Risk
1/24/2012
03:49 PM
Connect Directly
RSS
E-Mail
50%
50%

7 Tools To Tighten Healthcare Data Security

Most of the largest healthcare data security and privacy breaches have involved lost or stolen mobile computing devices. Consider these tools and tips for protecting patient data and managing breaches.
Previous
5 of 7
Next


While healthcare providers need to protect patient data to comply with HIPAA and HITECH requirements as well as state and local data breach laws, healthcare payers require efficient and reliable security for complex billing and transaction information. Vormetric Data Security for HealthCare helps both healthcare providers and insurers establish and enforce security policies to control and protect sensitive data.

Vormetric Data Security enables providers and insurance carriers to encrypt sensitive data in any file, database, or application--including those in physical, virtual, and cloud infrastructures. Vormetric enforces access controls, reports on who is accessing protected data, and supports all major database platforms and Linux, Unix, and Windows environments.

The Vormetric product provides key management for Transparent Data Encryption available within Oracle and Microsoft SQL Server databases, and includes a secure vault for storing any encryption key. The Vormetric tools allow healthcare organizations to secure sensitive data across business lines and heterogeneous systems.

The product is available as a single appliance, or a double appliance, as shown here.

Recommended Reading

Patient Data Losses Jump 32%

How Secure Are Your Clinicians' Mobile Devices?

80% Of Doctors Use Mobile Devices At Work

Healthcare CIOs Juggle More Mobile Challenges

Docs Warm Up to EHRs, Patients Want Paper

Stanford Hospital Breach Exposes 20,000 ER Records

App Allows Radiology Diagnosis Via Tablet, Smartphone

Why Can't Patients See Their EHR Data?

Docs Have iPad Fever: Is There A Cure?

9 Mobile Health Apps Worth A Closer Look

Previous
5 of 7
Next
Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-2227
Published: 2014-07-25
The default Flash cross-domain policy (crossdomain.xml) in Ubiquiti Networks UniFi Video (formerly AirVision aka AirVision Controller) before 3.0.1 does not restrict access to the application, which allows remote attackers to bypass the Same Origin Policy via a crafted SWF file.

CVE-2014-5027
Published: 2014-07-25
Cross-site scripting (XSS) vulnerability in Review Board 1.7.x before 1.7.27 and 2.0.x before 2.0.4 allows remote attackers to inject arbitrary web script or HTML via a query parameter to a diff fragment page.

CVE-2014-5100
Published: 2014-07-25
Multiple cross-site request forgery (CSRF) vulnerabilities in Omeka before 2.2.1 allow remote attackers to hijack the authentication of administrators for requests that (1) add a new super user account via a request to admin/users/add, (2) insert cross-site scripting (XSS) sequences via the api_key_...

CVE-2014-5101
Published: 2014-07-25
Multiple cross-site scripting (XSS) vulnerabilities in WeBid 1.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) TPL_name, (2) TPL_nick, (3) TPL_email, (4) TPL_year, (5) TPL_address, (6) TPL_city, (7) TPL_prov, (8) TPL_zip, (9) TPL_phone, (10) TPL_pp_email, (11) TPL_authn...

CVE-2014-5102
Published: 2014-07-25
SQL injection vulnerability in vBulletin 5.0.4 through 5.1.3 Alpha 5 allows remote attackers to execute arbitrary SQL commands via the criteria[startswith] parameter to ajax/render/memberlist_items.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Sara Peters hosts a conversation on Botnets and those who fight them.