Shouldn’t they learn their lesson? Not necessarily – many healthcare organizations may have experienced multiple breaches due to improper remediation tactics.

As I wrote about in an article, In the Wake of a Healthcare Data Breach, the Utah Department of Health put in a thorough plan of action after they experienced a server hack affecting 780,000 individuals. Their plan included replacing the state’s chief technology officer, hiring an auditor to conduct security audits across all state agencies, encrypting both data in transit and stored data, hiring a PR firm to handle crisis communications, improving security controls with network monitoring and intrusion detection, as well as creating a new position for a privacy and security officer. Enacting both technical and administrative security creates a stronger defense against future attacks.

More Read

HIMSS Virtual Conference Education Center
HIMSS Virtual Conference: Pursuing Healthcare Transformation Through IT
Join me in Boston on Sept 8th and 9th to Learn About How to Build Health IT and Med Device Gateways
High Quality, Low Cost HealthCare Video Interview Series: Dr. Ivana Schnur Explains Sense.ly’s Remote Assesment Hub
How to Differentiate Your Health IT Products and Services
Personal Tracking Devices Dominate Digital Health Crowdfunding Dollars

Not all small or medium-sized businesses have the resources of a state government to put in such a thorough plan. However, they can learn from the lesson of many a data breach caused by the loss of a portable device (read: laptop). By keeping electronic protected health information (ePHI) off of devices and stored safely on a secure server in a secure data center environment, even small companies can benefit from preventative actions. It’s simple: if you lose the device, you don’t lose the data, nor do you allow unauthorized users access to the data.

One way to ensure data is protected is to use the services of a HIPAA compliant hosting provider. If audited against the OCR HIPAA Audit Protocol, your HIPAA hosting provider should understand the physical, technical and administrative controls needed to stay secure and compliant, as the healthcare industry requires. Both your hosting solution and data center in which your data lives should be HIPAA audited. Find out more about HIPAA compliant data centers.

The Ponemon study also found that the average economic impact of a data breach has increased by $400,000 to a total of $2.4 million since 2010. Economic impact includes anything from investigation, legal, federal penalty costs to loss of business due to downtime or decreased credibility. It can also include remediation or free credit monitoring typically offered to affected individuals, and any other costs related to potential fraud/identity theft. Since data breaches can result in a serious loss of revenue, putting your data at risk with a third-party that isn’t audited to the OCR standards or isn’t aware of their security responsibilities can be a gamble.

HIPAA Data Breach Economic Impact

HIPAA Data Breach Economic Impact; Source: Ponemon Institute

Another key finding was related to mobile devices; specifically, BYOD (Bring Your Own Device) that allows personal smartphone or tablet use by employees and medical staff. While 81 percent of healthcare organizations allowed BYOD in the workplace, only 9 percent were very confident in their BYOD security. The following measures are taken, with 46 percent responding that none of the listed security precautions were taken at their organization:

mHealth Security Measures

mHealth Security Measures; Source: Ponemon Institute

 

References:
Third Annual Benchmark Study on Patient Privacy & Data Security (PDF)

The post Healthcare Industry Loses $7 Billion Due to HIPAA Data Breaches appeared first on Managed Data Center News.

TAGGED:data breach
Share This Article
Facebook Copy Link Print
Share

Stay Connected

1.5KFollowersLike
4.5KFollowersFollow
2.8KFollowersPin
136KSubscribersSubscribe

Latest News

Before Sterilization Begins: Why Bioburden Testing Matters -- AI-generated illustration
Before Sterilization Begins: Why Bioburden Testing Matters
Health Infographics
September 11, 2026
Hidden Cybersecurity Roadblocks That Can Complicate FDA Submissions -- AI-generated illustration
Hidden Cybersecurity Roadblocks That Can Complicate FDA Submissions
Infographics Policy & Law Technology
September 11, 2026
Smaller, Lighter, Smarter: How Inflation Is Changing Wellness Packaging -- AI-generated illustration
Smaller, Lighter, Smarter: How Inflation Is Changing Wellness Packaging
Infographics Wellness
September 11, 2026
How Roof Deterioration Affects Indoor Air Quality and the Health of Building Occupants -- AI-generated illustration
How Roof Deterioration Affects Indoor Air Quality and the Health of Building Occupants
Health
September 10, 2026

You Might also Like

doctors and social media
BusinessSocial Media

The Compelling Case for Doctors to Warmly Embrace Social Media

November 23, 2014
Marketing strategy
eHealthSocial Media

Why Physicians Shouldn’t Do SEO Themselves

February 11, 2016
ehr failures
eHealthMedical Records

Why Most EHR’s Will Fail, is Yours Next?

August 2, 2012

Daycare Telemedicine Pilot

July 9, 2012
Subscribe
Subscribe to our newsletter to get our newest articles instantly!
Follow US
© 2008-2026 HealthWorks Collective. All Rights Reserved.
  • About
  • Contact
  • Privacy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?