Organizations responsible for most security incidents
HIPAA Weekly Advisor, April 9, 2007
Want to receive articles like this one in your inbox? Subscribe to HIPAA Weekly Advisor!
Most data security incidents are due to organizational mistakes, rather than hackers, according to a new study by researchers at the University of Washington, in Seattle.
A Case of Mistaken Identity? News Accounts of Hacker, Consumer, and Organizational Responsibility for Compromised Digital Records, 1980-2006 shows that although hackers have been responsible for about 31% of incidents from 1980 to 2006, "mismanagement" has accounted for 60% of breaches. Mismanagement includes the following:
- Missing/stolen equipment
- Administrative errors
- Theft or abuse by employees
- Accidental posting of sensitive information online
However, the authors of the study acknowledge that hackers have more impact in terms of volume of compromised records, accounting for approximately 45%. Organizations are responsible for about 27% of compromised records.
Click here to read a draft of the report.
Want to receive articles like this one in your inbox? Subscribe to HIPAA Weekly Advisor!
Related Products
Most Popular
- Articles
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Catch up on what's new with injections and infusions
- Topic: CMS, OESS post new security compliance review information, checklist
- Capturing all necessary codes for IUD insertion and removal can be challenging
- What does case-mix index mean to you?
- QA:Coding multiple initial infusions
- News and briefs: Oklahoma Osteopathic Association against residency bill change
- HIPAA Q&A: Level of encryption needed for email
- OB services: Coding inside and outside of the package
- E-mailed
-
- Q/A: Volume requirement for reporting hydration services
- Featured blog post: Nurses face felony charges after reporting physician to the Texas Medical Board
- Catch up on what's new with injections and infusions
- New conflicts of interest create new challenges
- Q/A. One injection code or two?
- What does case-mix index mean to you?
- ED-to-inpatient transfers are flawed with safety gaps
- Joint Commission Center announces handoff communication solutions
- Inside best practice: Reduce patient falls with a stoplight
- Identify modifiable risk factors to prevent patient falls
- Searched