8
WHAT EVERY PHYSICIAN NEEDS TO KNOW: CYBER SECURITY BEST PRACTICES

What Every Physician Needs to Know: Cyber Security Best Practices

Embed Size (px)

Citation preview

Page 1: What Every Physician Needs to Know: Cyber Security Best Practices

What every physician needs to knoW:

cyber security best practices

Page 2: What Every Physician Needs to Know: Cyber Security Best Practices

1 manage your passWords

• Usestrongpasswords-mix8ormoreupperandlowercaseletters,numbers,andspecialcharacters.

• Don’tusethesamepasswordforeveryaccount.• Don’tshareyourpasswordswithothers.• Havealotofpasswords?Useapasswordmanager

applicationtocreateandstorethem.• Don’temailortextyourpasswords.Ifyoumustshare

them,doitinpersonoroverthephone.

Page 3: What Every Physician Needs to Know: Cyber Security Best Practices

2 maintain your softWare

• Removeapplicationsyounolongerneed.• Watchforandrespondtosecurityupdatenotices.Applythem

immediately.Theseincludeyouroperatingsystem(e.g.Windows7updates),webbrowsers(e.g.IE,Firefox,Chrome),andhelperprogramsusedtorunapplicationsandread/playfiles(e.g.Java,AdobePDFReader,Flash,QuickTime).

• Keepyouranti-virusprogramupdated,configuredproperly,andrunning.

• Encryptdataaccordingtoyourorganizationspolicies.

Page 4: What Every Physician Needs to Know: Cyber Security Best Practices

guard against phishing attacks

• Carefullyscrutinizelinksandattachmentsinemailsbeforeyouclickoropen.• Usebookmarkstosafelyreturntositesyouvisitfrequently.Usebrowser

functionsthatwarnofsiteswithpoorreputations.• Bewaryofalloutsiderequestsforsensitiveinformation;whetherbye-mail,

phoneortextmessage.• Independentlyverifytheidentityandauthorityofanyrequesterbeforedisclosing

sensitiveinformation,andthenonlyifthereisalegitimatebusinessneed.

3

Page 5: What Every Physician Needs to Know: Cyber Security Best Practices

keep sensitive information

physically secure

• Lockdocumentsawaywhennotusingthem.• Shieldinformationfromviewwhenothersarenear.• LockyourPCscreenandkeyboardwhenawayfromyourdesk

(Windowskey+LonadevicerunningMicrosoftWindows).• Keepmobiledevices(laptops,smartphones,tablets,USBsticks,etc.)

eitherwithinyoursight,orlockedupatalltimes.• Destroysensitiveinformation(hardcopyandelectronic)whenno

longerneeded.

4

Page 6: What Every Physician Needs to Know: Cyber Security Best Practices

avoid unsecure netWorks

outside the office

• Don’tconnecttotheofficefrompublicWi-Finetworks;useyourphone’scellulardataplaninstead.

• Ifyouconnectwhiletravelingorworkfromhome,haveyourITdepartmentsetyouupproperlywithsecureremoteaccess.

5

Page 7: What Every Physician Needs to Know: Cyber Security Best Practices

if you suspect a breach

• Donotpanic.Decisionsmadewithinthefirst72hoursofadatabreacharecritical,andmistakescanbecostlywithlastingeffectsonyourpractice.

• Donotturnofforrebootanysystems.Donotallowanyonetotakeanyactiononaffectedsystems.

• Recordcriticalfactsabouttheincident(dateandtimeofincident,whodiscovered,whathappened).

• Reportthesuspecteddatabreachtothedesignatedpersoninyourorganization.

6

Page 8: What Every Physician Needs to Know: Cyber Security Best Practices

protection for a neW era of

medicineabout tmlt:Withmorethan17,500physiciansinitscare,TexasMedicalLiabilityTrust(TMLT)providesmalpracticeinsuranceandrelatedproductstophysicians.Ourpurposeistomakeapositiveimpactonthequalityofhealthcareforpatientsbyeducating,protecting,anddefendingphysicians.www.tmlt.org

Find us on:

7