PhysiciansPractice Members: Login | Register

  • Home
  • About Us
  • Today's Practice
  • Live
  • CME
  • Podcasts
  • Tools
  • Topics
  • Blog
  • Career
  • Coding
  • EHR
  • Finance
  • Malpractice
  • Patient Relations
  • Staff
  • Technology
  • Buyers Guide
  • Publication

Home » Topics

Physicians Practice. Vol. 18 No. 9 2008/2009 Technology Guide
Pages: 1  2  3  4  5  
Previous Next
 

Security: Protect Your Practice and Sleep Better

Identity theft is quickly becoming the nation’s No. 1 crime. Protect your practice’s sensitive data.

By Barbara A. Gabriel | June 1, 2008


Covering your bases

John Livingston, CEO of Absolute Software, which manufactures Computrace LoJack, says that had LaPorta’s computer been populated with patient data that was already backed up elsewhere, the vendor could have remotely deleted that information before Computrace’s recovery team joined local police to physically recover the laptop. According to Livingston, the company’s recovery team maintains partnerships with more than 1,000 police departments across North America.

Of course, computers are targets for theft everywhere, including within the offices that use them. Livingston says that his father was a physician for almost 40 years, and the semi-public places in which he saw his father work made an impression on him. “There’s a lot of patient data being stored on computers, and in somewhat unsecured areas,” says Livingston, “so that’s the obvious vulnerability. … Securing data in any type of healthcare environment is challenging.”

Livingston says that small- and medium-sized healthcare practices are especially vulnerable to theft. “Often the office buildings that they are located in are quite easy to break into. … You might get people breaking in thinking that there are drugs in storage or something like that. … And once criminals get inside the office, they take whatever they can. The computers are a really easy target, because they’re worth a couple hundred bucks sold on the street, or they’re sold on eBay for closer to the value of the machine, and that happens a lot, unfortunately.”

Livingston also points out that smaller doctors’ offices often don’t have the comprehensive IT infrastructure that many larger healthcare organizations possess. “So their backup may be somewhat stale, and in those situations, we’ve recovered computers for small physician offices in which we’ve sort of saved the practice, if you will, because everything was on the computer that was stolen. We located the computer and got it back, and all of the patient information and billing systems were retrieved.”

There are other products that aim to retrieve stolen laptops or deter their theft. The Caveo Anti-Theft PC Card issues audible warning signals if a laptop is moved beyond a distance specified by its owner. Developed by Caveo Technology, the device operates whether the laptop is turned on or off. In addition to emitting sound, laptops equipped with Caveo’s PC card can also automatically prevent thieves from accessing the computer’s operating system, passwords, and encryption keys. If a stolen computer is recovered, a master code is required to regain access.

SprintSecure Laptop Guardian utilizes a mobile broadband connection card that serves as an ignition key (the user must insert it into the laptop to use the computer). If both the laptop and card are stolen, an IT administrator can remotely revoke authentication privileges, rendering the laptop useless to the unauthorized user.

Securing data in transit

Besides theft, Livingston says the other prime vulnerability especially specific to small- and medium-sized practices is the transmission of patient data to third parties.

In August 2006, a computer was discovered missing from Unisys, a subcontractor that provides billing and claims support to the VA Medical Centers in Pittsburgh and Philadelphia. Information contained on this computer included the names, dates of birth, addresses, Social Security numbers, and claims information on approximately 16,000 patients.

Does your practice outsource its billing like the VA? If so, can you ensure that your patients’ information is secure?

Even if your laptop is never stolen, data in transit can be intercepted. That’s why Livingston says secure firewall and encryption systems are crucial. “You need that especially if practices are digital, and they’re uploading patient or financial information … to a central site somewhere for billing purposes,” says Livingston. “The doctors have the onus on them to … secure that transaction on both ends to ensure … no third party can gain access to the information as it transmits back and forth.”

But once you’ve transmitted patient data to a third party, how can you be sure the vendor’s own safety practices are adequate? Tell them to prove it, says Sprague, “When your vendor says, ‘We’ve got it all covered; it’s safe,’” Sprague advises asking it to explain and demonstrate to you exactly how it encrypts your patient data to protect it from prying eyes. Don’t let up until you’re convinced.

If you sufficiently address the physical storage of your hardware and secure your data transmission beyond your practice, Livingston says “you’re pretty well covered.”

Pages: 1  2  3  4  5  
Previous Next
 

Add your own comment







Topic Index

Best States to Practice
Career

Coding
Classifieds
EHR
Finance
Law & Malpractice

Patient Relations
Patient Dismissal
RVU/Relative Value Units
Staff Management
Staff Salaries
Technology
All Topics

 

-- Advertisement--

FixIt

Decisions, Decisions: Your IT Shopping Checklist
Medical Practice Management Technology Resources
Lab Tracking Tool
Calculate EMR ROI


  • On This Site
  • Most Emailed
  • On This Topic

MostPopular

  • The Best States to Practice: America’s Physician-Friendliest States

    FEB 1 2007 PHYSICIANS PRACTICE READ >>

  • What Should You Pay Staff?

    JUL 14 2010 PHYSICIANS PRACTICE READ >>

  • Solving Your 9 Biggest Billing Blunders

    APR 30 2010 PHYSICIANS PRACTICE READ >>

  • Coding Questions? We’ve Got the Answers

    JUN 1 2010 PHYSICIANS PRACTICE READ >>

  • Coding Questions? We've Got the Answers

    NOV 14 2003 PHYSICIANS PRACTICE READ >>

MostPopular

  • Solving Your 9 Biggest Billing Blunders

    APR 30 2010PHYSICIANS PRACTICE READ >>

  • What Should You Pay Staff?

    JUL 14 2010PHYSICIANS PRACTICE READ >>

  • How to Deal with Grouchy Patients

    AUG 18 2010PHYSICIANS PRACTICE READ >>

  • Preparing for the ICD-10 Transition

    AUG 20 2010PHYSICIANS PRACTICE READ >>

  • Using Social Networking as a Marketing Tool

    AUG 31 2010PHYSICIANS PRACTICE READ >>

MostPopular

  • The Best States to Practice: America’s Physician-Friendliest States

    FEB 1 2007 PHYSICIANS PRACTICE READ >>

  • What Should You Pay Staff?

    JUL 14 2010 PHYSICIANS PRACTICE READ >>

  • Solving Your 9 Biggest Billing Blunders

    APR 30 2010 PHYSICIANS PRACTICE READ >>

  • Coding Questions? We’ve Got the Answers

    JUN 1 2010 PHYSICIANS PRACTICE READ >>

  • Coding Questions? We've Got the Answers

    NOV 14 2003 PHYSICIANS PRACTICE READ >>


SponsoredWhitePapers

EMR Mythbusters
- Nuesoft Technologies

Investing in Patient Education — The Benefits for Your Patients and Your Practice
- Krames

A Beginner’s Guide to Selecting an EHR
- Welch Allyn

EMR Readiness: The R-Factor
- GE Healthcare

View All

 

CancerNetwork | ConsultantLive | Diagnostic Imaging | Psychiatric Times | Physicians Practice | SearchMedica

© 1996 - 2010 UBM Medica LLC, a United Business Media company
Privacy Statement - Terms of Service - Advertising Information - Editorial Policy Statement


 
ADDITIONAL ONLINE RESOURCES FROM UBM MEDICA
Featured Resources > Psychiatry Careers > Practice Management Conference > Today's Practice - Practice Management Resource > RSV Information > EHR Resources
CancerNetwork > Cancer diagnosis, treatment, and prevention > Podcasts for Oncologists > Cancer Patient Resources > Oncology Areas of Confusion > Oncology News > Cancer Management Handbook > Breast Cancer Resource > Bone Metastases > Chronic Myeloid Leukemia
Consultant Live > Diabetes Resources > Pediatric Asthma > Practical Clinical Advice > Medical Photoclinic > Diagnosing and Treating H1N1 flu (swine flu) > Primary Care Conference Reports > Community Acquired MRSA
Diagnostic Imaging > Medical Imaging News and Features > Medical Imaging and Radiology White Papers > Radiology Conference Reports > Radiology Special Reports > Radiology Net Seminars > Imaging Trends and Advances > RSNA 2009 Conference Coverage > Radiology Vendors
Psychiatric Times > Psychiatric News and Special Reports > APA Conference Report > Psychiatric Clinical Scales > Psychiatric Times Blog > Psychiatry Career Opportunities > DSM-5 > Major Depressive Disorder
Physicians Practice > Practice Management > EMR Software > Medical Practice Management Software > Medical Buyers Guide > Medical Coding > Practice Management Blog
SearchMedica > Professional Medical Search Engine > Medical Search Tips Newsletter > Medical Search News > Diabetes Research and Articles
Musculoskeletal Network > Muscle, Bone, Joint Medical Resources > Rheumatoid Arthritis Resource Center
The AIDS Reader > HIV News, Treatment, and Diagnosis for Medical Professionals
CME LLC > Continuing Medical Education > Psychiatry CME > Oncology CME > Practice Management CME > Primary Care CME > Psychiatric Congress > Performance Improvement CME > Treating the Whole Patient (TWP) — The Mind-Body Connection
More Resources > Consumer Healthcare Information > Patient and Caregiver Resource > Search drug information, interactions, images & diagnosis > Infectious Diseases > Respiratory Disease