<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SPIN Compliance Solutions</title>
	<atom:link href="https://spincompliance.com/feed/" rel="self" type="application/rss+xml" />
	<link>https://spincompliance.com</link>
	<description>Don&#039;t let Healthcare Compliance SPIN you out of control!</description>
	<lastBuildDate>Thu, 15 Feb 2024 03:34:55 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://spincompliance.com/wp-content/uploads/2020/08/SPIN_Shape.png</url>
	<title>SPIN Compliance Solutions</title>
	<link>https://spincompliance.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Unveiling the Depths of Data Governance with SPIN Compliance</title>
		<link>https://spincompliance.com/unveiling-the-depths-of-data-governance-with-spin-compliance/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Thu, 15 Feb 2024 03:29:26 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://spincompliance.com/?p=2627</guid>

					<description><![CDATA[<p>In the business arena, the gateway to unlocking valuable insights into customers, market trends, and internal operations lies within your data. Harnessing the full potential of this information is critical for elevating customer experience, fostering innovation, and boosting overall productivity.</p>
The post <a href="https://spincompliance.com/unveiling-the-depths-of-data-governance-with-spin-compliance/">Unveiling the Depths of Data Governance with SPIN Compliance</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p>In the business arena, the gateway to unlocking valuable insights into customers, market trends, and internal operations lies within your data. Harnessing the full potential of this information is critical for elevating customer experience, fostering innovation, and boosting overall productivity.</p>
The post <a href="https://spincompliance.com/unveiling-the-depths-of-data-governance-with-spin-compliance/">Unveiling the Depths of Data Governance with SPIN Compliance</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Tackling the Hidden Challenges of Network Monitoring</title>
		<link>https://spincompliance.com/tackling-the-hidden-challenges-of-network-monitoring/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Tue, 23 Jan 2024 03:03:37 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://spincompliance.com/?p=2623</guid>

					<description><![CDATA[<p>However, as you vigilantly observe, you'll unearth various challenges lurking beneath the surface. In this blog, we'll delve into these hidden challenges and explore strategies to overcome them, ensuring robust network security with the support of SPIN.</p>
The post <a href="https://spincompliance.com/tackling-the-hidden-challenges-of-network-monitoring/">Tackling the Hidden Challenges of Network Monitoring</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p>However, as you vigilantly observe, you'll unearth various challenges lurking beneath the surface. In this blog, we'll delve into these hidden challenges and explore strategies to overcome them, ensuring robust network security with the support of SPIN.</p>
The post <a href="https://spincompliance.com/tackling-the-hidden-challenges-of-network-monitoring/">Tackling the Hidden Challenges of Network Monitoring</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>How Social Media Misuse Can Harm Your Business</title>
		<link>https://spincompliance.com/how-social-media-misuse-can-harm-your-business/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Tue, 05 Dec 2023 14:00:27 +0000</pubDate>
				<category><![CDATA[Cyber Security]]></category>
		<guid isPermaLink="false">https://spincompliance.com/?p=2591</guid>

					<description><![CDATA[<p>In the ever-evolving landscape of communication and commerce, the widespread influence of social media has transformed the way businesses operate. Nevertheless, with its escalating popularity, businesses like SPIN Compliance face potential hazards that can detrimentally impact their operations.</p>
The post <a href="https://spincompliance.com/how-social-media-misuse-can-harm-your-business/">How Social Media Misuse Can Harm Your Business</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p>In the ever-evolving landscape of communication and commerce, the widespread influence of social media has transformed the way businesses operate. Nevertheless, with its escalating popularity, businesses like SPIN Compliance face potential hazards that can detrimentally impact their operations.</p>
The post <a href="https://spincompliance.com/how-social-media-misuse-can-harm-your-business/">How Social Media Misuse Can Harm Your Business</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Embracing a &#8216;Compliance First&#8217; Philosophy Safeguards SMBs with SPIN Compliance</title>
		<link>https://spincompliance.com/embracing-a-compliance-first-philosophy-safeguards-smbs-with-spin-compliance/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Tue, 28 Nov 2023 14:00:42 +0000</pubDate>
				<category><![CDATA[Cyber Security]]></category>
		<guid isPermaLink="false">https://spincompliance.com/?p=2588</guid>

					<description><![CDATA[<p>Opting for a Compliance First strategy, particularly in collaboration with SPIN Compliance, empowers small and medium-sized businesses (SMBs) to minimize liabilities. This approach involves scrutinizing solutions and vendors, eliminating those that don't align with your compliance requirements,</p>
The post <a href="https://spincompliance.com/embracing-a-compliance-first-philosophy-safeguards-smbs-with-spin-compliance/">Embracing a ‘Compliance First’ Philosophy Safeguards SMBs with SPIN Compliance</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p>Opting for a Compliance First strategy, particularly in collaboration with SPIN Compliance, empowers small and medium-sized businesses (SMBs) to minimize liabilities. This approach involves scrutinizing solutions and vendors, eliminating those that don't align with your compliance requirements,</p>
The post <a href="https://spincompliance.com/embracing-a-compliance-first-philosophy-safeguards-smbs-with-spin-compliance/">Embracing a ‘Compliance First’ Philosophy Safeguards SMBs with SPIN Compliance</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>A Deep Dive Into Phishing Scams: Protecting Your Business with SPIN</title>
		<link>https://spincompliance.com/a-deep-dive-into-phishing-scams-protecting-your-business-with-spin/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Thu, 09 Nov 2023 03:31:34 +0000</pubDate>
				<category><![CDATA[Cyber Security]]></category>
		<guid isPermaLink="false">https://spincompliance.com/?p=2520</guid>

