<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>healthcare data Archives - InnoHEALTH magazine</title>
	<atom:link href="https://innohealthmagazine.com/tag/healthcare-data/feed/" rel="self" type="application/rss+xml" />
	<link>https://ec2-3-6-81-159.ap-south-1.compute.amazonaws.com/tag/healthcare-data/</link>
	<description>India&#039;s first magazine on healthcare innovations</description>
	<lastBuildDate>Fri, 20 Oct 2023 06:30:01 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.1</generator>

<image>
	<url>https://innohealthmagazine.com/wp-content/uploads/2017/11/innohealthmagazine-favicon.png</url>
	<title>healthcare data Archives - InnoHEALTH magazine</title>
	<link>https://ec2-3-6-81-159.ap-south-1.compute.amazonaws.com/tag/healthcare-data/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">139068796</site>	<item>
		<title>Data Protection Bill 2023: Advancing Indian Healthcare</title>
		<link>https://innohealthmagazine.com/2023/in-focus/data-protection-bill-2023-advancing-indian-healthcare/</link>
					<comments>https://innohealthmagazine.com/2023/in-focus/data-protection-bill-2023-advancing-indian-healthcare/#respond</comments>
		
		<dc:creator><![CDATA[InnoHEALTH magazine digital team]]></dc:creator>
		<pubDate>Fri, 20 Oct 2023 06:30:00 +0000</pubDate>
				<category><![CDATA[In Focus]]></category>
		<category><![CDATA[Data Protection Bill]]></category>
		<category><![CDATA[data security]]></category>
		<category><![CDATA[Health Data Privacy]]></category>
		<category><![CDATA[healthcare data]]></category>
		<category><![CDATA[healthcare transformation]]></category>
		<category><![CDATA[Indian Healthcare]]></category>
		<category><![CDATA[Legislation]]></category>
		<category><![CDATA[Medical Sector]]></category>
		<category><![CDATA[Patient information]]></category>
		<category><![CDATA[Personal Data Protection]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[Sensitive Information]]></category>
		<guid isPermaLink="false">https://ztt.nrm.mybluehostin.me/innohealthmagazine?p=18473</guid>

					<description><![CDATA[<p>The unchecked processing of health data has the potential to encroach upon the fundamental right to privacy, which gains even greater importance in healthcare contexts. Amidst the digital age, where...</p>
<p>The post <a href="https://innohealthmagazine.com/2023/in-focus/data-protection-bill-2023-advancing-indian-healthcare/">Data Protection Bill 2023: Advancing Indian Healthcare</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<h2 class="Body" style="text-align: justify; text-justify: inter-ideograph; color: #2b322f; font-size: 19px; line-height: 1.7;"><strong><em>The unchecked processing of health data has the potential to encroach upon the fundamental right to privacy, which gains even greater importance in healthcare contexts. 
</em></strong></h2>



<p><strong>Amidst the digital age</strong>, where personal data has become the cornerstone, safeguarding this precious asset takes center stage, especially in the realm of healthcare. The Digital Personal Data Protection Bill 2023, a pioneering legislative stride, holds the promise of reshaping the landscape of data security and privacy, particularly in the context of healthcare. Carved with meticulous attention to individual rights and the requisites of the digital healthcare domain, this bill presents a comprehensive framework that seeks to harmonize data processing necessities with the crucial need to shield personal health data. The term &#8220;personal data&#8221; holds significance, especially in healthcare, denoting any information tied to an individual&#8217;s identity or location. This sensitive information is subjected to processing for a multitude of purposes, ranging from the provisioning of medical services by both private healthcare providers and public health agencies.&nbsp;</p>



<p>The processing of personal health data fosters an understanding of patients&#8217; preferences, which proves valuable for personalized medical care, targeted health interventions, and the generation of medical recommendations. However, the processing of such information also raises pertinent concerns, particularly concerning potential breaches in relation to law enforcement activities. The unchecked processing of health data has the potential to encroach upon the fundamental right to privacy, which gains even greater importance in healthcare contexts. The failure to ensure proper checks might expose individuals to adverse outcomes, including financial losses, damage to medical reputation, and the creation of unwarranted health profiles. In the current scenario, India&#8217;s healthcare sector grapples with the absence of a dedicated law addressing the safeguarding of personal health data. While the Information Technology Act of 2000 does impose certain limitations on the use of personally identifiable information, a specialized legislation specific to healthcare data protection remains lacking.&nbsp;</p>



<p>Building upon this foundation, in December 2019, the Lok Sabha received the Personal Data Protection Bill, 2019. Shaped by the Committee&#8217;s recommendations, this bill was subsequently referred to a Joint Parliamentary Committee, which released its findings in December 2021. However, a temporary withdrawal of the bill from parliamentary consideration occurred in August 2022. Notably, the healthcare community and the public were granted the opportunity to review and provide feedback on a draft legislation version in November 2022. Finally, marking a significant stride towards safeguarding healthcare data, the Digital Personal Data Protection Bill 2023 was officially introduced to Parliament in August 2023, warranting careful consideration in the context of healthcare&#8217;s digital transformation.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">1. The Digital Personal Data Protection Bill 2023: A Paradigm Shift</h2>



<p>Recognizing the urgency of the situation, the Indian government has taken a visionary step by introducing the Digital Personal Data Protection Bill 2023. This transformative legislation seeks to bridge the gap between the escalating demand for data-driven services and the imperative to safeguard individual privacy rights. Furthermore, the Digital Personal Data Protection Bill 2023 exercises jurisdiction over the processing of digital personal data within India, encompassing data collected through online channels or digitized from offline sources. Moreover, its scope extends beyond India&#8217;s borders to encompass data processing conducted outside the nation&#8217;s boundaries, particularly concerning the provision of goods or services within India.</p>



<p>The bill emphasizes that personal data can only be processed for lawful purposes with the explicit consent of the individual concerned. However, certain exceptions exist where consent might not be obligatory. These include instances of voluntary data sharing by individuals or data processing conducted by the State for purposes such as issuing permits, licenses, benefits, and services.</p>



<p>Under the provisions of the bill, Data Fiduciaries are obligated to uphold the accuracy and security of the data they process. They are further required to delete the data once its intended purpose has been fulfilled, thereby promoting responsible data management practices. The bill extends a range of rights to individuals, including the right to request the correction and erasure of inaccurate data, as well as providing a mechanism for addressing grievances related to data processing.</p>



<p>In addition, the bill grants the central government the authority to exempt government agencies from specific provisions, particularly in cases where such exemptions are deemed necessary for the security of the state, public order, or the prevention of offenses. To ensure compliance with the provisions of the bill, the central government will establish the Data Protection Board of India. This board will be entrusted with the task of adjudicating cases of non-compliance and ensuring the effective implementation of the bill&#8217;s regulations.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">2. Forging a Resilient Data Ecosystem</h2>



<p>The Digital Personal Data Protection Bill 2023 stands as a testament to India&#8217;s commitment to fostering a digital ecosystem that champions innovation while safeguarding individual rights and data security. With its comprehensive framework, the bill acknowledges the dynamic interplay between data processing and privacy, striking a harmonious balance that acknowledges the transformative potential of data-driven services while ensuring that individuals&#8217; personal data is treated with respect and responsibility.</p>



<p>As the bill navigates its path through legislative processes, it not only addresses the pressing concerns of the present but also lays the groundwork for India&#8217;s digital future. The careful considerations embedded within the bill signal a broader vision that extends beyond immediate challenges, towards a landscape where data protection becomes an inherent part of the digital fabric. The bill&#8217;s emphasis on clarity, accessibility, and inclusivity through the SARAL approach and gender recognition represents a forward-looking perspective, one that envisions an empowered society driven by progressive values.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">3. Indian Vision 2047: Pioneering a Data-Driven Destiny</h2>



<p>In the grand tapestry of India&#8217;s journey, the Digital Personal Data Protection Bill 2023 finds resonance with the broader Indian Vision 2047, a dream of India&#8217;s future characterized by prosperity, inclusivity, and technological prowess. As we inch closer to 2047, the nation envisions a harmonious blend of tradition and innovation, where technology and data serve as enablers, not disruptors, of societal progress.</p>



<p>The bill aligns seamlessly with this visionary trajectory. By providing a roadmap for data governance that places individual rights and accountability at the forefront, it propels India towards a future where data is not just a commodity, but a valuable asset that contributes to the collective growth. As India aims to become a global leader in emerging technologies, the bill&#8217;s emphasis on reasonable security measures and privacy-conscious practices will fortify its stance on the international stage.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">4. A Multifaceted Approach: Navigating the Salient Features</h2>



<p>The Digital Personal Data Protection Bill 2023 encompasses a spectrum of salient features that underscore its transformative potential:</p>



<p><strong>&#8211; Balancing Act: Data Processing and Privacy Rights</strong></p>



