How Sanction Policies Can Support HIPAA Compliance

Last year, the Health Sector Cybersecurity Coordination Center (HC3) under the Department of Health and Human Services (HHS) issued a threat brief outlining various social engineering tactics employed by hackers to infiltrate healthcare information systems. The brief recommended multiple protective measures to counter social engineering, one of which emphasized holding every department accountable for security. An organization's sanction policies foster accountability and enhance cybersecurity and data protection. Sanction policies serve as valuable tools in addressing the deliberate actions of malicious insiders, such as data theft by identity theft rings, and addressing instances where workforce members fail to adhere to policies and [...]