On October 31, 2022, the U.S. Department of Health and Human Services Office of Civil Rights provided guidance titled OCR Releases New Recognized Security Practices Video. This guidance is not only a must-read for all healthcare “covered entities,” especially small and midsize organizations, but it is excellent advice for all organizations — healthcare and non-healthcare…
Tag: cyber incident response
OCR Guidance on HIPAA Security Rule Security Incident Procedures for National Cybersecurity Awareness Month
On October 25, 2022, the U.S. Department of Health and Human Services Office of Civil Rights in its October 2022 OCR Cybersecurity Newsletter provided guidance titled HIPAA Security Rule Security Incident Procedures. This guidance is not only a must-read for all healthcare “covered entities,” especially small and midsize organizations, but it is excellent advice for…
Security Incidents and Your Board Pt.3 – The Above Board Show
“Data is the hot potato!” – Shawn Tuma It was great to be a guest on The Above Board Show hosted by my friends Gary Latham, Raf Los, and Grant Sewell where we discussed what “The Board” needs to know about security incidents and getting prepared for the worst day ever for the company. The…
Cyber Incident Response Preparation and Your Board Pt.2 – The Above Board Show
“Amateurs talk about strategy and tactics. Professionals study logistics.” – General Omar Bradley It was great to be a guest on The Above Board Show hosted by my friends Raf Los and Grant Sewell where we discussed what “The Board” needs to know about security incidents and getting prepared for the worst day ever for…
Security Incidents and Your Board Pt.1 – The Above Board Show
It was great to be a guest on The Above Board Show hosted by my friends Raf Los and Gary Latham where we discussed what “The Board” needs to know about security incidents and getting prepared for the worst day ever for the company. The video linked below was part 1 of a 3 part…
Cyber Insurance Fact vs Fiction (i.e., dispelling the myths!): #DtSR Podcast Episode 454 with Sean Scranton & Raf Los
My friend and cyber insurance underwriter guru Sean Scranton and I were guests on the Down the Security Rabbithole Podcast with Raf Los for episode 454, Cyber Insurance Fact vs Fiction. It is always fun to join the #DtSR Podcast and this time was no disappointment! In Episode 454 we discuss all things cyber insurance from…
StopRansomware.gov – the U.S. Government’s One-Stop Resource for Ransomware
The U.S. Government has launched a new resource to help combat the ransomware pandemic. Below is the relevant information it has shared: The U.S. Government launched a new website to help public and private organizations defend against the rise in ransomware cases. StopRansomware.gov is a whole-of-government approach that gives one central location for ransomware resources…
Ransomware! What is it and how do you better protect against it?
Just as one pandemic — COVID-19 — seems to be winding down, another — THE RANSOMWARE PANDEMIC — is now wreaking havoc on our society with full force. Critical Information You Need to Help Better Protect Your Practice and Your Clients From Ransomware, my article in the July 2021 Texas Bar Journal, attempts to provide…
Reimagining Cyber Podcast: So You’ve Been Hacked, Now What?
I was a guest recently on the Reimagining Security Podcast and recorded the episode “So you’ve been hacked, now what?” Here is a link to a detailed and informative blog post about the episode and the actual episode. As detailed in the blog post, we covered these key topics and a few more: reasonable cybersecurity…
Kaseya Ransomware Attack – Yet Another Lesson in Humility and the Need for Resilience Preparation
In the Kaseya ransomware attack the REvil threat actor group achieved exponential reach by compromising a tool that managed service providers (MSPs) use to manage their customers networks to encrypt the networks of those companies that were customers of the MSPs. Current estimates are that around 60 of Kaseya’s MSP customers were compromised and that…
You must be logged in to post a comment.