<p>At the heart of the bill lies a delicate equilibrium: the recognition of individuals&#8217; rights to protect their personal data and the necessity of processing such data for legitimate purposes. By establishing obligations for Data Fiduciaries &#8211; the entities entrusted with data processing &#8211; the bill aims to ensure responsible data handling.</p>



<p><strong>&#8211; Guardians of Privacy: Protecting Digital Personal Data</strong></p>



<p>A cornerstone of the bill is the protection of digital personal data, referring to data that can identify an individual. This protection is realized through a matrix of measures, including the delineation of Data Fiduciaries&#8217; obligations in data processing operations and the definition of rights and duties for Data Principals, ensuring a symmetrical approach to data management.</p>



<p><strong>&#8211; Dissuasion through Financial Penalties</strong></p>



<p>The bill institutes a mechanism of financial penalties for breaches of data rights, duties, and obligations. This proactive approach not only serves as a deterrent but also underscores the seriousness with which data security breaches are regarded.</p>



<h2 class="Body" style="text-align: justify; text-justify: inter-ideograph; color: #2b322f; font-size: 19px; line-height: 1.7;"><strong><em>The bill aligns seamlessly with this visionary trajectory. By providing a roadmap for data governance that places individual rights and accountability at the forefront, it propels India towards a future where data is not just a commodity, but a valuable asset that contributes to the collective growth.
</em></strong></h2>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">5. Principles for the Digital Age: Safeguarding Data in a Rapidly Changing Landscape</h2>



<p>To navigate the intricate dance between data processing and privacy, the bill is guided by seven foundational principles:</p>



<p><strong>&#8211;</strong> <strong>Consented, Lawful, and Transparent Use of Personal Data</strong></p>



<p>The principle of consent forms the bedrock of data processing under the bill. Personal data can only be processed with explicit and informed consent, ensuring transparency and empowerment for individuals.</p>



<p><strong>&#8211; Purpose Limitation: Defining Data Usage Boundaries</strong></p>



<p>The principle of purpose limitation emphasizes that data can only be used for the purpose specified at the time of obtaining the Data Principal&#8217;s consent. This mitigates the risk of data being used beyond its intended scope.</p>



<p><strong>&#8211; Data Minimization: Collecting What&#8217;s Necessary</strong></p>



<p>Data minimization emphasizes the collection of only the amount of personal data necessary to serve the specified purpose. This principle curtails data hoarding and promotes responsible data collection practices.</p>



<p><strong>&#8211;</strong> <strong>Data Accuracy: Ensuring Precision and Reliability</strong></p>



<p>Accurate data is vital for informed decision-making. The principle of data accuracy mandates that personal data must be correct, updated, and devoid of errors.</p>



<p><strong>&#8211;</strong> <strong>Storage Limitation: Respecting Data Lifecycle</strong></p>



<p>The principle of storage limitation advocates for the storage of data only as long as it is needed for the specified purpose. This safeguards against unnecessary retention of sensitive information.</p>



<p><strong>&#8211; Reasonable Security Safeguards: Fortifying Data Protection</strong></p>



<p>In an era of sophisticated cyber threats, the bill enshrines the principle of reasonable security safeguards, compelling Data Fiduciaries to implement robust security measures to prevent data breaches.</p>



<p><strong>&#8211;</strong> <strong>Accountability: A Pillar of Data Governance</strong></p>



<p>Accountability is a cornerstone of the bill, manifesting through mechanisms of adjudication for data breaches and penalties for non-compliance with its provisions. This ensures that entities remain accountable for their data management practices.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">6. Innovative Legislative Approach: Navigating Complexity with Clarity</h2>



<p>The Digital Personal Data Protection Bill 2023 introduces an innovative legislative approach that not only comprehensively addresses data security but also enhances accessibility and comprehension:</p>



<p><strong>&#8211; SARAL Approach: Simplifying the Legal Lexicon</strong></p>



<p>Embodying the spirit of simplicity, accessibility, rationality, and actionability, the SARAL approach forms the foundation of the bill. By employing plain language and illustrative examples, the bill bridges the gap between complex legal jargon and everyday understanding.</p>



<p><strong>&#8211; Gender Inclusivity: Pioneering Recognition</strong></p>



<p>Acknowledging the need for gender inclusivity, the bill pioneers the use of &#8220;she&#8221; in parliamentary law-making. This small yet significant change recognizes women&#8217;s representation and underscores the bill&#8217;s commitment to progressive ideals.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">7. Empowering Individuals: Unveiling Rights for the Digital Era</h2>



<p>Central to the bill&#8217;s narrative is the empowerment of individuals in the digital era. The bill grants individuals a series of rights that facilitate control over their personal data:</p>



<p><strong>&#8211; Right to Access Information</strong></p>



<p>The right to access information about processed personal data equips individuals with the ability to understand how their data is being used.</p>



<p><strong>&#8211;</strong> <strong>Right to Correction and Erasure</strong></p>



<p>The right to rectify and erase data ensures that individuals can rectify inaccuracies and, if necessary, have their data expunged.</p>



<p><strong>&#8211; Right to Grievance Redressal</strong></p>



<p>The bill prioritizes individual concerns by providing the right to address grievances related to data processing.</p>



<p><strong>&#8211;</strong> <strong>Right to Nominate a Representative</strong></p>



<p>Recognizing the practicalities of life, the bill grants individuals the right to designate a representative who can exercise their data rights in case of incapacitation or death.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">8. Enforcement and Accountability: The Role of Data Fiduciaries</h2>



<p>The bill entrusts Data Fiduciaries with significant responsibilities to ensure data protection:</p>



<p><strong>&#8211; Ensuring Security Safeguards</strong></p>



<p>Data Fiduciaries are mandated to institute security safeguards to avert data breaches, safeguarding the sanctity of personal data.</p>



<p><strong>&#8211; Mandatory Reporting of Breaches</strong></p>



<p>The bill requires Data Fiduciaries to promptly report personal data breaches to both affected individuals and the Data Protection Board. This timely reporting facilitates swift action in the event of a breach.</p>



<p><strong>&#8211; Erasure of Data</strong></p>



<p>Ensuring that data isn&#8217;t held indefinitely, Data Fiduciaries are required to delete personal data once it is no longer necessary for the stated purpose.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">9. Future Route: India&#8217;s Digital Resilience</h2>



<p>Looking ahead, the Digital Personal Data Protection Bill 2023 lays the foundation for a resilient digital landscape. It recognizes that data-driven progress is not an end in itself, but a means to enhance citizens&#8217; lives, facilitate business innovation, and strengthen the nation&#8217;s position in the global arena. With a holistic approach encompassing rights, obligations, principles, and innovative measures, the bill charts a course that propels India towards a data-savvy future.</p>



<p>As we envision India in 2047, a nation that has harnessed the power of data without compromising on ethics and privacy emerges. Through a judicious balance of rights and responsibilities, the bill empowers citizens, safeguards sensitive information, and fosters a culture of data respect. This culture, in turn, nurtures an environment where startups flourish, research thrives, and citizens confidently participate in the digital economy.</p>



<p>In embracing the Digital Personal Data Protection Bill 2023, India not only lays a sturdy foundation for data protection but also champions a broader narrative of trust, transparency, and technological progress. By weaving together the strands of individual rights, innovation, and responsible data handling, India&#8217;s digital destiny is poised to flourish, embodying the principles of the bill and the aspirations of Indian Vision 2047.</p>



<h2 class="Body" style="text-align: justify; text-justify: inter-ideograph; color: #2b322f; font-size: 19px; line-height: 1.7;"><strong><em>As we envision India in 2047, a nation that has harnessed the power of data without compromising on ethics and privacy emerges. </em></strong></h2>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">10. Challenges and Issues</h2>



<p>While the Digital Personal Data Protection Bill 2023 presents a forward-thinking and comprehensive approach to data security and privacy, its successful implementation is not without its challenges. As India endeavors to navigate the complexities of the digital landscape, several issues must be addressed to ensure that the bill&#8217;s transformative vision is realized effectively.</p>



<p><strong>&#8211;</strong> <strong>Balancing Innovation and Regulation</strong></p>



<p>The rapid pace of technological innovation often outpaces regulatory frameworks. Striking the right balance between encouraging innovation and safeguarding data privacy requires constant vigilance. Regulatory measures must be adaptable enough to accommodate emerging technologies while maintaining the integrity of personal data.</p>



<p><strong>&#8211;</strong> <strong>Data Localization vs. Cross-Border Flow</strong></p>



<p>The bill raises a crucial dilemma surrounding data localization. While localized data storage can enhance security, it might hinder the seamless flow of data across borders, impacting global business operations. Striking a balance between safeguarding data and facilitating international trade remains a challenge.</p>



<p><strong>&#8211;</strong> <strong>Compliance Complexity</strong></p>



<p>With a diverse range of entities falling under the purview of the bill, ensuring uniform compliance across industries of varying sizes and complexities can be challenging. Smaller enterprises might struggle to meet the same standards as larger corporations, leading to potential disparities in data protection.</p>



