Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Cisco unwraps blueprint for healthcare security

Design guidelines aimed at helping healthcare companies protect patients' medical and financial information.
By Jim Duffy , Network World , 07/30/2008
  • Share/Email
  • Comment
  • Print

Cisco this week unveiled a blueprint to address Payment Card Industry data security for the healthcare industry.

The blueprint, which follows a similar plan for the retail market, is intended to provide healthcare organizations with a model for safeguarding patient financial transaction data and other personally identifiable information that is captured and processed within a healthcare facility or retail pharmacies. Called PCI for Healthcare Solution, it offers design and implementation guidelines to protect credit card, patient demographic and employee information.

Cisco also said it is now a member in the PCI Security Standards Council, which helps define future data security policy.

Citing industry research, Cisco says external data security related attacks on the healthcare industry have increased 85% between January 2007 and January 2008. One in four healthcare executives do not know where their sensitive data is located, the vendor says. Also, many organizations do not have a security framework in place to provide optimal protection, Cisco claims.

Cisco's PCI for Healthcare Solution is intended to address that by establishing a model to secure sensitive data flowing through a Cisco healthcare network, and offering enterprise policy direction on how healthcare organizations should protect assets such as patient medical and financial information.

Cisco says its Unified Wireless Networks and Ironport e-mail security appliances have received endorsement from the American Hospital Association.

Cisco's PCI Solution for Retail was announced at the National Retail Federation show in January. It includes a set of PCI reference guidelines designed to help retailers manage compliance with the PCI Data Security Standard, including design recommendations for securing remote environments such as retail stores, e-commerce sites and data centers.

Earlier this year, supermarket chain Hannaford Brothers suffered a data intrusion into its computer network that resulted in the theft of customer credit and debit card numbers. 

  • Share/Email
  • Comment
  • Print
Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.

Download the white paper.

Applications: taking back control

Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.

Learn more today.

Comments (2)
Login
Forgot your account info?

Does PCI mean that data monitoring is done at multiple devices?By TrentF on July 31, 2008, 8:27 pmThere are quite a few components for authentication and remediation. What in the PCI Blueprint allows you to monitor the data that crossing the wiring? Does Cisco...

Reply | Read entire comment

Cisco targets healthcare data securityBy Cisco Subnet on July 30, 2008, 3:12 pmCisco has followed its Payment Card Industry data security service for the retail industry with security for the healthcare sector. Called PCI for Healthcare Solution,...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed