Methodical and well-tested incident response plans are critical for health care organizations to successfully and rapidly react when a cyber-crisis hits. The SANS Institute’s PICERL incident response methodology is widely regarded as a go-to response approach because of its applicability and versatility across industries, organization size, and type of security incident.
The resources below broadly define the six phases of PICERL and illustrate how the steps involved to respond to a clinical crisis—well-known to non-IT health care leaders, clinicians, and staff—mirror the element of the PICERL security incident response approach.
Incident Response: Managing in minutes
With cybersecurity threats on the rise, organisations must be ready to address a new set of security challenges and considerations. Use this six step response plan to bolster your organisation's cyber defenses.
When a break occurs, the whole hospital is our patient
Learn how to implement the SANS Institute's PICERL approach to effectively handle cyber incidents.
FBI: Hospitals face 'credible,' 'imminent' threat of severe cyberattacks
The FBI, HHS, and the Cybersecurity and Infrastructure Security Agency warned of an "imminent cybercrime threat to U.S. hospitals and health care providers"—and one expert warned that criminals could target 400+ organizations for ransoms of $10 million or more. Here's what you need to know, and four actions you can take now to prepare, according to Advisory Board's Mark Hetz.
Scripps CEO: What we learned from being attacked by ransomware
Writing for The San Diego Union-Tribune, Scripps Health CEO Chris Van Gorder details his health system's experience fending off a ransomware attack last month and calls for increased collaboration between the federal government and hospitals to prevent further cyberattacks.
What happens when hackers target your hospital? Sky Lakes Medical Center and Asante are sharing their biggest lessons learned.
When Sky Lakes Medical Centers was forced to operate under downtime procedures because of a ransomware attack last fall, the community hospital responded quickly by working with the health system Asante through the Epic Community Connect program. Advisory Board's Mark Hetz spoke with Asante's CIO Lee Milligan and Sky Lakes' Director of Information Systems John Gaede to discuss the unique role their Community Connect relationship played in responding to the cyberattack and lessons learned.