					<description><![CDATA[<p>In this comprehensive guide, we'll delve into the world of phishing scams, exploring their motives, various tactics, and, most importantly, how you can fortify your email security and protect your business with SPIN Compliance Solutions.</p>
The post <a href="https://spincompliance.com/a-deep-dive-into-phishing-scams-protecting-your-business-with-spin/">A Deep Dive Into Phishing Scams: Protecting Your Business with SPIN</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p><div class="et_d4_element et_pb_section et_pb_section_0 et_section_regular et_block_section" >
				
				
				
				
				
				
				<div class="et_d4_element et_pb_row et_pb_row_0 et_block_row">
				<div class="et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_0  et_pb_css_mix_blend_mode_passthrough et-last-child et_block_column">
				
				
				
				
				<div class="et_pb_module et_d4_element et_pb_post_title et_pb_post_title_0 et_pb_bg_layout_light  et_pb_text_align_left"   >
				
				
				
				
				
				<div class="et_pb_title_container">
					<h1 class="entry-title">A Deep Dive Into Phishing Scams: Protecting Your Business with SPIN</h1>
				</div>
				
			</div>
			</div>
				
				
				
				
			</div>
				
				
			</div><div class="et_d4_element et_pb_section et_pb_section_1 et_section_regular et_block_section" >
				
				
				
				
				
				
				<div class="et_d4_element et_pb_row et_pb_row_1 et_block_row">
				<div class="et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_1  et_pb_css_mix_blend_mode_passthrough et-last-child et_block_column">
				
				
				
				
				<div class="et_pb_module et_d4_element et_pb_text et_pb_text_0  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p>Phishing scams continue to be a prevalent and highly successful form of cyberattack in today's digital landscape. Understanding the potential dangers they pose to businesses is crucial for safeguarding your operations. In this comprehensive guide, we'll delve into the world of phishing scams, exploring their motives, various tactics, and, most importantly, how you can fortify your email security and protect your business.</p>
<h2>The Motive Behind Phishing Emails:</h2>
<p>Phishing emails serve as the bait that cybercriminals employ to entice unsuspecting victims into compromising actions. These actions may range from unauthorized fund transfers to divulging sensitive information, downloading malware, or sharing passwords. Ultimately, the primary objective of a phishing attack is to either pilfer valuable data, steal funds, or both.</p>
<h2>Financial Theft:</h2>
<p>One of the most common aims of a phishing attempt is financial theft. Scammers employ tactics like Business Email Compromise (BEC) to execute fraudulent fund transfers or employ ransomware attacks to extort money from their targets.</p>
<h2>Data Theft:</h2>
<p>For cybercriminals, your data is a prized possession, akin to gold. This includes login credentials, personal identity information (e.g., social security numbers), and financial data (e.g., credit card numbers or bank account information). This information can be leveraged to commit financial thefts or introduce malware. Alternatively, it may be sold on the dark web for profit.</p>
<h2>Recognizing Phishing Attempts:</h2>
<p>To shield yourself from phishing attempts, remain vigilant and watch out for these common red flags:</p>
<p>If an email prompts you to click on a link, exercise caution. These links may harbor malicious software designed to steal your data and personal information.<br />Be wary of emails directing you to a website; it could be a malicious site designed to pilfer your login credentials.<br />Exercise alertness if an email contains an attachment. Malicious extensions disguised as documents, invoices, or voicemails can infect your system and abscond with your personal information.<br />If an email pressures you into an urgent action, such as transferring funds, be skeptical. Always verify the authenticity of the request before taking any action.<br />Types of Phishing Attacks:</p>
<p>Phishing attacks are dynamic and can target businesses of all sizes through various channels, including emails, texts, voice calls, and social media messaging. Here are the different types of phishing traps to be aware of:</p>
<ul>
<li>Spear Phishing</li>
<li>Whaling</li>
<li>Smishing</li>
<li>Vishing</li>
<li>Business Email Compromise (BEC)</li>
<li>Angler Phishing</li>
<li>Brand Impersonation</li>
<li>Fortifying Your Email Security:</li>
</ul>
<p>While emails are indispensable to business operations, ensuring their safety can be a complex endeavor. Consider partnering with a reputable IT service provider like North Shore Computer to implement best practices and security standards. With our expertise, resources, and tools, we can shield your business from cyber threats, allowing you to focus on your core operations without worry. Contact us today to fortify your defenses against phishing attacks!</p></div>
			</div>
			</div>
				
				
				
				
			</div><div class="et_d4_element et_pb_row et_pb_row_2 et_block_row">
				<div class="et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_2  et_pb_css_mix_blend_mode_passthrough et-last-child et_block_column">
				
