ETFOptimize | High-performance ETF-based Investment Strategies

Quantitative strategies, Wall Street-caliber research, and insightful market analysis since 1998.


ETFOptimize | HOME
Close Window

Protecting Health Care Data Through Shared Responsibility for Data Security

By: 3BL Media

Discussing how to combine privacy and security to protect health IT organizations

SOURCE: Tetra Tech

DESCRIPTION:

Tetra Tech’s Nolan Morrison, who supported the implementation of the Data Guardian program for the U.S. Department of Health and Human Services (HHS), discusses the importance of collaboration and shared responsibility for protecting personal health information.

We all entrust personal data and information about our health to health care providers and public health organizations. This data is sensitive, private, and protected by statute. However, it is highly coveted by malicious actors and cyber criminals. Health information technology (IT) organizations are challenged to vigorously defend this data against persistent threats while making it available to those who need it. This can include medical personnel at the point of care, researchers, administrators, policy makers, and others.

Collaboration to understand individual responsibility

Tetra Tech helped HHS to address this challenge by establishing the Data Guardian program. Data Guardian and similar programs succeed by making the human factor a foundation for both privacy and security. The program concentrates on effort and attention across a wide range of stakeholder roles towards the protection of data and systems.

The traditional approach to data protection engages each stakeholder without their consideration of other roles within the organization. The Data Guardian program brings together leaders and practitioners across organizational functions on a regular basis to establish and maintain a common understanding of the following:

  • Type of protected information in the organization’s control
  • Logical and physical location of the data
  • Threats to the data
  • High-level security measures that must be taken to protect the data

From here, other initiatives, such as role-based security training, help each stakeholder understand their role in the broader landscape of the data protection strategy.

Embracing shared responsibility for data security

Data Guardian established a culture of shared responsibility for data. This applies to consumers, custodians, and processors of data; IT personnel who maintain and operate systems; and organizational leaders who drive the mission forward. Everyone in the organization is a Data Guardian. Representatives from all stakeholder groups collaborate proactively to develop, implement, and adjust the data protection strategy. Everyone shares what they see, hear, and perceive, enabling the data protection strategy to consider a wide set of perspectives from throughout the organization rather than being driven from by a top-down approach. The benefit is not only more effective management of cyber risk, but also a balanced approach to managing risk in a manner that enables the mission. The Data Guardian program also collates the perspectives from the stakeholder community, information from security-relevant events, and developments in the evolving threat landscape to enhance ongoing security training and awareness campaigns.

At HHS, the program has resulted in greater awareness of threats following meetings at which varied perspectives were centralized and discussed. The Data Guardian program also informed enhancements to the Authority to Operate process through facilitated discussions between the privacy and cybersecurity functions at the agency. These achievements have a direct positive impact on the protection of data within the department’s care and custody.

Tweet me: .@TetraTech's Nolan Morrison discusses how to combine privacy and security to protect health IT organizations: https://bit.ly/3ouxlEb #LeadingWithScience

KEYWORDS: Tetra Tech, NASDAQ: TTEK

Recent Quotes

View More
Symbol Price Change (%)
AMZN  232.52
+0.14 (0.06%)
AAPL  273.40
-0.41 (-0.15%)
AMD  214.99
-0.05 (-0.02%)
BAC  56.17
-0.08 (-0.14%)
GOOG  314.96
-0.71 (-0.22%)
META  663.29
-4.26 (-0.64%)
MSFT  487.71
-0.31 (-0.06%)
NVDA  190.53
+1.92 (1.02%)
ORCL  197.99
+0.50 (0.25%)
TSLA  475.19
-10.21 (-2.10%)
Stock Quote API & Stock News API supplied by www.cloudquote.io
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the Privacy Policy and Terms Of Service.


 

IntelligentValue Home
Close Window

DISCLAIMER

All content herein is issued solely for informational purposes and is not to be construed as an offer to sell or the solicitation of an offer to buy, nor should it be interpreted as a recommendation to buy, hold or sell (short or otherwise) any security.  All opinions, analyses, and information included herein are based on sources believed to be reliable, but no representation or warranty of any kind, expressed or implied, is made including but not limited to any representation or warranty concerning accuracy, completeness, correctness, timeliness or appropriateness. We undertake no obligation to update such opinions, analysis or information. You should independently verify all information contained on this website. Some information is based on analysis of past performance or hypothetical performance results, which have inherent limitations. We make no representation that any particular equity or strategy will or is likely to achieve profits or losses similar to those shown. Shareholders, employees, writers, contractors, and affiliates associated with ETFOptimize.com may have ownership positions in the securities that are mentioned. If you are not sure if ETFs, algorithmic investing, or a particular investment is right for you, you are urged to consult with a Registered Investment Advisor (RIA). Neither this website nor anyone associated with producing its content are Registered Investment Advisors, and no attempt is made herein to substitute for personalized, professional investment advice. Neither ETFOptimize.com, Global Alpha Investments, Inc., nor its employees, service providers, associates, or affiliates are responsible for any investment losses you may incur as a result of using the information provided herein. Remember that past investment returns may not be indicative of future returns.

Copyright © 1998-2017 ETFOptimize.com, a publication of Optimized Investments, Inc. All rights reserved.