Health IT Security June 30, 2021
A GAO study shows that while HHS has defined roles and responsibilities within its security arm, further collaboration is needed to ensure healthcare cybersecurity.
HHS clearly defined roles and responsibilities within its security departments, but a lack of collaboration between these entities is preventing adequate healthcare cybersecurity, according to a study conducted by the US Government Accountability Office (GAO).
GAO was tasked with reviewing HHS’s organizational approach and reflecting on its roles, responsibilities, and collaboration efforts. Researchers evaluated roles and responsibilities and scanned for any overlap, duplication, or fragmentation that went against GAO’s leading collaboration practices.
Under the Federal Information Security Modernization Act of 2014, HHS implemented a cybersecurity program and identified roles and responsibilities within the Office of Information...