Organizations using the National Institute of Standards and Technology’s Cybersecurity Framework as their primary cybersecurity framework report one-third lower cyber insurance premium cost growth, according to the 2024 Healthcare Cybersecurity Benchmarking Study, produced by Censinet and KLAS Research in collaboration with the AHA, Health Information and Analysis Center (Health-ISAC), and Healthcare and Public Health Sector Coordinating Council. 

Almost six in 10 of the 58 respondents reported using the NIST Cybersecurity Framework as their primary cybersecurity framework, among other findings.  

“The 2024 Benchmarking Study is a vital resource to AHA members and a critical resource in our collective response to escalating cyberattacks on our nation’s health care system,” said John Riggi, AHA’s national advisor for cybersecurity and risk. “When criminal and nation state-supported ransomware attacks target hospitals, health systems and our mission-critical third parties, patient safety is directly placed in their crosshairs. U.S. hospitals and health systems need urgent support from initiatives like the Benchmarking Study to swiftly strengthen cyber resiliency and protect patients from these malicious attacks.” 
 

Related News Articles

Headline
The FBI's Internet Crime Complaint Center released an alert May 7 warning of cyber actors exploiting vulnerabilities in end-of-life routers. Routers dated 2010…
Headline
The FBI’s Internet Criminal Complaint Center May 15 released an alert warning of a malicious text and voice messaging campaign involving impersonators…
Headline
In his latest AHA Cyber Intel blog, John Riggi, AHA national advisor for cybersecurity and risk, examines the state of cyber and physical threats in 2025 as…
Headline
Health care had more cyberthreats last year than any other critical infrastructure industry, according to the FBI's 2024 Internet Crime Report released April…
Headline
The National Security Agency April 23 released a report on operational technology systems that includes recommendations for security policies and technical…
Chairperson's File
Public
Cybersecurity and physical threats are unfortunately significant enterprise risks for health care, regardless of size or location. Every hospital, physician…