Intelligent CISO Issue 33 | Page 45

38 % of healthcare organisations do not have a Privileged Access Management strategy in place for cloud infrastructure and workloads .
industry unlocked applications , Enterprise Resource Planning ( ERP ), customer relationship management ( CRM ) and financial management software .
As more and more functions are moved to cloud and hybrid cloud environments , the security risks only increase . To clarify , the use of the cloud is not problematic in and of itself , rather some troubling cloud-related habits exist among those organisations that are adopting cloud-based strategies , which may be to blame . For example , 35 % of healthcare organisations are fully depending on their cloud provider ’ s built-in security to secure assets , despite not believing it is sufficient . Even more disturbing , a good number of healthcare organisations admit they didn ’ t notify their customers when their sensitive data had been compromised as a result of a cyberattack , and 37 % said they would prefer to pay a

38 % of healthcare organisations do not have a Privileged Access Management strategy in place for cloud infrastructure and workloads .

penalty or fine for non-compliance with regulations instead of substantially changing their security strategy .
In fact , complying with data privacy regulations appears to be a major challenge for healthcare companies , with only 40 % saying they were prepared for a potential General Data Protection Regulation ( GDPR ) breach investigation .
As healthcare organisations continue to embrace Digital Transformation , they need to modernise their security programmes to suit this new landscape .
Privileged Access Management shining through
Another key security concern for the healthcare industry is Privileged Access Management . A large majority of organisations ( 86 %) think IT infrastructure and critical data are not fully protected unless privileged accounts , credentials and secrets are secured . Yet 38 % of healthcare organisations do not have a Privileged Access Management strategy in place for cloud infrastructure and workloads , and 44 % do not have a Privileged Access Management strategy in place www . intelligentciso . com
45