				
				
				
				<div class="et_pb_module et_d4_element et_pb_team_member et_pb_team_member_0 et_clickable clearfix  et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_team_member_image et-waypoint et_pb_animation_off"><img decoding="async" width="200" height="200" src="https://spincompliance.com/wp-content/uploads/2023/11/1599096661069.jpg" alt="Trish Breingan" srcset="https://spincompliance.com/wp-content/uploads/2023/11/1599096661069.jpg 200w, https://spincompliance.com/wp-content/uploads/2023/11/1599096661069-150x150.jpg 150w" sizes="(max-width: 200px) 100vw, 200px" class="wp-image-2523" /></div>
				<div class="et_pb_team_member_description">
					<h4 class="et_pb_module_header">Trish Breingan</h4>
					<p class="et_pb_member_position">Vice President of HIPAA Compliance and Co-Founder of SPIN Compliance Solutions</p>
					
					
				</div>
			</div><ul class="et_pb_module et_d4_element et_pb_social_media_follow et_pb_social_media_follow_0 clearfix  et_pb_bg_layout_light">
				
				
				
				
				<li
            class='et_d4_element et_pb_social_media_follow_network_0 et_pb_social_icon et_block_module et_pb_social_network_link  et-social-linkedin et_pb_social_media_follow_network'><a
              href='https://www.linkedin.com/in/trish-breingan-b83039134'
              class='icon et_pb_with_border'
              title='Follow on LinkedIn'
               target="_blank"><span
                class='et_pb_social_media_follow_network_name'
                aria-hidden='true'
                >Follow</span></a></li>
			</ul>
			</div>
				
				
				
				
			</div>
				
				
			</div><div class="et_d4_element et_pb_section et_pb_section_2 et_section_regular et_block_section" >
				
				
				
				
				
				
				<div class="et_d4_element et_pb_row et_pb_row_3 et_block_row">
				<div class="et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_3  et_pb_css_mix_blend_mode_passthrough et-last-child et_block_column">
				
				
				
				
				<div class="et_pb_module et_d4_element et_pb_blog_0 et_pb_blog_grid_wrapper et_pb_bg_layout_light">
					<div class="et_pb_blog_grid clearfix ">
					
					
					
					
					<div class="et_pb_ajax_pagination_container">
						<div class="et_pb_salvattore_content" data-columns>
			<article id="post-2627" class="et_pb_post clearfix et_pb_blog_item_0_0 post-2627 post type-post status-publish format-standard has-post-thumbnail hentry category-uncategorized">

				<div class="et_pb_image_container"><a href="https://spincompliance.com/unveiling-the-depths-of-data-governance-with-spin-compliance/" class="entry-featured-image-url"><img fetchpriority="high" decoding="async" src="https://spincompliance.com/wp-content/uploads/2024/02/Ad-17_1200x628-1-400x250.png" alt="Unveiling the Depths of Data Governance with SPIN Compliance" class="" srcset="https://spincompliance.com/wp-content/uploads/2024/02/Ad-17_1200x628-1.png 479w, https://spincompliance.com/wp-content/uploads/2024/02/Ad-17_1200x628-1-400x250.png 480w " sizes="(max-width:479px) 479px, 100vw "  width="400" height="250" /></a></div>
														<h2 class="entry-title">
													<a href="https://spincompliance.com/unveiling-the-depths-of-data-governance-with-spin-compliance/">Unveiling the Depths of Data Governance with SPIN Compliance</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">Feb 14, 2024</span> | <a href="https://spincompliance.com/category/uncategorized/" rel="tag">Uncategorized</a></p><div class="post-content"><div class="post-content-inner"><p>In the business arena, the gateway to unlocking valuable insights into customers, market trends, and internal operations lies within your data. Harnessing the full potential of this information is critical for elevating customer experience, fostering innovation, and boosting overall productivity.</p>
</div></div>			
			</article>
				
			<article id="post-2623" class="et_pb_post clearfix et_pb_blog_item_0_1 post-2623 post type-post status-publish format-standard has-post-thumbnail hentry category-uncategorized">

				<div class="et_pb_image_container"><a href="https://spincompliance.com/tackling-the-hidden-challenges-of-network-monitoring/" class="entry-featured-image-url"><img loading="lazy" decoding="async" src="https://spincompliance.com/wp-content/uploads/2024/01/Ad-14_1200x628-400x250.jpg" alt="Tackling the Hidden Challenges of Network Monitoring" class="" srcset="https://spincompliance.com/wp-content/uploads/2024/01/Ad-14_1200x628.jpg 479w, https://spincompliance.com/wp-content/uploads/2024/01/Ad-14_1200x628-400x250.jpg 480w " sizes="(max-width:479px) 479px, 100vw "  width="400" height="250" /></a></div>
														<h2 class="entry-title">
													<a href="https://spincompliance.com/tackling-the-hidden-challenges-of-network-monitoring/">Tackling the Hidden Challenges of Network Monitoring</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">Jan 22, 2024</span> | <a href="https://spincompliance.com/category/uncategorized/" rel="tag">Uncategorized</a></p><div class="post-content"><div class="post-content-inner"><p>However, as you vigilantly observe, you&#8217;ll unearth various challenges lurking beneath the surface. In this blog, we&#8217;ll delve into these hidden challenges and explore strategies to overcome them, ensuring robust network security with the support of SPIN.</p>
</div></div>			
			</article>
				
