The AHA June 6 participated in a Wall Street Journal Tech Live Cybersecurity event to discuss the historic Feb. 21 cyberattack on Change Healthcare. Stacey Hughes, AHA executive vice president of government relations and public policy, spoke about the impact on hospitals and health systems, the government response to the attack, how UnitedHealth Group’s size was a factor in the incident and what’s next in federal cybersecurity policy in a discussion with Erik Decker, vice president and chief information security officer for Intermountain Health, and WSJ Reporter James Rundle. 

When asked about the response of government, Hughes said, “It took a while for some people to recognize the severity of this incident. One of the reasons for that was because there was a significant minimization of the impact from UnitedHealth Group early on. That minimization led policymakers to not react as quickly. There is room for improvement in how our government responded and in understanding how government steps in and what they can do when something like this happens.” 

Last week, the Department of Health and Human Services announced that hospitals and health systems could require UHG to notify patients if their data was stolen during the cyberattack.

Related News Articles

Headline
Microsoft has released a security update to address a critical remote code execution vulnerability impacting multiple versions of Windows Server Update…
Headline
In part two of a recent blog, AHA National Advisor for Cybersecurity and Risk John Riggi and AHA Deputy National Advisor for Cybersecurity and Risk Scott Gee…
AHA Cyber Intel
In part one of this blog, we reviewed the number of cyberattacks the health care field endured this year compared to last; provided an overview of the lessons…
Headline
The Cybersecurity and Infrastructure Security Agency Oct. 15 released an emergency directive advising federal agencies to take stock of their F5 BIG-IP…
Headline
In part one of a new blog, John Riggi, AHA national advisor for cybersecurity and risk, and Scott Gee, AHA deputy national advisor for cybersecurity and risk,…
Perspective
Public
This week, the FBI issued an urgent warning to all users — including hospitals — of a critical security soft spot within Oracle’s E-Business Suite, stating “…