2021 Healthcare Cybersecurity Priorities: Experts Weigh In


Healthcare cybersecurity is in triage mode. As systems are stretched to the limits by COVID-19 and technology becomes an essential part of everyday patient interactions, hospital and healthcare IT departments have been left to figure out how to make it all work together, safely and securely. Most notably, the connectivity of everything from thermometers to defibrillators is exponentially increasing the attack surface, presenting vulnerabilities IT professionals might not even know are on their networks. The result has been a newfound attention from ransomware and other malicious actors circling and waiting for the right time to strike. Rather than feeling overwhelmed in the current cybersecurity environment, it's important for healthcare and hospital IT teams to look at security their networks as a constant work in progress, rather than a single project with a start and end point, according to experts Jeff Horne from Ordr and G. Anthony Reina who participated in Threatpost's November webinar on Heathcare Cybersecurity. "This is a proactive space," Reina said. "This is something where you can't just be reactive. You actually have to be going out there, searching for those sorts of things, and so even on the technologies that we have, you know, we're, we're proactive about saying that security is an evolving, you know, kind of technology, It's not something where we're going to be finished." Healthcare IT pros, and security professionals more generally, also need to get a firm handle on what lives their networks and its potential level of exposure. The fine-tuned expertise of healthcare connected machines, along with the enormous cost to upgrade hardware in many instances, leave holes on a network that simply cannot be patched. "Because, from an IT perspective, you cannot manage what you can't see, and from a security perspective, you can't control and protect what you don't know," Horne said. Threatpost's experts explained how healthcare organizations can get out of triage mode and ahead of the next attack. The webinar covers everything from bread and butter patching to a brand-new secure data model which applies federated learning to functions as critical as diagnosing a brain tumor. Alternatively, a lightly edited transcript of the event follows below. Thank you so much for joining. We have an excellent conversation planned on a critically important topic, Healthcare cybersecurity. My name is Becky Bracken, I'll be your host for today's discussion. Before we get started, I want to remind you there's a widget on the upper right-hand corner of your screen where you can submit questions to our panelists at any time. We encourage you to do that. You'll have to answer questions and we want to make sure we're covering topics most interesting to you, OK, sure. Let's just introduce our panelists today. First we have Jeff Horne. Jeff is currently the CSO at Ordr and his priors include SpaceX.