			<article id="post-2591" class="et_pb_post clearfix et_pb_blog_item_0_2 post-2591 post type-post status-publish format-standard has-post-thumbnail hentry category-cyber-security">

				<div class="et_pb_image_container"><a href="https://spincompliance.com/how-social-media-misuse-can-harm-your-business/" class="entry-featured-image-url"><img loading="lazy" decoding="async" src="https://spincompliance.com/wp-content/uploads/2023/11/Cybersecurity-Awareness-Social-_Ad-10_1200x628-400x250.jpg" alt="How Social Media Misuse Can Harm Your Business" class="" srcset="https://spincompliance.com/wp-content/uploads/2023/11/Cybersecurity-Awareness-Social-_Ad-10_1200x628.jpg 479w, https://spincompliance.com/wp-content/uploads/2023/11/Cybersecurity-Awareness-Social-_Ad-10_1200x628-400x250.jpg 480w " sizes="(max-width:479px) 479px, 100vw "  width="400" height="250" /></a></div>
														<h2 class="entry-title">
													<a href="https://spincompliance.com/how-social-media-misuse-can-harm-your-business/">How Social Media Misuse Can Harm Your Business</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">Dec 5, 2023</span> | <a href="https://spincompliance.com/category/cyber-security/" rel="tag">Cyber Security</a></p><div class="post-content"><div class="post-content-inner"><p>In the ever-evolving landscape of communication and commerce, the widespread influence of social media has transformed the way businesses operate. Nevertheless, with its escalating popularity, businesses like SPIN Compliance face potential hazards that can detrimentally impact their operations.</p>
</div></div>			
			</article>
				
			<article id="post-2588" class="et_pb_post clearfix et_pb_blog_item_0_3 post-2588 post type-post status-publish format-standard has-post-thumbnail hentry category-cyber-security">

				<div class="et_pb_image_container"><a href="https://spincompliance.com/embracing-a-compliance-first-philosophy-safeguards-smbs-with-spin-compliance/" class="entry-featured-image-url"><img loading="lazy" decoding="async" src="https://spincompliance.com/wp-content/uploads/2023/11/Compliance-May-21-Ad-1-400x250.jpg" alt="Embracing a &#8216;Compliance First&#8217; Philosophy Safeguards SMBs with SPIN Compliance" class="" srcset="https://spincompliance.com/wp-content/uploads/2023/11/Compliance-May-21-Ad-1.jpg 479w, https://spincompliance.com/wp-content/uploads/2023/11/Compliance-May-21-Ad-1-400x250.jpg 480w " sizes="(max-width:479px) 479px, 100vw "  width="400" height="250" /></a></div>
														<h2 class="entry-title">
													<a href="https://spincompliance.com/embracing-a-compliance-first-philosophy-safeguards-smbs-with-spin-compliance/">Embracing a &#8216;Compliance First&#8217; Philosophy Safeguards SMBs with SPIN Compliance</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">Nov 28, 2023</span> | <a href="https://spincompliance.com/category/cyber-security/" rel="tag">Cyber Security</a></p><div class="post-content"><div class="post-content-inner"><p>Opting for a Compliance First strategy, particularly in collaboration with SPIN Compliance, empowers small and medium-sized businesses (SMBs) to minimize liabilities. This approach involves scrutinizing solutions and vendors, eliminating those that don&#8217;t align with your compliance requirements,</p>
</div></div>			
			</article>
				
			<article id="post-2520" class="et_pb_post clearfix et_pb_blog_item_0_4 post-2520 post type-post status-publish format-standard has-post-thumbnail hentry category-cyber-security">

				<div class="et_pb_image_container"><a href="https://spincompliance.com/a-deep-dive-into-phishing-scams-protecting-your-business-with-spin/" class="entry-featured-image-url"><img loading="lazy" decoding="async" src="https://spincompliance.com/wp-content/uploads/2023/11/Security-August-2021-Ad-11-400x250.png" alt="A Deep Dive Into Phishing Scams: Protecting Your Business with SPIN" class="" srcset="https://spincompliance.com/wp-content/uploads/2023/11/Security-August-2021-Ad-11.png 479w, https://spincompliance.com/wp-content/uploads/2023/11/Security-August-2021-Ad-11-400x250.png 480w " sizes="(max-width:479px) 479px, 100vw "  width="400" height="250" /></a></div>
														<h2 class="entry-title">
													<a href="https://spincompliance.com/a-deep-dive-into-phishing-scams-protecting-your-business-with-spin/">A Deep Dive Into Phishing Scams: Protecting Your Business with SPIN</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">Nov 8, 2023</span> | <a href="https://spincompliance.com/category/cyber-security/" rel="tag">Cyber Security</a></p><div class="post-content"><div class="post-content-inner"><p>In this comprehensive guide, we&#8217;ll delve into the world of phishing scams, exploring their motives, various tactics, and, most importantly, how you can fortify your email security and protect your business with SPIN Compliance Solutions.</p>
</div></div>			
			</article>
				