<p><strong>&#8211; Technological Adaptation</strong></p>



<p>Implementing robust security measures and adopting data protection practices require technological readiness. Smaller businesses and organizations might face challenges in acquiring the necessary technology and expertise to comply with the bill&#8217;s security mandates.</p>



<p><strong>&#8211;</strong> <strong>Data Breach Preparedness</strong></p>



<p>The bill&#8217;s emphasis on mandatory reporting of data breaches highlights the importance of preparedness in the face of cyber threats. However, not all entities possess the resources to swiftly detect and respond to breaches, potentially leading to delayed reporting and exacerbating the consequences.</p>



<p><strong>&#8211; Strain on Resources</strong></p>



<p>For sectors such as healthcare, which handle sensitive patient data, ensuring data protection can place additional strain on already resource-constrained institutions. The bill&#8217;s obligations might necessitate significant financial investments, potentially affecting the quality and accessibility of healthcare services.</p>



<p><strong>&#8211; Consent Management</strong></p>



<p>The principle of informed consent forms the bedrock of the bill. However, managing consent in a way that is understandable and accessible to all individuals, regardless of their digital literacy, can be a challenge. Ensuring genuine informed consent in an increasingly complex digital landscape remains a concern.</p>



<p><strong>&#8211; Regulatory Bottlenecks</strong></p>



<p>The establishment of a regulatory authority, the Data Protection Board, is critical for the bill&#8217;s effective enforcement. However, challenges might arise in terms of the board&#8217;s capacity, resources, and expertise, potentially leading to delays in addressing complaints and breaches.</p>



<p><strong>&#8211; International Cooperation</strong></p>



<p>Data flows transcend national boundaries, requiring international cooperation to effectively address data protection concerns. Harmonizing India&#8217;s data protection regulations with international standards while respecting its sovereignty poses a complex challenge.</p>



<p><strong>&#8211;</strong> <strong>Ongoing Technological Evolution</strong></p>



<p>Technology continues to evolve at an unprecedented pace, constantly reshaping the digital landscape. The bill must remain flexible enough to accommodate future advancements, ensuring that it remains relevant and effective in addressing new challenges.</p>



<h2 class="wp-block-heading has-text-color" style="color:#87702b;font-size:25px">11. Navigating the Path Ahead</h2>



<p>The exponential growth of digital technology has fundamentally altered the way we interact, communicate, and conduct business. As data flows through interconnected networks, a new paradigm of opportunities has emerged, presenting innovations across sectors, including healthcare. The healthcare industry, a prime beneficiary of digitization, has witnessed the evolution of electronic health records, telemedicine, and AI-driven diagnostics, promising enhanced patient care and accessibility to medical services.</p>



<p>However, this rapid digital transformation brings to the forefront a critical challenge: the security and privacy of personal data. As healthcare services become increasingly digitized, sensitive patient information, once stored in traditional medical files, is now housed in digital databases. The potential for unauthorized access, data breaches, and misuse of personal information has escalated, necessitating a comprehensive legislative response.</p>



<p style="color: #a13621;"><em><strong> &#8220;Composed by: Dr. Rajeev Kumar is currently working as an Assistant Professor in the Centre for Innovation and Technology at the Administrative Staff College of India, Hyderabad, Telangana, India.&#8221;</strong></em></p>



<p style="color: #a13621;"><em><strong> &#8220;Dr. Satyanarayana V. Nandury Adviser is currently working as an Adviser in the Centre for Innovation and Technology at the Administrative Staff College of India, Hyderabad, Telangana, India.&#8221;</strong></em></p>



<p style="color: #a13621;"><em><strong> &#8220;Prof. Raees Ahmad Khan is currently working as a Professor in the Department of Information Technology at the Babasaheb Bhimrao Ambedkar University (A Central University), Lucknow, Uttar Pradesh, India.&#8221;</strong></em></p>
<p>The post <a href="https://innohealthmagazine.com/2023/in-focus/data-protection-bill-2023-advancing-indian-healthcare/">Data Protection Bill 2023: Advancing Indian Healthcare</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://innohealthmagazine.com/2023/in-focus/data-protection-bill-2023-advancing-indian-healthcare/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">18473</post-id>	</item>
		<item>
		<title>How Blockchain can help improve care outcomes in India</title>
		<link>https://innohealthmagazine.com/2021/well-being/how-blockchain-can-help-improve-care-outcomes-in-india/</link>
					<comments>https://innohealthmagazine.com/2021/well-being/how-blockchain-can-help-improve-care-outcomes-in-india/#respond</comments>
		
		<dc:creator><![CDATA[InnoHEALTH magazine digital team]]></dc:creator>
		<pubDate>Wed, 16 Jun 2021 08:48:52 +0000</pubDate>
				<category><![CDATA[Well Being]]></category>
		<category><![CDATA[blockchain]]></category>
		<category><![CDATA[Covid vaccines]]></category>
		<category><![CDATA[Diabetes Patients]]></category>
		<category><![CDATA[healthcare data]]></category>
		<category><![CDATA[StaTwig]]></category>
		<guid isPermaLink="false">https://ztt.nrm.mybluehostin.me/innohealthmagazine?p=11074</guid>

					<description><![CDATA[<p>The post <a href="https://innohealthmagazine.com/2021/well-being/how-blockchain-can-help-improve-care-outcomes-in-india/">How Blockchain can help improve care outcomes in India</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div id="fws_69abd69c45d79"  data-column-margin="default" data-midnight="dark" data-top-percent="1%" data-bottom-percent="1%"  class="wpb_row vc_row-fluid vc_row top-level full-width-section has-row-bg-color row_text_justify"  style="padding-top: calc(100vw * 0.01); padding-bottom: calc(100vw * 0.01); --row-bg-color: #ffffff;"><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop using-bg-color"  style="background-color: #ffffff; "></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding inherit_tablet inherit_phone "  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				<div id="fws_69abd69c567bc" data-midnight="" data-column-margin="default" class="wpb_row vc_row-fluid vc_row inner_row vc_row-o-equal-height vc_row-flex vc_row-o-content-middle"  style=""><div class="row-bg-wrap"> <div class="row-bg" ></div> </div><div class="row_col_wrap_12_inner col span_12  left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col child_column no-extra-padding inherit_tablet inherit_phone "   data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
		<div class="wpb_wrapper">
			
<div class="wpb_text_column wpb_content_element " >
	<h2 class="Body" style="text-align: justify; text-justify: inter-ideograph; color: #a5a5a5; font-size: 22px; line-height: 1.7;"><strong><em>&#8220;Hyderabad Based StaTwig has built a Blockchain based supply chain monitoring system to monitor the distribution of the Covid vaccines.&#8221;</em></strong></h2>
</div>



<div class="divider-wrap" data-alignment="default"><div style="height: 25px;" class="divider"></div></div>
<div class="wpb_text_column wpb_content_element " >
	<p><span style="font-weight: 400;">As India deals with one of the largest pandemics in recent history there have been many instances of leveraging technology for better management of crises. A good example is the usage of analytics for daily and weekly trends. Also, the backbone of our Covid Management strategy has been the Arogya Setu App which leverages analytics, mobility and APIs to help authorities with track and trace of infected patients. </span></p>
<p><span style="font-weight: 400;">Hyderabad Based StaTwig has built a Blockchain based supply chain monitoring system to monitor the distribution of the Covid vaccines. As most manufacturers are from Hyderabad this has really helped the organisation build its product around areas like monitoring cold chain (cold storage) for the vaccine. It also helps track fake and expired vaccines as the distributed ledger system used by the Blockchain is immutable, hence it is very easy to check the pedigree of the vaccines and prevent any mischief. </span></p>
</div>




		</div> 
	</div>
	</div> 
</div></div>
<div class="wpb_text_column wpb_content_element " >
	<h2 class="Body" style="text-align: justify; text-justify: inter-ideograph; color: #a5a5a5; font-size: 22px; line-height: 1.7;"><strong><em>&#8220;Healthcare data is complex – in part due to the non-linear nature of diagnosis and treatment, and also due to differing healthcare standards across regions in the world.&#8221;</em></strong></h2>
</div>



<div class="divider-wrap" data-alignment="default"><div style="height: 25px;" class="divider"></div></div>
<div class="wpb_text_column wpb_content_element " >
	<p><span style="font-weight: 400;">In addition to these Blockchain has many advantages that can be leveraged in India. One of those is data sharing. With US spending upwards of  USD 93 Billion over the last five years in just data sharing costs.  Healthcare data is complex – in part due to the non-linear nature of diagnosis and treatment, and also due to differing healthcare standards across regions in the world. </span><span style="font-weight: 400;">Additionally, data privacy and other related laws can make healthcare information difficult to access and share. So much so that in many countries, including India, a patient may not have complete access to his/her medical record!</span></p>
<p><span style="font-weight: 400;">Considering that the next paradigm shift in healthcare is expected to come from the adoption of digital technologies – whether for patient experience or improved efficiency of hospital tasks – it is important to address current challenges around data sharing and access, lest they become hurdles to progress. In that context, block chain could be a savior for the industry.</span></p>
<p><span style="font-weight: 400;">For starters, blockchain allows all types of data to be integrated into the chain. This means one can add not just doctor prescriptions and treatment records but also nutrition information, fitness data, and recordings from medical devices (such as for blood pressure and diabetes patients) by patients themselves. </span></p>
</div>



