5
views
0
recommends
+1 Recommend
0 collections
    0
    shares
      • Record: found
      • Abstract: found
      • Article: not found

      Healthcare Data Breaches: Implications for Digital Forensic Readiness.

      Read this article at

      ScienceOpenPublisherPubMed
      Bookmark
          There is no author summary for this article yet. Authors can add summaries to their articles on ScienceOpen to make them more accessible to a non-specialist audience.

          Abstract

          While the healthcare industry is undergoing disruptive digital transformation, data breaches involving health information are not usually the result of integration of new technologies. Based on published industry reports, fundamental security safeguards are still considered to be lacking with many documented data breaches occurring as the result of device and equipment theft, human error, hacking, ransomware attacks and misuse. Health information is considered to be one of the most attractive targets for cybercriminals due to its inherent sensitivity, but digital investigations of incidents involving health information are often constrained by the lack of the necessary infrastructure forensic readiness. Following the analysis of healthcare data breach causes and threats, we describe the associated digital forensic readiness challenges in the context of the most significant incident causes. With specific focus on privilege misuse, we present a conceptual architecture for forensic audit logging to assist with capture of the relevant digital artefacts in support of possible future digital investigations.

          Related collections

          Author and article information

          Journal
          J Med Syst
          Journal of medical systems
          Springer Science and Business Media LLC
          1573-689X
          0148-5598
          Nov 28 2018
          : 43
          : 1
          Affiliations
          [1 ] Edith Cowan University, Perth, Australia. m.chernyshev@ecu.edu.au.
          [2 ] University of Kentucky, Lexington, KY, 40506-0224, USA.
          [3 ] Commonweath Scientific and Industrial Research Organisation (CSIRO), Data61, Melbourne, Australia.
          Article
          10.1007/s10916-018-1123-2
          10.1007/s10916-018-1123-2
          30488291
          b19fa455-c908-4ef8-81e5-3828cd9d9d7a
          History

          Computer crime,Forensics,Health information management,Security,Threat

          Comments

          Comment on this article