			<article id="post-1594" class="et_pb_post clearfix et_pb_no_thumb et_pb_blog_item_0_5 post-1594 post type-post status-publish format-standard hentry category-cyber-security">

				
														<h2 class="entry-title">
													<a href="https://spincompliance.com/hacking-it-incidents-top-the-hc-breach-reports-for-the-month-of-april/">Hacking/IT incidents top the HC breach reports for the month of April</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">May 24, 2021</span> | <a href="https://spincompliance.com/category/cyber-security/" rel="tag">Cyber Security</a></p><div class="post-content"><div class="post-content-inner"><p>April was another particularly bad month for healthcare data breaches with 62 reported breaches of 500 or – the same number as March 2021. That is more than 2 reported healthcare data breaches every day, and well over the 12-month average of 51 breaches per month.</p>
</div></div>			
			</article>
				
			<article id="post-1591" class="et_pb_post clearfix et_pb_no_thumb et_pb_blog_item_0_6 post-1591 post type-post status-publish format-standard hentry category-uncategorized">

				
														<h2 class="entry-title">
													<a href="https://spincompliance.com/improve-cybersecurity-new-government-executive-order/">Improve Cybersecurity &#8211; New Government Executive Order</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/gdev/" title="Posts by Greg La Plant" rel="author">Greg La Plant</a></span> | <span class="published">May 18, 2021</span> | <a href="https://spincompliance.com/category/uncategorized/" rel="tag">Uncategorized</a></p><div class="post-content"><div class="post-content-inner"><p>President Biden Signs Expansive Executive Order...</p>
</div></div>			
			</article>
				
			<article id="post-1522" class="et_pb_post clearfix et_pb_no_thumb et_pb_blog_item_0_7 post-1522 post type-post status-publish format-standard hentry category-cyber-security">

				
														<h2 class="entry-title">
													<a href="https://spincompliance.com/fbi-issues-warning-about-mamba-ransomware-hipaajournal-com/">FBI Issues Warning About Mamba Ransomware (hipaajournal.com)</a>
											</h2>
				
					<p class="post-meta">by <span class="author vcard"><a href="https://spincompliance.com/author/trish/" title="Posts by Trish Breingan" rel="author">Trish Breingan</a></span> | <span class="published">Apr 6, 2021</span> | <a href="https://spincompliance.com/category/cyber-security/" rel="tag">Cyber Security</a></p><div class="post-content"><div class="post-content-inner"><p>An increase in cyberattacks involving Mamba ransomware has prompted the Federal Bureau of Investigation and the Department of Homeland Security to issue a flash alert warning organizations and companies in multiple sectors about the dangers of the ransomware.</p>
</div></div>			
			</article>
				</div><div><div class="pagination clearfix">
	<div class="alignleft"></div>
	<div class="alignright"></div>
</div></div></div>
					</div>
					 
				</div>
			</div>
				
				
				
				
			</div>
				
				
			</div></p>The post <a href="https://spincompliance.com/a-deep-dive-into-phishing-scams-protecting-your-business-with-spin/">A Deep Dive Into Phishing Scams: Protecting Your Business with SPIN</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Hacking/IT incidents top the HC breach reports for the month of April</title>
		<link>https://spincompliance.com/hacking-it-incidents-top-the-hc-breach-reports-for-the-month-of-april/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Mon, 24 May 2021 18:29:33 +0000</pubDate>
				<category><![CDATA[Cyber Security]]></category>
		<guid isPermaLink="false">http://hypnotic-feeling.flywheelsites.com/?p=1594</guid>