<div class="divider-wrap" data-alignment="default"><div style="height: 25px;" class="divider"></div></div><div class="img-with-aniamtion-wrap " data-max-width="100%" data-max-width-mobile="default" data-shadow="none" data-animation="fade-in" >
      <div class="inner">
        <div class="hover-wrap"> 
          <div class="hover-wrap-inner">
            <img fetchpriority="high" decoding="async" class="img-with-animation skip-lazy" data-delay="0" height="630" width="1200" data-animation="fade-in" src="https://innohealthmagazine.com/wp-content/uploads/2021/06/How-Blockchain-can-help-improve-care-outcomes-in-India-InnoHEALTH-Magazine-article2.png" alt="How Blockchain can help improve care outcomes in India InnoHEALTH Magazine article" srcset="https://innohealthmagazine.com/wp-content/uploads/2021/06/How-Blockchain-can-help-improve-care-outcomes-in-India-InnoHEALTH-Magazine-article2.png 1200w, https://innohealthmagazine.com/wp-content/uploads/2021/06/How-Blockchain-can-help-improve-care-outcomes-in-India-InnoHEALTH-Magazine-article2-300x158.png 300w, https://innohealthmagazine.com/wp-content/uploads/2021/06/How-Blockchain-can-help-improve-care-outcomes-in-India-InnoHEALTH-Magazine-article2-1024x538.png 1024w, https://innohealthmagazine.com/wp-content/uploads/2021/06/How-Blockchain-can-help-improve-care-outcomes-in-India-InnoHEALTH-Magazine-article2-768x403.png 768w" sizes="(max-width: 1200px) 100vw, 1200px" />
          </div>
        </div>
        
      </div>
    </div>
<div class="wpb_text_column wpb_content_element " >
	<h2 class="Body" style="text-align: justify; text-justify: inter-ideograph; color: #a5a5a5; font-size: 22px; line-height: 1.7;"><strong><em>&#8220;blockchain allows all types of data to be integrated into the chain. This means one can add not just doctor prescriptions and treatment records but also nutrition information, fitness data, and recordings from medical devices (such as for blood pressure and diabetes patients) by patients themselves.&#8221;</em></strong></h2>
</div>



<div class="divider-wrap" data-alignment="default"><div style="height: 25px;" class="divider"></div></div>
<div class="wpb_text_column wpb_content_element " >
	<p><span style="font-weight: 400;">Over time the presence of such longitudinal patient data means caregivers can better interpret disease symptoms and prescribe effective treatment that is customized to work for the patient. Currently, doctors rely on data from treating different patients to prescribe medication. The chances of success for such medication are about 50%. In many cases, doctors wait for feedback from patients to change the medication. With availability of longitudinal patient data, doctors would know in advance what treatments are more likely to suit a patient in line with his/her health history. There are more advantages of leveraging Blockchain for specific use cases. I am listing some of them below</span></p>
<ol>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Data and Cyber Security – Increasingly healthcare organisations are coming under stack from very sophisticated hackers. Data breaches have resulted in many public health records being put up on the dark web as well as on public domains. </span></li>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Post-Operative Care- One of the areas of concerns in healthcare remains the adherence of the patient to the post-operative care instructions. While the physician can give the instructions, the adherence to them remains a big issue.</span></li>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Health Insurance Contracts- Health Insurance is its ascendancy in India and we see instances of increased coverage. The Health Insurance contracts are the key to providing care and making sure that the provisions of the contracts have been met</span></li>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Clinical Trials – Blockchain can help accelerate the research and speed to market for clinical drugs and vaccines </span></li>
</ol>
</div>



<div class="divider-wrap" data-alignment="default"><div style="height: 25px;" class="divider"></div></div>
<div class="wpb_text_column wpb_content_element " >
	<p><span style="font-weight: 400;">I think we have made a start but most Blockchain initiatives are still in the POC stage in Healthcare. But earlier this year the government of healthcare launched the document on the Blockchain Strategy for India. I had the opportunity to comment on some of the key recommendations of the strategy. I also laid out some of the key recommendations on how Blockchain can be implemented in the healthcare ecosystem. Some of them are listed below:-</span></p>
<ol>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Incentive for the adoption of Blockchain- Help healthcare organisations adopt Blockchain with incentives in the form of tax breaks and help with technical adoption</span></li>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Standards for Blockchain for healthcare- Clarity of the position in case of draft data privacy bill and DISHA</span></li>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Legality of Smart Contract- Clarity on Smart Contracts and how they can be implanted in healthcare</span></li>
<li style="font-weight: 400;" aria-level="1"><span style="font-weight: 400;">Industry – Academia- Push academia to move into emerging areas like Blockchain. Engineering colleges are still teaching redundant technologies and not focusing on emerging ones</span></li>
</ol>
<p><span style="font-weight: 400;">In conclusion, I believe healthcare can immensely benefit from Blockchain. The need of the hour is to provide the necessary guidance and standards both from policy, technology and processes for its implementation and development.</span></p>
</div>



<div class="divider-wrap" data-alignment="default"><div style="margin-top: 12.5px; height: 1px; margin-bottom: 12.5px;" data-width="100%" data-animate="" data-animation-delay="" data-color="default" class="divider-border"></div></div><div id="fws_69abd69c5e465" data-midnight="" data-column-margin="default" class="wpb_row vc_row-fluid vc_row inner_row"  style=""><div class="row-bg-wrap"> <div class="row-bg" ></div> </div><div class="row_col_wrap_12_inner col span_12  left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col child_column padding-1-percent inherit_tablet inherit_phone "   data-padding-pos="top-bottom" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
		<div class="wpb_wrapper">
			
<div class="wpb_text_column wpb_content_element " >
	<p style="color: #a13621;"><em><strong>&#8220;Dr Vikram Venkateswaran is a doctor turned technologist. He is the founder of Healthcare India, a research and analysis think tank that works in the public health space. &#8220;</strong></em></p>
</div>




		</div> 
	</div>
	</div> 
</div></div>
			</div> 
		</div>
	</div> 
</div></div>
<p>The post <a href="https://innohealthmagazine.com/2021/well-being/how-blockchain-can-help-improve-care-outcomes-in-india/">How Blockchain can help improve care outcomes in India</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://innohealthmagazine.com/2021/well-being/how-blockchain-can-help-improve-care-outcomes-in-india/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">11074</post-id>	</item>
		<item>
		<title>Exclusive Interview with India&#039;s National Cybersecurity Coordinator</title>
		<link>https://innohealthmagazine.com/2019/cybersecurity/national-cybersecurity-coordinator/</link>
					<comments>https://innohealthmagazine.com/2019/cybersecurity/national-cybersecurity-coordinator/#respond</comments>
		
		<dc:creator><![CDATA[InnoHEALTH Magazine]]></dc:creator>
		<pubDate>Mon, 14 Oct 2019 05:23:08 +0000</pubDate>
				<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[Exclusive Interview]]></category>
		<category><![CDATA[5G]]></category>
		<category><![CDATA[AI]]></category>
		<category><![CDATA[Artificial Intelligence]]></category>
		<category><![CDATA[connected devices]]></category>
		<category><![CDATA[connected healthcare]]></category>
		<category><![CDATA[critical infrastructure]]></category>
		<category><![CDATA[cyber security implications]]></category>
		<category><![CDATA[cyber security strategy]]></category>
		<category><![CDATA[cyber securty wisdom]]></category>
		<category><![CDATA[cybercrimes]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data security]]></category>
		<category><![CDATA[device security]]></category>
		<category><![CDATA[DISHA]]></category>
		<category><![CDATA[exclusive interview]]></category>
		<category><![CDATA[Health Sector]]></category>
		<category><![CDATA[health system]]></category>
		<category><![CDATA[healthcare data]]></category>
		<category><![CDATA[healthcare data encryption]]></category>
		<category><![CDATA[IETE]]></category>
		<category><![CDATA[industrial connected devices]]></category>
		<category><![CDATA[InnoHEALTH Magazine]]></category>
		<category><![CDATA[intensive care unit]]></category>
		<category><![CDATA[Internet of Things]]></category>
		<category><![CDATA[IoT]]></category>
		<category><![CDATA[IoT security]]></category>
		<category><![CDATA[levels of security]]></category>
		<category><![CDATA[login credentials]]></category>
		<category><![CDATA[malicious actor]]></category>
		<category><![CDATA[Medical device regulation act]]></category>
		<category><![CDATA[Medical devices]]></category>
		<category><![CDATA[Ministry of Health]]></category>
		<category><![CDATA[mobile phones]]></category>
		<category><![CDATA[NABH]]></category>
		<category><![CDATA[National Accreditation Board for Hospitals]]></category>
		<category><![CDATA[national cyber security coordinator]]></category>
		<category><![CDATA[NBH]]></category>
		<category><![CDATA[PMO India]]></category>
		<category><![CDATA[Prime Minister of India]]></category>
		<category><![CDATA[Ransomware]]></category>
		<category><![CDATA[ransomware attack]]></category>
		<category><![CDATA[remote server]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security rating device]]></category>
		<category><![CDATA[security testing certification]]></category>
		<category><![CDATA[software based tempering]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[telecom]]></category>
		<guid isPermaLink="false">https://ztt.nrm.mybluehostin.me/innohealthmagazine?p=6530</guid>

