After reading the Massachusetts Clinic Breach Stems from
Unauthorized HIE Access the recommended steps that could have
been taken to prevent this breach from occurring in the future would
be to set up staff with unique user ID something that is not easy to
be able to access. Limited staff access. Only allowing staff to be able
to access the information that is needed and nothing more. b This will
ensure that patient information is secure and that the only
information that is being viewed is information that is needed and is
recorded who is accessing that information. Evaluating audit trails,
what information is being accessed, and who is accessing that
information. b Restricting the type of sites that healthcare personnel
can access and implementing consent and auth protocols from
patients. b All these changes can implement a strategy that would help
reduce this issue from happening in the future. Effective privacy and
security strategies can hinder an organization's success by if the data
is accessed and patients’ information is exposed patients are going to
seek their care elsewhere. They could potentially seek care within a
different network that can provide proper security for their
healthcare needs. This can ultimately affect the overall production
within an organization. The organization did notify the patients of the
breach however there should have been proper protocols that should
have been followed that could have helped eliminate this from
occurring.
References
Massachusetts clinic breach stems from unauthorized HIE access
.
(2016, September 23). BECKER’S HEALTH IT. Retrieved November
18, 2021, from https://www.beckershospitalreview.com/healthcare-
information-technology/massachusetts-clinic-breach-stems-from-
unauthorized-hie-access.html