Are you aware that cyber adversaries target the health care sector the most of all critical infrastructure sectors? Hospitals and health systems in particular have frequently been the target of high-impact ransomware attacks, which disrupt patient care and risk patient safety. 

Yet, due to a number of economic factors, including the response to COVID-19, hospitals may have constraints on the amount of financial resources available to devote to cybersecurity. Hospitals and health systems have also seen a dramatic increase in cyber vulnerabilities and attacks during this time, exacerbated by the necessity to greatly expand remote and internal networks and connected devices in response to COVID-19, resulting in a vast and complex attack surface. Hospitals also have the highest cyberattack recovery costs when compared to other sectors. Similar to cross-industry peers, hospitals and health systems are increasingly ranking cyber risk as a top enterprise risk priority, all while their confidence in cyber resiliency may be decreasing. 

Adding to the importance of this issue is the fact that, unlike other sectors, cyberattacks on health care providers have a direct impact not just on data, but on people 鈥 the patients we care for and the communities we serve. In this imminent cyber threat environment, while the nation鈥檚 hospitals are on the front line in the battle against COVID-19, the AHA recognizes their urgent need to defend their organizations and the patients and communities they care for.

AHA Preferred Cybersecurity Provider Program: Meeting an Urgent Cybersecurity Need
Feedback from AHA members indicates you would like access to trusted information to help guide your selection of cybersecurity solution providers that address your specific challenges.

Our cyber adversaries are agnostic and collaborative in their approach 鈥 they assist each other to develop and launch malware and ransomware attacks against health care. That鈥檚 why the health care field, the AHA and the commercial cybersecurity community need to take the same collaborative approach when it comes to cyber defense and combine our collective resources. In this 鈥渨hole of nation鈥 approach we can assist the entire field by providing resources and guidance to help individual members 鈥 one team, one fight. 

To meet AHA members鈥 urgent need for the best cybersecurity possible, the AHA Cybersecurity and Risk Advisory team has developed the AHA Preferred Cybersecurity Provider (APCP) Program to aid you in your selection of a commercial cybersecurity solution provider.

Benefits of the AHA Preferred Cybersecurity Provider Program 
Using a strict due diligence process, AHA has curated an exclusive panel of a limited number of highly reputable, qualified and accomplished cybersecurity service providers for your consideration. These Preferred Cybersecurity Providers offer AHA member organizations exceptional value in terms of quality and pricing, with special discounts for AHA members only. To ensure continued quality, we will:

鈥    Follow up with member participants with a satisfaction survey so we can evaluate the provider鈥檚 performance and continued participation in the program. 
鈥    Provide feedback to our commercial partners for continued quality control and enhancement of their services for members.

Learn more about the program, the services offered by the APCPs and how you can get started.

John Riggi is the AHA senior advisor for cybersecurity and risk. 
 

Related News Articles

Headline
The Cybersecurity and Infrastructure Security Agency April 17 released guidance to reduce risks associated with a reported breach of Oracle cloud services.鈥
Headline
The National Counterintelligence and Security Center, the FBI, and the Defense Counterintelligence and Security Center yesterday released guidance on鈥
AHA Cyber Intel
While the rate of cyberattacks on hospitals has risen dramatically, the severity of the impacts has also grown exponentially. Let鈥檚 look at the state of cyber鈥
Headline
The House Energy and Commerce Oversight and Investigations Subcommittee April 1 discussed cybersecurity threats in legacy medical devices during a hearing. The鈥
Headline
The Trump Administration March 28 announced that it renewed for one year the public emergency for ongoing malicious cyber-enabled activities against the U.S.鈥
Headline
The FBI March 26 advised that, after extensive investigation and intelligence review, they have not identified any specific credible threat targeted against鈥