					<description><![CDATA[<p>Exclusive Interview: Lt General (Dr) Rajesh Pant, India’s National Cybersecurity Coordinator at Prime Minister office with InnoHEALTH Magazine</p>
<p>The post <a href="https://innohealthmagazine.com/2019/cybersecurity/national-cybersecurity-coordinator/">Exclusive Interview with India&#039;s National Cybersecurity Coordinator</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div id="fws_69abd69c61eb1"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<h4><strong>Vision for cybersecurity: An exclusive interview with India&#8217;s National <a href="https://innohealthmagazine.comtheme/cybersecurity-business-evangelist/">Cybersecurity</a> Coordinator at Prime Minister&#8217;s Office</strong></h4>
<p>-Interviewed by Sachin Gaur, executive editor, InnoHEALTH Magazine</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c62611"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;"><em><strong>Lt General (Dr.) Rajesh Pant</strong></em> is an internationally recognized Cyber Security expert, presently tenanting the prestigious appointment of National Cyber Security Coordinator at the Prime Minister’s Office, India. General Pant brings to the table an interesting mix of military operations, academic excellence, corporate governance, and cybersecurity wisdom. Prior to this, he was the Head of the Army’s Cyber Training establishment for three years. He served in the Army Signals Corps for 41 years wherein he was awarded three times by the President of India for distinguished service of the highest order. He also served as the Chairman of Precision Electronics Ltd as a Governing Council Member of IETE (India). <a href="https://www.linkedin.com/in/sachgaur/"><em><strong>Sachin Gaur</strong></em></a> interviewed him on his viewpoint on India’s vision for cybersecurity.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c62a36"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>Q. On behalf of InnoHEALTH Magazine, we congratulate you on your new assignment. For our readers, we would like you to share your short-term and long-term vision for Cybersecurity from national</strong><strong> security perspective</strong>.<br />
Short-term vision is to issue National Cyber Security Strategy 2020-25 early next year. Task force is working overtime on this by consulting all stakeholders. Long-term vision is to create an all-encompassing cyber vertical at the national level, to handle incident response, cybercrimes, legal issues and capacity building.</p>
<hr width="100%" />
<strong>Q. We know that there are some fundamental technological shifts waiting to happen like 5G, and along-with it massive (Internet of Things) IoT deployments and especially use cases of connected healthcare. Can you share your views on the cybersecurity implications of the connected devices?</strong><br />
<a href="https://innohealthmagazine.comtheme/iot-can-truly-transform-rural-healthcare-india/">IoT security</a> is a priority topic world over and this is because the limited security capabilities of these devices are also an afterthought. We need to work on a framework, to bring baselinesecurity through the manufacturers and developers of these devices. These devices are omnipresent in our lives, we find them in our home environment to industrial environments including hospitals. We have seen attacks in the past, where such devices are compromised to launch massive denial of service attacks to manipulate the workings of critical infrastructure.<br />
Also, the issue of IoT security is multidimensional, from <a href="https://innohealthmagazine.comissues/patients-sensitive-health-data/">data security</a>, privacy to device security. As we discuss this, there are multiple acts and bills pending in the Parliament on these topics. While the bills and acts will provide a framework, we need to also create awareness on both sides, supplier and consumer on the possible risks and mitigation strategies.</p>
<hr width="100%" />
<strong>Q. What steps can be taken to improve the security in such <a href="https://innohealthmagazine.comtrends/medical-iot-future-of-connected-health/">connected devices</a>?</strong><br />
When I say baseline security framework, it can be achieved in multiple ways.<br />
As of today, most devices that we use including mobile phones, do not have a security testing certification. So, we can agree with the industry and look at important test cases and if they can do self-certification on such test cases.<br />
<em>For </em>example: the device should not have weak default login credentials, it is sending data to a remote server and can be operated remotely. So, we can come up like a 5-star rating framework like that of the energy consumption but for the security of IoT devices basis what kind of tests they clear.<br />
Industry bodies can agree on various levels of security and what it takes to achieve that level. Such a framework, when implemented, can provide confidence to consumers and users on the kind of device they are using vis-a-visthe use case they have at hand. So, they might use a higher security rating device in a use case where the stakes are high.<br />
The other approach is to get the security testing done with notified agencies. Department of Telecom for example has announced mandatory security testing of network elements for telecom given telecom is a part of the critical infrastructure and security issuescannot be taken lightly.<br />
Also, some of the emerging concepts in connected devices are missing in the various governing acts of the industrial connected devices. So, we also need to update our legal frameworks to cover software-based tempering of such devices and make the manufacturers and service providers accountable and proactive towards the security of the systems they provide.</p>
<hr width="100%" />
<strong>Q. What are the threats that you foresee for the health sector? </strong><br />
There are three areas we see where health sector can be impacted:<br />
First is the data breaches and <a href="https://innohealthmagazine.comissues/ransomware-epidemic/">ransomware attacks</a> on healthcare data. As we know, among all the data, healthcare is the most sensitive and sought after by malicious actors. Outside of India, we have seen umpteen cases where ransomware has crippled the health system and it is only after paying the ransom the hospitals can start operation again. Timely backups and encryption of healthcare data during storage is a preventive measure that clinical establishments can take to mitigate the breach and ransomware attacks.<br />
Second is the manipulation of connected devices. The topic of IoT and connected devices security, as discussed in the above sections, directly apply to the medical devices. Healthcare is a domain where attacks on such devices can be life threatening, especially when there are implantable devices. As we have the new Medical Device Regulation Act in India since 2018, we should also consider cyber security aspect in the devices which have a communication interface. For example, a pacemaker which has a communication interface can be manipulated remotely and the patient’s life is at risk.<br />
Third is the manipulation of health system including the building management. We are probably not very far from the days when sophisticated attacks, as we see in the movies, on high security establishments by manipulating the building controls. The building management systems are very weak when it comes to security. Every hospital is a building and imagine what a false fire alarm would mean to patients in Intensive Care Unit. Or even loss of air conditioning or sudden spikes in electrical power.<br />
There is a proposed act <a href="https://innohealthmagazine.cominnovatiocuris/disha-act/">DISHA</a>, Digital Information Security Healthcare Act, which might address some of the legal aspects of security in the healthcare setting. A lot needs to be done in this area, and we are on our way.</p>
<hr width="100%" />
<strong>Q. Our readership consists of health experts all over the world. Any message for them?</strong><br />
We are at the cusp of a new age where we look to take advantage of <a href="https://innohealthmagazine.comexpert-opinion/ai-iot-healthcare-need-future/">Artificial Intelligence</a> to Internet of Things. For such a knowledge economy to take off, health sector is at the center of it and health experts need to pay attention on what they are buying and how such systems are managed and operated. Through intervention of Ministry of Health &amp; Family Welfare and responsible bodies such as National Accreditation Board of Hospitals &amp; Healthcare Providers (NABH) of Quality Council of India, we plan to recommend a cyber audit and increased awareness of information security.<br />
We would not want our hospitals and clinical establishments to be a prey for malicious actors. Rather we would want our experts to leverage technology to take the country to the next level in providing care to a wider population at a lower cost and of the highest quality.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
<p>The post <a href="https://innohealthmagazine.com/2019/cybersecurity/national-cybersecurity-coordinator/">Exclusive Interview with India&#039;s National Cybersecurity Coordinator</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://innohealthmagazine.com/2019/cybersecurity/national-cybersecurity-coordinator/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">6530</post-id>	</item>
		<item>
		<title>Cybersecurity Business Evangelist</title>
		<link>https://innohealthmagazine.com/2019/in-focus/theme/cybersecurity-business-evangelist/</link>
					<comments>https://innohealthmagazine.com/2019/in-focus/theme/cybersecurity-business-evangelist/#respond</comments>
		