					<description><![CDATA[<p>April was another particularly bad month for healthcare data breaches with 62 reported breaches of 500 or – the same number as March 2021. That is more than 2 reported healthcare data breaches every day, and well over the 12-month average of 51 breaches per month.</p>
The post <a href="https://spincompliance.com/hacking-it-incidents-top-the-hc-breach-reports-for-the-month-of-april/">Hacking/IT incidents top the HC breach reports for the month of April</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p><a href="https://www.hipaajournal.com/april-2021-healthcare-data-breach-report/">April 2021 Healthcare Data Breach Report (hipaajournal.com)</a></p>
<p>April was another particularly bad month for healthcare data breaches with 62 reported breaches of 500 or – the same number as March 2021. That is more than 2 reported healthcare data breaches every day, and well over the 12-month average of 51 breaches per month.</p>
<p><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-20441 lazyloaded" src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months.jpg" sizes="(max-width: 1000px) 100vw, 1000px" srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months.jpg 1000w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months-300x105.jpg 300w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months-768x269.jpg 768w" alt="Healthcare data breaches in the past 12 months" width="1000" height="350" data-src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months.jpg" data-srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months.jpg 1000w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months-300x105.jpg 300w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-breaches-12-months-768x269.jpg 768w" data-sizes="(max-width: 1000px) 100vw, 1000px" /></p>
<p>High numbers of healthcare records continue to be exposed each month. Across the 62 breaches, 2,583,117 healthcare records were exposed or compromised; however, it is below the 12-month average of 2,867,243 breached records per month. 34.4 million healthcare records have now been breached in the past 12 months, 11.2 million of which were breached in 2021.</p>
<p><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-20442 lazyloaded" src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months.jpg" sizes="(max-width: 1000px) 100vw, 1000px" srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months.jpg 1000w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months-300x105.jpg 300w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months-768x269.jpg 768w" alt="Healthcare records breached in the past 12 months" width="1000" height="350" data-src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months.jpg" data-srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months.jpg 1000w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months-300x105.jpg 300w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-records-12-months-768x269.jpg 768w" data-sizes="(max-width: 1000px) 100vw, 1000px" /></p>
<h2>Largest Healthcare Data Breaches Reported in April 2021</h2>
<p>There were 19 reported data breaches in April that involved more than 10,000 records, including 7 that involved more than 100,000 records with all but one of the top 10 data breaches due to hacking incidents.</p>
<p>Ransomware attacks continue to occur at high levels, with many of the reported attacks affecting business associates of HPAA-covered entities. These incidents, which include attacks on Netgain Technologies, Accellion, and <a href="https://www.hipaajournal.com/capturerx-ransomware-attack-affects-multiple-healthcare-provider-clients/" data-wpel-link="internal">CaptureRX</a>, have affected multiple healthcare provider clients.</p>
<p>The majority of ransomware attacks now involve data theft prior to file encryption, with the stolen data used as leverage to get breach victims to pay. Large quantities of data are stolen in the attacks. The top three data breaches of the month all involved the use of ransomware and involved 1.3 million healthcare records.</p>
<p>There has been some positive news this month. In the wake of the ransomware attack on Colonial Pipeline, multiple ransomware gangs appear to have <a href="https://www.hipaajournal.com/darkside-raas-shut-down-and-ransomware-gangs-ban-attacks-on-healthcare-organizations/" data-wpel-link="internal">ceased operations</a> and at least two have now taken the decision not to attack healthcare organizations. This news should naturally be taken with a large pinch of salt, as similar promises were made by certain ransomware gangs at the start of the pandemic and attacks continued at high levels.</p>
<table>
<tbody>
<tr>
<td width="153"><strong>Name of Covered Entity</strong></td>
<td width="106"><strong>Covered Entity Type</strong></td>
<td width="108"><strong>Business Associate Involvement</strong></td>
<td width="106"><strong>Individuals Affected</strong></td>
<td width="115"><strong>Type of Breach</strong></td>
<td width="110"><strong>Reported Cause of Breach</strong></td>
</tr>
<tr>
<td width="153">Trinity Health</td>
<td width="106">Business Associate</td>
<td width="108">Yes</td>
<td width="106">586,869</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Ransomware (Accellion)</td>
</tr>
<tr>
<td width="153">Bricker &amp; Eckler LLP</td>
<td width="106">Business Associate</td>
<td width="108">Yes</td>
<td width="106">420,532</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Ransomware</td>
</tr>
<tr>
<td width="153">Health Center Partners of Southern California</td>
<td width="106">Business Associate</td>
<td width="108">Yes</td>
<td width="106">293,516</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Ransomware (Netgain Technologies)</td>
</tr>
<tr>
<td width="153">Total Health Care Inc.</td>
<td width="106">Health Plan</td>
<td width="108">No</td>
<td width="106">221,454</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Phishing</td>
</tr>
<tr>
<td width="153">Wyoming Department of Health</td>
<td width="106">Health Plan</td>
<td width="108">No</td>
<td width="106">164,010</td>
<td width="115">Unauthorized Access/Disclosure</td>
<td width="110">Exposure of PHI over Internet</td>
</tr>
<tr>
<td width="153">Home Medical Equipment Holdco, LLC</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">153,013</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Phishing</td>
</tr>
<tr>
<td width="153">Health Aid of Ohio, Inc.</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">141,149</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Unspecified hacking and data exfiltration attack</td>
</tr>
<tr>
<td width="153">Woodholme Gastroenterology</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">50,000</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Unspecified hacking and data exfiltration attack</td>
</tr>
<tr>
<td width="153">Neighborhood Healthcare</td>
<td width="106">Healthcare Provider</td>
<td width="108">Yes</td>
<td width="106">45,200</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Ransomware (Netgain Technologies)</td>
</tr>
<tr>
<td width="153">Crystal Lake Clinic PC</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">37,331</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Not confirmed</td>
</tr>
<tr>
<td width="153">RiverSpring Health Plans</td>
<td width="106">Health Plan</td>
<td width="108">No</td>
<td width="106">31,195</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Phishing</td>
</tr>
<tr>
<td width="153">Middletown Medical Imaging</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">29,945</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Exposure of PHI over Internet</td>
</tr>
<tr>
<td width="153">St. John’s Well Child and Family Center, Inc.</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">29,030</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Unspecified hacking and data exfiltration attack</td>
</tr>
<tr>
