Health systems may be less resilient to a major cyberattack than they assume when critical dependencies—especially water—are disrupted, according the, “2025 Americas Hobby Exercise After Action Report,” from H-ISAC. This year’s Hobby Exercise expanded beyond healthcare to include the water sector, revealing how outages in essential services can complicate cyber response and clinical operations. Participants repeatedly […]
H-ISAC Report Warns of State-Criminal Cyber Alliances
Nation-state services and criminal gangs are blending tactics, tooling, and motives in ways that complicate attribution and raise risk for hospital operations, according a new report from H-ISAC and CI-ISAC Australia. The most consequential finding for provider organizations is that governments are increasingly empowering local cybercriminals—and, at times, private contractors—to act as disposable extensions of […]
UC San Diego Health’s Tully Sees Upside in Monitoring the Industry’s Vital Signs
Health systems should treat technology failures as a public-health threat with direct and measurable effects on patient care. To prepare, organizations need real-time monitoring, specialty-specific playbooks, and incident structures that bring IT and clinical leaders together, according to Jeff Tully, MD, Co-Director of the Center for Healthcare Cybersecurity and Associate Clinical Professor of Anesthesiology at […]
Bridging Business and Cybersecurity: Inside the Role of a Business Information Security Officer
As cyber threats become more sophisticated and health systems diversify their operations, new roles are emerging to close the gap between business needs and cybersecurity imperatives. One such position is the Business Information Security Officer (BISO), tasked with tailoring security strategies to the unique demands of each operational unit. At Michigan Medicine, Ashley Gelisse serves […]
CrowdStrike Outage Crippled Key Clinical Systems, Study Finds
A third of U.S. hospitals experienced digital service disruption after July 2024 software failure. When a faulty software update from CrowdStrike triggered a global IT meltdown on July 19, 2024, more than 750 U.S. hospitals experienced measurable disruptions—many of them affecting direct patient care, according to a study led by Jeff Tully, MD, Co-Director of […]
Technical Debt Must be Tackled, but Cloud & AI Bring their Own BCP Challenges, Says Parkview Health CISO
As health systems intensify efforts to modernize infrastructure, the risks associated with technical debt, fragmented applications, and over reliance on cloud and AI tools are becoming more pronounced. For Darrell Keeling, PhD, Senior Vice President of IT and CISO at Parkview Health, navigating this minefield requires not only technical insight but also business acumen and […]
HSCC Testifies Before Senate HELP Committee, Urges Action on Health Sector Cybersecurity
Industry and government must act now to stabilize healthcare cybersecurity by 2029, leaders say The Healthcare and Public Health Sector Coordinating Council (HSCC) on Tuesday issued a call for urgent reforms in the nation’s healthcare cybersecurity policy, testifying before the U.S. Senate Committee on Health, Education, Labor and Pensions (HELP) with a suite of recommendations […]
Help for ‘Smalls” Uncertain, HIPAA Revision Still Alive – CHIME Gives Update on Key Policy Issues as New Administration Settles In
CHIME’s Mari Savickis is keeping a close eye on the complex policy landscape confronting healthcare technology executives. As cyberattacks on healthcare providers surge in scale and sophistication, rural hospitals are emerging as particularly vulnerable targets. According to Mari Savickis, Vice President of Public Policy at CHIME, the challenges facing these smaller health systems are intensifying […]
Strengthening the Front Lines: Health Systems Zero in on Cyber Resilience
Leaders emphasize coordinated planning and cultural change to keep operations going if systems go down. As the healthcare industry faces mounting cyber threats and heightened operational dependencies on digital infrastructure, cybersecurity leaders from prominent health systems convened to discuss how organizations can navigate this precarious environment with agility, preparedness, and resilience. During a recent panel, […]
Health-ISAC Warns of Deepfake, Phishing, and Identity Fraud Threats in AI Era
AI may be the newest threat to digital identity—but it could also be its best defense, according to a new report. A new report from Health-ISAC highlights how generative AI (Gen AI) is exacerbating cyber threats in the health sector by enabling deepfakes, phishing scams, and sophisticated identity fraud schemes. At the same time, the […]