		<dc:creator><![CDATA[InnoHEALTH Magazine]]></dc:creator>
		<pubDate>Thu, 27 Jun 2019 07:27:18 +0000</pubDate>
				<category><![CDATA[Theme]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[business evangelist]]></category>
		<category><![CDATA[cloud threats]]></category>
		<category><![CDATA[cyber threat]]></category>
		<category><![CDATA[cyber threat protection]]></category>
		<category><![CDATA[cyber vulnerabilities]]></category>
		<category><![CDATA[cyberattack]]></category>
		<category><![CDATA[Cybercriminals]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[data breaches]]></category>
		<category><![CDATA[Data collection]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[healthcare data]]></category>
		<category><![CDATA[healthcare data breach]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[IT]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[malware attack]]></category>
		<category><![CDATA[medial device]]></category>
		<category><![CDATA[network access]]></category>
		<category><![CDATA[operating system]]></category>
		<category><![CDATA[patient data]]></category>
		<category><![CDATA[Personal health information]]></category>
		<category><![CDATA[personal indentifiable information]]></category>
		<category><![CDATA[PHI]]></category>
		<category><![CDATA[phishing attack]]></category>
		<category><![CDATA[PII]]></category>
		<category><![CDATA[Ransomware]]></category>
		<category><![CDATA[SIEM]]></category>
		<category><![CDATA[social security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[WannaCry]]></category>
		<guid isPermaLink="false">https://ztt.nrm.mybluehostin.me/innohealthmagazine?p=6227</guid>

					<description><![CDATA[<p>Healthcare data breaches have risen nearly every year from 2010 through 2019 and the cybersecurity risks jeopardize hundreds of millions of patients records.</p>
<p>The post <a href="https://innohealthmagazine.com/2019/in-focus/theme/cybersecurity-business-evangelist/">Cybersecurity Business Evangelist</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div id="fws_69abd69c6749b"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;"><a href="https://innohealthmagazine.cominnovatiocuris/disha-act/">Healthcare data breaches</a> have risen nearly every year from 2010 through 2019 and the cybersecurity risks jeopardize hundreds of millions of patients records. Although physical theft used to be the data breach method of choice, now hacking has become the most prevalent method. This partly stems from more information being stored electronically and network servers becoming a more attractive hacking target.</p>
<p style="text-align: justify !important;">However, much like the rest of the world, healthcare organizations are shifting work to cloud services in order to improve accessibility and patient care. The migration of these workloads and moving valuable information such as PHI (personal health information) and PII (personally identifiable information) to the cloud has also led to cyber criminals taking a particular interest in the industry. Having shifted workloads to the cloud, healthcare organizations have highly connected systems that run the risk of being deeply affected even if the attack takes place on smaller,partial systems. In other words, a <a href="https://innohealthmagazine.comcybersecurity/the-vulnerability-of-medical-institutions-to-cyber-attacks/">cyber attack</a> in one place could bring down the entire system. In May2017, the <a href="https://innohealthmagazine.comissues/ransomware-epidemic/">WannaCry ransomware</a> attack forced multiple hospitals across the United Kingdom to turn away ambulances transporting patients and cancel surgeries that were within minutes of starting. Even basic processes like admitting patients and printing wrist bands were compromised.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c67929"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;">The number of <a href="https://www.akamai.com/us/en/resources/what-is-ransomware.jsp?gclid=EAIaIQobChMIjbe_nYuJ4wIVQ5SPCh0vogWXEAAYASAAEgIsu_D_BwE&amp;ef_id=EAIaIQobChMIjbe_nYuJ4wIVQ5SPCh0vogWXEAAYASAAEgIsu_D_BwE:G:s&amp;utm_source=google&amp;utm_medium=cpc">ransomware</a> and other malware attacks is rising incredibly fast in the healthcare industry, putting human lives as well as critical data at risk.One of the key aspects making healthcare organizations a top target is the value of their data. Commonly, a single stolen credit card number yields an average $2,000 profit and quickly becomes worthless. Healthcare data, however, such as PHI or PII, is extremely valuable on the black market.</p>
<p style="text-align: justify !important;">A single PHI file, for example, can yield a profit of up to $20,000. This is mainly because it can take weeks or months for a healthcare data breach to be discovered, enabling cyber criminals to extract much more valuable data. Moreover, because healthcare data can contain dates of birth and Social Security numbers, it is much more difficult or even impossible to change, so thieves can take advantage of it fora longer period of time.</p>
<p style="text-align: justify !important;"><img decoding="async" class="size-full wp-image-6236 aligncenter" src="https://innohealthmagazine.comwp-content/uploads/2019/06/cyber-security-business-evangelist-2.png" alt="cyber security business evangelist 2" width="570" height="369" srcset="https://innohealthmagazine.com/wp-content/uploads/2019/06/cyber-security-business-evangelist-2.png 570w, https://innohealthmagazine.com/wp-content/uploads/2019/06/cyber-security-business-evangelist-2-300x194.png 300w" sizes="(max-width: 570px) 100vw, 570px" /></p>
<p style="text-align: justify !important;">Data breaches cost the healthcare industry approximately $5.6 billion every year, according to Becker’s Hospital Review. The Breach Barometer Report: Year in Review additionally found that there was an average of at least one health data breach per day in 2016, attacks that affected more than 27 million patient records.</p>
<p style="text-align: justify !important;">The continued under investment in cybersecurity has left many so exposed that they are unable to even detect cyber attacks when they occur. While attackers may compromise an organization within a matter of seconds or minutes, it often takes many more weeks – if not months – before the breach is detected, damage is contained and defensive resources are deployed to prevent the same attack from happening again.</p>
<p style="text-align: justify !important;">As organizations seek to protect their patient information from these growing threats, demand for health informatics professionals who are familiar with the current state of cybersecurity in healthcare is on the rise.</p>
</div>



<div class="img-with-aniamtion-wrap center" data-max-width="100%" data-max-width-mobile="100%" data-shadow="none" data-animation="fade-in" >
      <div class="inner">
        <div class="hover-wrap"> 
          <div class="hover-wrap-inner">
            <img decoding="async" class="img-with-animation skip-lazy" data-delay="0" height="312" width="572" data-animation="fade-in" src="https://innohealthmagazine.com/wp-content/uploads/2019/06/cyber-security-business-evangelist-1.png" alt="cyber security business evangelist 1" srcset="https://innohealthmagazine.com/wp-content/uploads/2019/06/cyber-security-business-evangelist-1.png 572w, https://innohealthmagazine.com/wp-content/uploads/2019/06/cyber-security-business-evangelist-1-300x164.png 300w" sizes="(max-width: 572px) 100vw, 572px" />
          </div>
        </div>
        
