City
Epaper

IIM Lucknow’s new model to mitigate cybersecurity risk in healthcare

By IANS | Updated: September 29, 2023 17:40 IST

Lucknow, Sep 2 A team of researchers at the Indian Institute of Management (IIM) Lucknow have developed a ...

Open in App

Lucknow, Sep 2 A team of researchers at the Indian Institute of Management (IIM) Lucknow have developed a model to protect healthcare systems globally from cyber threats.

Their ‘Healthcare Cyber Risk Assessment model’ evaluates and mitigates risks of cyberattacks, thereby ensuring the security of patient data and the continuity of digital healthcare services for healthcare institutions.

The increasing complexity and sensitivity of data in healthcare organisations have heightened their susceptibility to cyberattacks, especially as the healthcare sector's reliance on digital data has grown during the Covid-19 pandemic.

Digital health records contain sensitive personal information like government IDs (e.g., Aadhaar), medical histories, finances, and insurance details, which cybercriminals can use for identity theft and fraud. Unfortunately, many healthcare organisations all over the world lack cybersecurity measures, making them easy targets for cybercriminals.

The team aimed to tackle this issue by investigating the weak points in healthcare data security that hackers exploit. They proposed that cyber threats become more likely when the healthcare staff lacks training to counter tactics like phishing, and when IT governance and security technology are not effectively implemented.

“Our risk assessment and quantification models have helped us group 1,788 US healthcare firms on a ‘heat matrix’ that shows the likelihood of a cyberattack and its potential severity. This gives us a clear picture of how ready the firms are to tackle cyber threats. We also propose a plan to tackle the risks, which is customised according to the position of the firm in the matrix,” said Prof. Arunabha Mukhopadhyay, from IIM-L, who led the research, in a statement.

The model, which can be extended to the Indian healthcare sector, can assist Chief Information Officers (CIOs) of healthcare institutions in determining the vulnerability of the healthcare institution to cyberattacks. It employs collective risk modelling to assess the potential severity of cyberattacks, which can help hospitals predict the impact and also offers recommendations on how to mitigate and prevent these cyberattacks.

The recommendations are derived from Rational Choice Theory and the standards outlined by the National Institute of Standards and Technology (NIST). They include prioritising cybersecurity measures such as firewalls, and antivirus solutions.The model also offers practical cyberattack safeguards for healthcare firms in high-risk quadrants of the heat matrix.

It also includes data backup, staff anti-phishing training, senior management engagement, advocating cybersecurity laws, and investments in cybersecurity technologies like endpoint detection and response (EDR), extended detection and response (XDR), next generation firewall (NGFW), antivirus, security incident and event management (SIEM), and security orchestration, automation and response (SOAR).

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

InternationalGlobal push for traditional medicine gains momentum after WHO summit

Cricket"Except openers, we are flexible to bat anywhere": Tilak Varma speaks on his batting position

Cricket"Got some different skills": Tilak Varma on Suryakumar Yadav

International"Extremely alarming": Priyanka Gandhi urges Centre to take cognisance of increasing violence against Hindus in Bangladesh

Cricket"Always exciting when your contribution helps team win": Hardik Pandya after his 16-ball fifty leads India's charge to series win over Proteas

International Realted Stories

InternationalIndia shows how tradition, modern science can advance together: WHO chief Tedros at global summit on traditional medicine

InternationalUS says it is grateful as Pakistan weighs Gaza troop role

International"More than a workplace": WHO DG as South-East Asia Regional Office inaugurated in New Delhi

InternationalJaishankar meets multi-party parliamentary delegations that represented India at UNGA

InternationalIndia, Netherlands agree to set up Joint Trade and Investment Committee; sign key MoUs during Dutch FM's visit