<td width="153">MailMyPrescriptions.com Pharmacy Corporation</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">24,037</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Phishing</td>
</tr>
<tr>
<td width="153">Squirrel Hill Health Center</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">23,869</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Malware</td>
</tr>
<tr>
<td width="153">Eastern Shore Rural Health System Inc.</td>
<td width="106">Healthcare Provider</td>
<td width="108">Yes</td>
<td width="106">23,282</td>
<td width="115">Unauthorized Access/Disclosure</td>
<td width="110">Not confirmed</td>
</tr>
<tr>
<td width="153">Faxton St. Luke’s Healthcare</td>
<td width="106">Healthcare Provider</td>
<td width="108">Yes</td>
<td width="106">17,656</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Ransomware (CaptureRX)</td>
</tr>
<tr>
<td width="153">Midwest Transplant Network, Inc.</td>
<td width="106">Healthcare Provider</td>
<td width="108">No</td>
<td width="106">17,580</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Ransomware</td>
</tr>
<tr>
<td width="153">Baptist Health Arkansas</td>
<td width="106">Healthcare Provider</td>
<td width="108">Yes</td>
<td width="106">16,765</td>
<td width="115">Hacking/IT Incident</td>
<td width="110">Hacking of business associate (Foley &amp; Lardner, LLP)</td>
</tr>
</tbody>
</table>
<h2>Causes of April 2021 Healthcare Data Breaches</h2>
<p>Hacking/IT incidents, which include malware and ransomware attacks, dominated the breach reports in April 2021 and accounted for 67.74% of all reported breaches (42 incidents). These incidents involved 85.93% of all breached records in April. The mean breach size was 52,851 records and the median breach size was 6,563 records.</p>
<p>There were 17 incidents classed as unauthorized access/disclosures involving 358,870 records – 13.89% of all records breached in April. The mean breach size was 21,110 records and the median breach size was 2,704 records.</p>
<p>Loss and theft incidents continue but only at very low levels. There were just two reported cases of theft of devices containing PHI and one loss incident reported. 4,500 records were breached in these 3 incidents.</p>
<p><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-20443 lazyloaded" src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-causes.jpg" sizes="(max-width: 600px) 100vw, 600px" srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-causes.jpg 600w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-causes-300x181.jpg 300w" alt="April 2021 Healthcare Data Breach causes" width="600" height="361" data-src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-causes.jpg" data-srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-causes.jpg 600w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-causes-300x181.jpg 300w" data-sizes="(max-width: 600px) 100vw, 600px" /></p>
<p>Network server incidents, most of which involved ransomware or malware, have overtaken phishing as the main cause of healthcare data breaches, although it should be noted that phishing emails are often the root cause of many ransomware attacks. There were 19 reported incidents involving PHI in email accounts, the majority of which were due to phishing or other forms of credential theft. One of the largest reported breaches in April was due to phishing and resulted in the exposure and potential theft of the PHI of 221,454 individuals.</p>
<p><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-20444 lazyloaded" src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-location-PHI.jpg" sizes="(max-width: 600px) 100vw, 600px" srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-location-PHI.jpg 600w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-location-PHI-300x181.jpg 300w" alt="April 2021 Healthcare Data Breaches - location of PHI" width="600" height="361" data-src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-location-PHI.jpg" data-srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-location-PHI.jpg 600w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-location-PHI-300x181.jpg 300w" data-sizes="(max-width: 600px) 100vw, 600px" /></p>
<p>According to the <a href="https://www.hipaajournal.com/verizon-healthcare-phishing-and-ransomware-attacks-increase-while-insider-breaches-fall/" data-wpel-link="internal">Verizon 2021 Data Breach Investigations Report</a>, phishing attacks increased globally by 11% in 2020 and ransomware attacks increased by 6%. The report shows insider breaches in healthcare have continued to fall and are now not even in the top three breach causes. In 2020, 61% of healthcare data breaches were due to external threat actors and 39% were caused by insiders.</p>
<h2>April 2021 Healthcare Data Breaches by Covered Entity Type</h2>
<p>Healthcare providers were the worst affected covered entity with 30 data breaches of 500 or more records reported by the provider and a further 13 reported by a vendor. Business associate data breaches continue to be reported at high levels. There were 24 breaches involving business associates, with 10 of those breaches reported by the covered entity. 9 branches were reported by health plans in April, with one breach affecting a health plan reported by its business associate.</p>
<h2><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-20445 lazyloaded" src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-entity-type.jpg" sizes="(max-width: 600px) 100vw, 600px" srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-entity-type.jpg 600w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-entity-type-300x181.jpg 300w" alt="" width="600" height="361" data-src="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-entity-type.jpg" data-srcset="https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-entity-type.jpg 600w, https://www.hipaajournal.com/wp-content/uploads/2021/05/april-2021-healthcare-data-breach-report-entity-type-300x181.jpg 300w" data-sizes="(max-width: 600px) 100vw, 600px" /></h2>
<h2>States Affected by Healthcare Data Breaches</h2>
<p>HIPAA-covered entities and business associates based in 28 states reported breaches of protected health information in April. California was the worst affected state with 7 breaches reported followed by Michigan and Texas with 5 breaches. Florida, New York, and Wisconsin had 4 breaches, and there were 3 reported breaches in Massachusetts and Ohio.</p>
<p>Wyoming, the least populated U.S. state, only had one reported breach, but it affected a quarter of state residents.</p>
<table>
<tbody>
<tr>
<td width="349"><strong>State</strong></td>
<td width="349"><strong>No. Reported Data Breaches</strong></td>
</tr>
<tr>
<td width="349">California</td>
<td width="349">7</td>
</tr>
<tr>
<td width="349">Michigan and Texas</td>
<td width="349">5</td>
</tr>
<tr>
<td width="349">Florida, New York, &amp; Wisconsin</td>
<td width="349">4</td>
</tr>
<tr>
<td width="349">Massachusetts &amp; Ohio</td>
<td width="349">3</td>
</tr>
<tr>
<td width="349">Georgia, Illinois, Minnesota, Missouri, New Mexico, Pennsylvania, and Vermont</td>
<td width="349">2</td>
</tr>
<tr>
<td width="349">Alabama, Arkansas, Colorado, Kansas, Maryland, Montana, North Carolina, New Hampshire, New Jersey, Oregon, Tennessee, Virginia, &amp; Wyoming</td>
<td width="349">1</td>
</tr>
</tbody>
</table>
<h2>HIPAA Enforcement Activity in April 2021</h2>
<p>It has been a busy year of HIPAA enforcement by the HHS’ Office for Civil Rights with 6 financial penalties imposed to resolve violations of the HIPAA Rules; however, there were no new settlements or civil monetary penalties announced in April, nor any enforcement actions by state Attorneys General.</p>
<p>&nbsp;</p>The post <a href="https://spincompliance.com/hacking-it-incidents-top-the-hc-breach-reports-for-the-month-of-april/">Hacking/IT incidents top the HC breach reports for the month of April</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Improve Cybersecurity &#8211; New Government Executive Order</title>
		<link>https://spincompliance.com/improve-cybersecurity-new-government-executive-order/</link>
		
