• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
  • Skip to secondary sidebar
  • Skip to footer

  • Opinion
  • Health IT
    • Behavioral Health
    • Care Coordination
    • EMR/EHR
    • Interoperability
    • Patient Engagement
    • Population Health Management
    • Revenue Cycle Management
    • Social Determinants of Health
  • Digital Health
    • AI
    • Blockchain
    • Precision Medicine
    • Telehealth
    • Wearables
  • Startups
  • M&A
  • Value-based Care
    • Accountable Care (ACOs)
    • Medicare Advantage
  • Life Sciences
  • Research

Healthcare Organizations at Risk of Data Breach Due to Insecure File Sharing Practices

by Fred Pennic 07/24/2024 Leave a Comment

  • LinkedIn
  • Twitter
  • Facebook
  • Email
  • Print
Healthcare Organizations at Risk of Data Breach Due to Insecure File Sharing Practices

What You Should Know: 

– A new report by Metomic, a data security company, reveals concerning vulnerabilities in how healthcare organizations handle sensitive data. 

– The report, titled “Healthcare Data Crisis – Uncovering the Alarming Gaps in Data Security and Compliance,” highlights the prevalence of insecure file-sharing practices that put patient information at risk.

Key Findings:

  • Exposed PII: A staggering 25% of publicly shared files contain Personally Identifiable Information (PII) like names, addresses, and social security numbers.
  • Uncontrolled Access: Even private files often lack proper access controls.
    • 68% of private files shared externally (outside the organization) contain PII.
    • An even higher percentage (77%) of private files shared internally contain PII.
  • Stale Data Permissions: Many healthcare organizations fail to update or remove access permissions for private files. This means people retain access to sensitive data long after they need it, creating a significant security risk.

Consequences of Insecure Practices:

  • Data Breaches: The healthcare industry experiences a rising number of data breaches, with 2023 seeing a record number of exposed records (over 133 million).
  • Financial Impact: Ransomware attacks, like the one on Change Healthcare, can disrupt operations and incur substantial costs (UnitedHealth estimates $1.35-$1.6 billion).
  • Compliance Issues: Lax data security practices can lead to violations of HIPAA and GDPR regulations.

Beyond PII: Financial Data at Risk

The report also identified Payment Card Industry (PCI) data, such as credit card numbers, being stored in insecure files. While the percentage (1% of public files) may seem small, it represents a significant vulnerability for financial information.

Taking Action:

Healthcare organizations must prioritize data security to protect patient information and comply with regulations. Metomic’s report offers valuable insights and suggests best practices for data loss prevention (DLP) to mitigate risks.

“The healthcare industry is plagued by rampant data breaches that are costing organizations millions of dollars and putting highly sensitive patient data and financial information at risk. After digging into these findings, it’s clear that healthcare security leaders need more resources,  DLP solutions, and data security tools to overcome the vast number of data security challenges they face day-to-day,” said Rich Vibert, co-founder and CEO, Metomic. “Healthcare organizations need data security and DLP platforms that not only help protect highly sensitive information, but also provide tools to ensure employees are not inadvertently sharing data or giving access to files that put the organization at risk. Metomic is designed for this exact need—we enable security teams to see where sensitive data is being stored and shared, and who has access to it. These data security tools are a must-have for today’s healthcare providers. It’s the only way to stop a data leak before it turns into a massive problem that could potentially put a healthcare organization out of business.” 

  • LinkedIn
  • Twitter
  • Facebook
  • Email
  • Print

Tagged With: Cybersecurity

Tap Native

Get in-depth healthcare technology analysis and commentary delivered straight to your email weekly

Reader Interactions

Primary Sidebar

Subscribe to HIT Consultant

Latest insightful articles delivered straight to your inbox weekly.

Submit a Tip or Pitch

Featured Insights

2025 EMR Software Pricing Guide

2025 EMR Software Pricing Guide

Featured Interview

Kinetik CEO Sufian Chowdhury on Fighting NEMT Fraud & Waste

Most-Read

UnitedHealth Group Names Stephen Hemsley CEO as Andrew Witty Steps Down

UnitedHealth CEO Andrew Witty Steps Down, Stephen Hemsley Returns as CEO

Omada Health Files for IPO

Omada Health Files for IPO

Blue Cross Blue Shield of Massachusetts Launches "CloseKnit" Virtual-First Primary Care Option

Blue Cross Blue Shield of Massachusetts Launches “CloseKnit” Virtual-First Primary Care Option

Osteoboost Launches First FDA-Cleared Prescription Wearable Nationwide to Combat Low Bone Density

Osteoboost Launches First FDA-Cleared Prescription Wearable Nationwide to Combat Low Bone Density

2019 MedTech Breakthrough Award Category Winners Announced

MedTech Breakthrough Announces 2025 MedTech Breakthrough Award Winners

WeightWatchers Files for Bankruptcy to Eliminate $1.15B in Debt

WeightWatchers Files for Bankruptcy to Eliminate $1.15B in Debt

KLAS: Epic Dominates 2024 EHR Market Share Amid Focus on Vendor Partnership; Oracle Health Sees Losses Despite Tech Advances

KLAS: Epic Dominates 2024 EHR Market Share Amid Focus on Vendor Partnership; Oracle Health Sees Losses Despite Tech Advances

'Cranky Index' Reveals EHR Alert Frustration Peaks Midweek, Highest Among Admin Staff

‘Cranky Index’ Reveals EHR Alert Frustration Peaks Midweek, Highest Among Admin Staff

Madison Dearborn Partners to Acquire Significant Stake in NextGen Healthcare

Madison Dearborn Partners to Acquire Significant Stake in NextGen Healthcare

Wandercraft Begins Clinical Trials for Physical AI-Powered Personal Exoskeleton

Wandercraft Begins Clinical Trials for Physical AI-Powered Personal Exoskeleton

Secondary Sidebar

Footer

Company

  • About Us
  • Advertise with Us
  • Reprints and Permissions
  • Submit An Op-Ed
  • Contact
  • Subscribe

Editorial Coverage

  • Opinion
  • Health IT
    • Care Coordination
    • EMR/EHR
    • Interoperability
    • Population Health Management
    • Revenue Cycle Management
  • Digital Health
    • Artificial Intelligence
    • Blockchain Tech
    • Precision Medicine
    • Telehealth
    • Wearables
  • Startups
  • Value-Based Care
    • Accountable Care
    • Medicare Advantage

Connect

Subscribe to HIT Consultant Media

Latest insightful articles delivered straight to your inbox weekly

Copyright © 2025. HIT Consultant Media. All Rights Reserved. Privacy Policy |