© Eric C. Thompson 2017

Eric C. Thompson, Building a HIPAA-Compliant Cybersecurity Program, https://doi.org/10.1007/978-1-4842-3060-2_1

1. Not If, but When

Eric C. Thompson

(1)Lisle, Illinois, USA

Over the last three years, the number of breaches, lost medical records, and settlements of fines is staggering. During this span, nearly 140 million medical records were involved in a privacy breach. The Office for Civil Rights (OCR )1 issued 22 resolution agreements, requiring monetary settlements approaching $36 million. Despite the attention and lessons learned, some very troubling themes persist. Although warnings about increasing malware attacks, the introduction of crypto-ransomware in 2016, and predictions that healthcare records will continue ...

Get Building a HIPAA-Compliant Cybersecurity Program: Using NIST 800-30 and CSF to Secure Protected Health Information now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.