A Look at Email Security in the US Healthcare Sector

Stu Sjouwerman | Mar 11, 2020

iStock-115676504390% of US healthcare organizations experienced email-based attacks in the past year, and 25% of these organizations said the attacks were extremely or very disruptive, according to a new report from HIMSS Media. The report found that, on average, healthcare organizations are taking steps to improve their security, but they continue to fall victim to phishing attacks.

Emails are the most effective and practical way to gain access to any given organization.

Email attacks are so prevalent because email is one of the most ubiquitous applications in the world. Pretty much any organization that an attacker is interested in has people using email. And, it’s easy for an attacker to reach into an organization via email. All an attacker needs to know is someone’s email address.

Emails allow attackers to send malware-laden attachments and malicious links directly into your organization, and all they have to do is trick the end-user.

All the reasons email is useful for legitimate purposes, make it useful for malicious purposes because they work.

The report also found that 77% of healthcare professionals believe security awareness training is necessary to defend against these attacks, but 40% said their organization provided security training less than quarterly.

People frequently fixate just on the technologies and assume they are protected because they are using an antivirus system, a backup system, an email security system, and other tools. All of this is good. However,  information technology professionals also need to think about other elements of a program.

Employee education should be an integral part of every organization’s security posture. New-school security awareness training can enable your employees to thwart phishing attacks.

Discover Your Organization’s Phish-prone™ Percentage

Ninety-one percent of data breaches begin with spear phishing. Launch our Free Phishing Security Test for up to 100 users to uncover your team's vulnerability and see how your security posture stacks up against industry benchmarks.

Get Your Free Phishing Security Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the human and AI workforce to make safer security decisions every day. Trusted by over 70,000 organizations worldwide, we help strengthen security culture and manage risk. Our comprehensive AI-driven platform includes awareness and compliance training, cloud email security, real-time coaching, crowdsourced anti-phishing, AI Defense Agents, agent security and more. As the only global security platform of its kind, KnowBe4 provides personalized content, tools, and techniques to keep the modern workforce safe from phishing, vishing, deepfakes, and emerging threats.

Get the latest insights, trends and security news. Subscribe to CyberheistNews.