Beyond the Breach: Navigating the Knowns and Unknowns of Cybersecurity
In the wake of the cyberattack on Change Healthcare’s reimbursement system, which has led UnitedHealth Group to distribute more than $2 billion to providers amid operational disruptions, the healthcare sector has gleaned an important lesson. Cyber threats
The situation brings to mind the words of former U.S. Secretary of Defense Donald Rumsfeld: “There are known knowns. There are things we know we know. We also know there are known unknowns. That is to say, we know there are some things we do not know. But there are also unknown unknowns—the ones we don’t know we don’t know.” Applying his thoughtful epistemology to cybersecurity reflects the necessity for a comprehensive approach that prepares for both predictable and unpredictable challenges.
Contractual foresight
Collaboration between legal, financial and cybersecurity experts
The substantial operational and financial consequences of the Change Healthcare cyberattack for healthcare providers highlight the risks to the healthcare sector. As organizations traverse the terrain of cybersecurity, with the risk of more attacks on healthcare organizations always lurking, the inclusion of contractual measures to guarantee uninterrupted financial operations
Ensuring the continuity of payments through carefully crafted contractual agreements addresses the immediate impact of an attack and strengthens the entire healthcare ecosystem against future threats. This counteroffensive must include the deliberate structuring of financial and operational relationships to anticipate and mitigate the challenges of our digital age—the known and the unknown.
Eric W. Ford, PhD, is editor, Journal of Healthcare Management.
Editor’s Note: This content has been excerpted from “Beyond the Breach: Navigating the Knowns and Unknowns of Cybersecurity,” Journal of Healthcare Management, vol. 69, no. 3.
Recommended by LinkedIn
The American College of Healthcare Executives (ACHE) is a network of leaders committed to excellence in healthcare and achieving their personal best.
Be sure to SUBSCRIBE to this newsletter for more relevant insights in healthcare leadership.
➡️ Read about ACHE members making news HERE
➡️ Discover more healthcare thought leadership on the ACHE Blog HERE
➡️ Listen to the latest Healthcare Executive Podcast HERE
➡️ Learn more about ACHE and consider joining the mission HERE
CEO of Corsha | Automate Securely
6moThis is a great strategy to plan for the "known unknown." The impact of breaches certainly extends beyond just the IT networks and digital systems they affect, especially in segments like healthcare and critical infrastructure.
Director of Operations
6moInsightful!
BOD OOIDA
6moOne of the things should be developed in the cyber security area is a complete plug-in play by that I mean a way for a back up system to always be standing ready where the complete system of a healthcare provider could be unplugged from one service provider and plugged into another with ample security and firewalls to set up another Back up always keep a back up ready and just unplug it from one and plug it into the other. It never has to be told where you went, but there’s gotta be a way to do that. This stuff cannot be so interconnected that never be unconnected well we know it’s not unconnected because the bad guys are doing it, so all you gotta do is figure out how to connect it and connect it into a good terminal. I guess that’s why I drive a truck.