FTC Lawyer Advocates Multi-Layered Security in Healthcare

June 24, 2011
Good data security is having “defensive depth” to information systems, says Alain Sheer, an attorney in the Federal Trade Commission’s division of

Good data security is having “defensive depth” to information systems, says Alain Sheer, an attorney in the Federal Trade Commission’s division of privacy and identity protection. Sheer made the comments as a speaker at the Safeguarding Health Information Conference in Washington, citing examples of the need for multiple levels of defense.

CVS Pharmacies was assessed sanctions, for example, after it was found to be disposing paper records of identifiable medical and payment card information in public dumpsters. For falsely representing to the public that it would protect the information, CVS was charged with deception, as well as unfair practices, by the FTC.

The Department of Health and Human Services' Office for Civil Rights further imposed a $2 million fine and a three-year collective action plan on CVS.

Peer-to-peer file sharing programs, Sheer warned, also pose security risks.

Sponsored Recommendations

Enhancing Healthcare Through Strategic IT and AI Innovations

Learn how strategic IT and AI innovations are transforming healthcare - join Tomas Gregorio as he explores practical applications that enhance clinical decision-making, optimize...

The Intersection of Healthcare Compliance and Security in the Age of Deepfakes

As healthcare regulations struggle to keep up with rapid advancements in AI-driven threats like deepfakes, the security gaps have never been more concerning.

Increasing Healthcare Security Behind and Beyond the Firewall

Read how 5 identity security solutions can help you protect against these threats while improving user experience and reducing costs.

Improve and Secure Healthcare Delivery with Digital Identity

Get a deep understanding of how Digital Identity can help secure your healthcare organization while offering seamless access to your growing portfolio of apps and APIs.