      </div>
    </div>
			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6af7f"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p>“So, What is Wrong With the Picture?”</p>
<p style="text-align: justify !important;">The base question to ask is “Who would be interested in hacking patient data?” It is precisely this attitude together with the rat eat which healthcare refreshes its technology that exposes healthcare organizations to a high risk of cyber-attack. The fact that makes the industry appealing to hackers: ransom for money;denial of service for malice and money; stealing confidential data;compromising data; identity theft and compromising devices. The scale of disruption and impact to busy healthcare settings already operating at capacity caused by a cyber-attack needs no explanation. The reality covers the four main domains:</p>
<ul>
<li>Leadership: Ownership of the issue</li>
<li>Culture/Staff responsibility/awareness: Training and awareness of cybersecurity and its related implications</li>
<li>Policies and procedures: Understanding of business continuity processes and incident response procedures</li>
<li>General cybersecurity knowledge: Use of fundamental security processes that are currently followed within the organization to mitigate security breaches, e.g., use of USB, on- and off-boarding processes, password policies,organizational asset register,and so on.</li>
</ul>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6b4bd"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>The Challenges</strong><br />
The newest cyber vulnerabilities are not necessarily an organization’s biggest cyber threat. Consequently, many common threats continue to be problematic in healthcare, including:</p>
<ul>
<li><strong><em>Malware and ransomware:</em></strong> Cyber criminals use malware and ransomware to shut down individual devices, servers or even entire networks. In some cases, a ransom is then demanded to rectify the encryption.</li>
<li><strong><em>Cloud threats:</em></strong> An increasing amount of protected health information is being stored on the cloud. Without proper encryption, this can be a weak spot for the security of healthcare organizations.</li>
<li><strong><em>Misleading websites:</em></strong> Clever cyber criminals have created websites with addresses that are similar to reputable sites. Some simply substitute .com for .gov, giving the unwary user the illusion that the websites are the same.</li>
<li><strong><em>Phishing attacks:</em></strong> This strategy sends out mass amounts of emails from seemingly reputable sources to obtain sensitive information from the users.</li>
<li><strong><em>Encryption blind spots:</em></strong> While encryption is critical for protecting the health data, it can also create blind spots where hackers can hide from the tools meant to detect breaches.</li>
<li><strong><em>Employee error:</em></strong> Employees can leave healthcare organizations susceptible to attack through weak passwords, unencrypted devices and other failures of compliance.</li>
</ul>
<p>Another growing threat in healthcare security is found in medical devices. As pacemakers and other equipment become connected to the internet, they face the same vulnerabilities as other computer systems.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6b948"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>How are Hackers Achieving this, You Would Ask?</strong></p>
<p style="text-align: justify !important;">Hackers usually access information in one of two ways. They can try‘social hacking’, which means tricking a human being into giving oversensitive information or security credentials which in turn allows access to sensitive information. This could happen by tricking either someone who works directly for the provider, or an outside contractor. An unsophisticated example could be, ‘Hi, I am an IT provider for your company, and I need to carry out some maintenance, could you please provide these sensitive details for me?’. The second way is brute force:directly attacking a security system.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6bcdb"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>Once Hackers Get Access to The Data, What Do They Do with It?</strong></p>
<p style="text-align: justify !important;">In some cases, hackers access sensitive data, extract it, and lock it off. They can then sell it back to the company. If the company does not have backups, buying it back is probably the only viable option. The alternative is for them to lose all records of their patients which they will never be able to replace.Another possibility, is hackers stealing data and selling it to the public. The information may be sold to criminal groups on the dark web who wish to use sensitive information for blackmail or fraud purposes.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6c118"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>What Can the Healthcare Industry Do to Mitigate Cyber Threats?</strong></p>
<p style="text-align: justify !important;">The industry must realize that cybersecurity is human-centric. Gaining insight into the users&#8217; behavior, for example, or the flow of data in and out of the organization improves risk response.</p>
<p style="text-align: justify !important;">Additionally, the industry should be aware that cybersecurity isn&#8217;t just the responsibility of the IT department: everyone should be aware of the risks, from management down to brand-new contract staff.</p>
<p style="text-align: justify !important;">Healthcare security professionals need to understand the threats they face and the regulations they must comply with, and they must be provided with best practices for strengthening cybersecurity defenses. This means implementing comprehensive security awareness training that educates all people on current threats, red flags to look for in an email message or web link, how to avoid infection, and what to do in case of an active exploit. And since the threat landscape is constantly changing, training should be repeated and updated regularly.</p>
<p style="text-align: justify !important;">Furthermore, implementing the right cybersecurity measures, such data loss prevention, user behavior analytics, and endpoint security technologies, will further protect an organization&#8217;s infrastructure and patient data from ransomware attacks. By creating a system that guards the human point — where people interact with critical business data and intellectual property — and takes into account the intersection of users, data, and networks, the healthcare industry can improve its cyber threat protection.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6c891"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>In Simple Terms: How Do We Improve Cybersecurity?</strong></p>
<p style="text-align: justify !important;">Due to the significant financial impact of data breaches in healthcare, health informatics and other professionals need to play an important role in ensuring that medical organizations remain secure. Individual healthcare organizations can improve their cybersecurity by implementing the following practices:</p>
<ul>
<li><strong>Establish a security culture:</strong> Ongoing cybersecurity training and education emphasize that every member of the organization is responsible for protecting patient data, creating a culture of security.</li>
<li><strong>Protect mobile devices:</strong> An increasing number of health care providers are using mobile devices at work. Encryption and other protective measures are critical to ensure that any information on these devices is secure.</li>
<li><strong>Maintain good computer habits:</strong> New employee on boarding should include training on best practices for computer use, including software and operating system maintenance.</li>
<li><strong>Use a firewall:</strong> Anything connected to the internet should have a firewall.</li>
<li><strong>Install and maintain anti-virus software:</strong> Simply installing anti-virus software is not enough. Continuous updates are essential for ensuring health care systems receive the best possible protection at any given time.</li>
<li><strong>Plan for the unexpected:</strong> Files should be backed up regularly for quick and easy data restoration. Organizations must consider storing this backed-up information away from the main system if possible.</li>
<li><strong>Control access to protected health information:</strong> Access to protected information should be granted to only those who need to view or use the data.</li>
<li><strong>Use strong passwords and change them regularly:</strong> The Verizon report found that 63 percent of confirmed data breaches involved taking advantage of passwords that were the default, weak or stolen. Healthcare employees should not only use strong passwords, but ensure they are changed regularly.</li>
<li><strong>Limit network access:</strong> Any software, applications and other additions to existing systems should not be installed by staff without prior consent from the proper organizational authorities.</li>
<li><strong>Control physical access:</strong> Data can also be breached when physical devices are stolen. Computers and other electronics that contain protected information should be kept in locked rooms in secure areas.</li>
</ul>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6cd68"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>How to Defend Against the Growing Threat?</strong><br />
Deterrence, prevention, detection and response all have their place.</p>
<p style="text-align: justify !important;">Prevention is preferable to detection and reaction. But without data collection, an organization cannot successfully detect or react to anything.</p>
<p style="text-align: justify !important;">Alerts or alarms should be designed to detect event sequences with potentially negative consequences. Statistical and anomaly detection methods are particularly good for these purposes, as are rule-based detection mechanisms.</p>
<p style="text-align: justify !important;">Security information and event management or log management tools can augment data collection efforts.</p>
<p style="text-align: justify !important;">In addition to deploying technology tools to help defend against and detect intrusions, it&#8217;s important to formally define roles and responsibilities for incident response. Organizations need to document procedures that specify what the response team should do if there&#8217;s an incident and test those procedures periodically.</p>
<p style="text-align: justify !important;">It&#8217;s not just one technology, it is multiple technologies in order to repel these highly sophisticated and organized attacks. That includes deploying SIEM, as well as multi factor authentication to enter critical systems.</p>
<p style="text-align: justify !important;">The Internet is increasingly a swamp. It&#8217;s no longer sufficient to just look at standard security logs. You need integrated security information event management that brings together network logs, users log, application logs and server logs, and looks for non obvious associations.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6d13e"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p><strong>In Conclusion</strong></p>
<p style="text-align: justify !important;">To improve cybersecurity in health care, organizations need to hire informatics professionals who not only collect, manage and leverage data, but protect it as well. In addition, health data professionals need to on a continuous basis develop new strategies and best practices to ensure the safety of sensitive health data, protecting both the patient and organization from financial loss and other forms of harm.We know that reaching 100% security against cyber attacks is not realistic but, with a few steps, healthcare organizations can make sure that it&#8217;s too complex or unprofitable for threat actors to attack them, which will result in them moving on to another target.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c6d538"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<h2>About the author</h2>
<p style="text-align: justify !important;"><em><strong>Kris Seeburn</strong> is an enterprise trainer and a member of Advisory Board of The New Security Foundation, Member of The American College of Forensic Examiners &amp; Institute of Forensics Science</em></p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
<p>The post <a href="https://innohealthmagazine.com/2019/in-focus/theme/cybersecurity-business-evangelist/">Cybersecurity Business Evangelist</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://innohealthmagazine.com/2019/in-focus/theme/cybersecurity-business-evangelist/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">6227</post-id>	</item>
		<item>
		<title>How Crucial is DISHA Act for Healthcare Industry?</title>
		<link>https://innohealthmagazine.com/2018/others/policy/disha-act-for-healthcare-industry/</link>
					<comments>https://innohealthmagazine.com/2018/others/policy/disha-act-for-healthcare-industry/#respond</comments>
		
		<dc:creator><![CDATA[InnoHEALTH Magazine]]></dc:creator>
		<pubDate>Mon, 17 Dec 2018 08:56:22 +0000</pubDate>
				<category><![CDATA[Policy]]></category>
		<category><![CDATA[banking]]></category>
		<category><![CDATA[Clinical Establishment Act Standards]]></category>
		<category><![CDATA[CRUD]]></category>
		<category><![CDATA[Data]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data privacy]]></category>
		<category><![CDATA[data safe]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[decrypt]]></category>
		<category><![CDATA[digital gealth]]></category>
		<category><![CDATA[digital health record]]></category>
		<category><![CDATA[Digital Information Security]]></category>
		<category><![CDATA[disasters]]></category>
		<category><![CDATA[DISHA]]></category>
		<category><![CDATA[Disha act]]></category>
		<category><![CDATA[Electronic Health Record]]></category>
		<category><![CDATA[emergencies]]></category>
		<category><![CDATA[encrypt]]></category>
		<category><![CDATA[epidemics]]></category>
		<category><![CDATA[financing]]></category>
		<category><![CDATA[health information]]></category>
		<category><![CDATA[healthcare data]]></category>
		<category><![CDATA[healthcare IT company]]></category>
		<category><![CDATA[IBM report]]></category>
		<category><![CDATA[Insurance]]></category>
		<category><![CDATA[Ministry of health and family welfare]]></category>
		<category><![CDATA[national programmes]]></category>
		<category><![CDATA[notifiable diseases]]></category>
		<category><![CDATA[pathlabs]]></category>
		<category><![CDATA[public stakeholder]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Stakeholder]]></category>
		<category><![CDATA[Statistics]]></category>
		<category><![CDATA[Storage]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Threat]]></category>
		<guid isPermaLink="false">https://ztt.nrm.mybluehostin.me/innohealthmagazine?p=5079</guid>

