Publisher's Synopsis
Research shows that during the past 5 years 80-90% of security breaches in healthcare has been due to people inside the organization. Security culture and information security governance is the key to addressing this problem. Cited in the reference materials for the HealthCare Information Security and Privacy Practitioner (HCISPP) certification by ISC2, this work shares the results of a national study of security compliance in US healthcare organizations conducted in 2013. The study identifies weaknesses in NIST 800-66 and provides solutions. Drawing upon the author's experience in implementing enterprise information security and privacy, the work provides an analysis of important scholarly literature surrounding human factors and insider threats with a particular emphasis on healthcare in the United States of America. The work is expected to benefit anyone implementing or studying enterprise information security and privacy.