					<description><![CDATA[<p>The question we need to ask ourselves is that Why DISHA is the need of the hour? Why we need to safeguard the electronic health record in hospitals?</p>
<p>The post <a href="https://innohealthmagazine.com/2018/others/policy/disha-act-for-healthcare-industry/">How Crucial is DISHA Act for Healthcare Industry?</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div id="fws_69abd69c75a4d"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;">&#8220;A journey of a thousand miles begins with a single step.&#8221; <strong><a href="https://innohealthmagazine.cominnovatiocuris/disha-act/">The Digital Information Security in Healthcare Act (&#8216;DISHA&#8217;)</a></strong> is that firm first step taken by the Indian Government in the long journey to secure the healthcare data of patients in India. The question we need to ask ourselves is that Why DISHA is the need of the hour? Why do we need to safeguard the electronic health record in hospitals?</p>
<p style="text-align: justify !important;">The draft of the act was made public in November 2017 by Ministry of Health and Family Welfare. The word ‘Disha’ means direction, the GoI has taken the first step in the direction of safeguarding the digital health record. For this <a href="http://www.innovatiocuris.com">InnovatioCuris</a> has also taken the first step towards having a concrete discussion about ‘Challenges in the implementation and opportunities for making health sector DISHA and data protection ready’. There were panelists from various renowned government, private hospitals, and healthcare IT firms.</p>
</div>



<div class="img-with-aniamtion-wrap center" data-max-width="100%" data-max-width-mobile="default" data-shadow="none" data-animation="fade-in" >
      <div class="inner">
        <div class="hover-wrap"> 
          <div class="hover-wrap-inner">
            <a href="http://bit.ly/2IY3u54" target="_blank" class="center">
              <img decoding="async" class="img-with-animation skip-lazy" data-delay="0" height="60" width="728" data-animation="fade-in" src="https://innohealthmagazine.com/wp-content/uploads/2019/04/cyber4healthcare-online-course-bottom-ad-2.png" alt="cyber4healthcare-online-course-bottom-ad (2)" srcset="https://innohealthmagazine.com/wp-content/uploads/2019/04/cyber4healthcare-online-course-bottom-ad-2.png 728w, https://innohealthmagazine.com/wp-content/uploads/2019/04/cyber4healthcare-online-course-bottom-ad-2-300x25.png 300w" sizes="(max-width: 728px) 100vw, 728px" />
            </a>
          </div>
        </div>
        
      </div>
      </div>
			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c77e0c"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;">The first session was about the ‘Challenges in the implementation of DISHA’. The panelists were happy that InnovatioCuris has taken an initiative to critically discuss the challenges a hospital will face once the act becomes the law. All the panelists agreed that the act lacks various aspects. Few concerns that bother the clinicians are, that who will give the consent if the patient is unconscious.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c78365"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;">The ambulances have the capability that it sends the health records from the ambulance to hospital before the patient reaches the hospital for doctors to study the emergency cases. In this scenario, what should be done if a patient denies the consent for sharing the data at a later stage? Should the clinical establishments discard the already shared health record or should they handover the same to the owner (in this case, patient) or what should be done. There are no set protocols defined in the act for such cases.</p>
<p style="text-align: justify !important;">A question was put forward, does the patient has the authority to edit their health record, or can they view, who have seen their health record. A healthy discussion took place where we got to know that citizens of Estonia have chip cards, where one can see their health record and can also see the logs of who has accessed their health record. This made us realize, that India as a nation state can use Aadhar card as a mechanism, where we can log in into a portal and get to see health records.</p>
<p style="text-align: justify !important;">The third challenge that came forward was interoperability of health records. As the record lies with the custodian, not the patient, editing and viewing of it can be done by the clinical establishments. The health record can be shared by the clinical establishments to another, but there is no standard on how to transfer it. Data integrity is a point of concern, which is not mentioned in the act.</p>
<p style="text-align: justify !important;">One of the challenges that came into light was according to ‘Clinical Establishment Act Standards for Hospital<strong><a href="http://clinicalestablishments.gov.in/WriteReadData/147.pdf" target="_blank" rel="noopener noreferrer">[2]</a></strong>’ the hospital has to keep health information and statistics in respect of national programmes, notifiable diseases, and emergencies/disasters/epidemics and furnish the same to the district authorities in the prescribed formats and frequency. The question is what if the patient does not give consent. The proposed act should have a provision where the clinical establishments are liable to take the health data.</p>
<p style="text-align: justify !important;">As we have unstructured healthcare facilities in India, the act should also empower the clinical establishments by various means to keep the data safe. As of now the DISHA is a proposed act, not a law and has lots of loopholes. It also lacks in many aspects discussed earlier. This is just a start and the government should take necessary steps to improve it.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c78a33"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;">The second panel discussed on ‘Opportunities for making health sector DISHA and data protection ready’. The panelist consisted of CIO of path labs, owners of healthcare IT firms, who shared relevant thoughts and comments. The panel started the discussion on why do we need the act and what are the benefits of the act. Panelist were grateful to the government to bring the act. They told that the clinical establishments will take steps to increase the safety of the health record.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c78e0d"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				
<div class="wpb_text_column wpb_content_element " >
	<p style="text-align: justify !important;">The gaps in the technology for generation, storage and transmission will be lowered down. Sectors such as banking, financing and insurance have structured their data, but this lacks in healthcare. Detailed scope of security features are missing from the act, this would help the companies to design the software from the ground up by using security as an important consideration.</p>
<p style="text-align: justify !important;">The imminent threat is in the software which are already in place and have not been patched or the system has not been upgraded. The good news is that many have an audit trail in built in their system, which track any CRUD(creation, read, update, delete) of the records. The discussion contributed a fruitful thought: Data at rest is not encrypted. The question that arises is what is preventing the healthcare IT companies to encrypt the data at rest.</p>
<p style="text-align: justify !important;">One of the challenge in the DISHA is that, the owner of the data must be informed of any breach of the privacy or confidentiality of their digital health record within three days. But according to IBM report it takes on an average of 197 days to detect a breach<strong>[1]</strong>. How can the Healthcare IT companies safeguard the health record and let the owner know about the breach. The solution is to encrypt the tables in the database, but that might hamper the performance.</p>
<p style="text-align: justify !important;">It is a huge opportunity for the stakeholder to bring standards in the act. DISHA might have only completed its first round of comments from the public and stakeholders, it can be expected that the revisions made based on the feedback will churn out a more refined version of the act. In any case, it is evident from the draft that the government has really pushed to provide additional security, privacy and confidentiality for individuals, with respect to their digital health record.</p>
</div>




			</div> 
		</div>
	</div> 
</div></div>
		<div id="fws_69abd69c7920c"  data-column-margin="default" data-midnight="dark"  class="wpb_row vc_row-fluid vc_row"  style="padding-top: 0px; padding-bottom: 0px; "><div class="row-bg-wrap" data-bg-animation="none" data-bg-animation-delay="" data-bg-overlay="false"><div class="inner-wrap row-bg-layer" ><div class="row-bg viewport-desktop"  style=""></div></div></div><div class="row_col_wrap_12 col span_12 dark left">
	<div  class="vc_col-sm-12 wpb_column column_container vc_column_container col no-extra-padding"  data-padding-pos="all" data-has-bg-color="false" data-bg-color="" data-bg-opacity="1" data-animation="" data-delay="0" >
		<div class="vc_column-inner" >
			<div class="wpb_wrapper">
				<div class="img-with-aniamtion-wrap center" data-max-width="100%" data-max-width-mobile="default" data-shadow="none" data-animation="fade-in" >
      <div class="inner">
        <div class="hover-wrap"> 
          <div class="hover-wrap-inner">
            <a href="http://bit.ly/2IY3u54" target="_blank" class="center">
              <img decoding="async" class="img-with-animation skip-lazy" data-delay="0" height="60" width="728" data-animation="fade-in" src="https://innohealthmagazine.com/wp-content/uploads/2019/04/cyber4healthcare-online-course-bottom-ad-2.png" alt="cyber4healthcare-online-course-bottom-ad (2)" srcset="https://innohealthmagazine.com/wp-content/uploads/2019/04/cyber4healthcare-online-course-bottom-ad-2.png 728w, https://innohealthmagazine.com/wp-content/uploads/2019/04/cyber4healthcare-online-course-bottom-ad-2-300x25.png 300w" sizes="(max-width: 728px) 100vw, 728px" />
            </a>
          </div>
        </div>
        
      </div>
      </div>
			</div> 
		</div>
	</div> 
</div></div>
<p>The post <a href="https://innohealthmagazine.com/2018/others/policy/disha-act-for-healthcare-industry/">How Crucial is DISHA Act for Healthcare Industry?</a> appeared first on <a href="https://innohealthmagazine.com">InnoHEALTH magazine</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://innohealthmagazine.com/2018/others/policy/disha-act-for-healthcare-industry/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">5079</post-id>	</item>
	</channel>
</rss>