		<dc:creator><![CDATA[Greg La Plant]]></dc:creator>
		<pubDate>Tue, 18 May 2021 14:43:46 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">http://hypnotic-feeling.flywheelsites.com/?p=1591</guid>

					<description><![CDATA[<p>President Biden Signs Expansive Executive Order to Improve Cybersecurity for Federal Networks (hipaajournal.com) On May 13, 2021, President Biden signed an expansive Executive Order that aims to significantly bolster cybersecurity protections for federal networks, improve threat information sharing between the government, law enforcement and the private sector, and introduce a cyber threat response playbook to accelerate incident [&#8230;]</p>
The post <a href="https://spincompliance.com/improve-cybersecurity-new-government-executive-order/">Improve Cybersecurity – New Government Executive Order</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p><a href="https://www.hipaajournal.com/biden-signs-expansive-executive-order-to-improve-cybersecurity-for-federal-networks/">President Biden Signs Expansive Executive Order to Improve Cybersecurity for Federal Networks (hipaajournal.com)</a></p>
<p>On May 13, 2021, President Biden signed an expansive <a href="https://www.whitehouse.gov/briefing-room/presidential-actions/2021/05/12/executive-order-on-improving-the-nations-cybersecurity/" rel="nofollow noopener" data-wpel-link="external">Executive Order</a> that aims to significantly bolster cybersecurity protections for federal networks, improve threat information sharing between the government, law enforcement and the private sector, and introduce a cyber threat response playbook to accelerate incident response and mitigation.</p>
<p>The 34-page Executive Order includes short time frames for making significant improvements to cybersecurity, with all elements of the Executive Order due to be implemented within the next 360 days and the first elements due in 30 days.  The Executive Order was penned following a series of damaging cyberattacks that impacted government departments and agencies, such as the SolarWinds Orion Supply chain attack and attacks on Microsoft Exchange Servers. The recent DarkSide ransomware attack on Colonial Pipeline served as yet another reminder of the importance of improving cybersecurity, not just for the Federal government but also the private sector which owns and operates much of the country’s critical infrastructure.</p>
<p><strong>President Biden is planning to lead by example and is urging the private sector and critical infrastructure firms to follow the lead of the Federal government in improving resilience to cyberattacks and preparing for attacks to ensure that disruption to operational capabilities is kept to a minimum.</strong></p>
<p>The key elements of the <em>Executive Order on Improving the Nation’s Cybersecurity</em> are:</p>
<ul>
<li>Removing barriers to threat information sharing to make it easier for private sector companies to report threats and data breaches that could potentially have an impact on Federal networks.</li>
<li>Modernizing and implementing stronger cybersecurity standards in the Federal government. This includes widespread use of multifactor authentication, more extensive use of data encryption, the adoption of a zero-trust architecture, and a more rapid transition to secure cloud services.</li>
<li>The creation of a standard cyber incident response playbook. Government departments and agencies need to know, in advance, how to respond to threats. The playbook will ensure a rapid and uniform response to any cybersecurity incident.</li>
<li>Improvements to investigative and remediation capabilities. Detailed security event logs must be maintained by federal departments and agencies to ensure that cyberattacks can be easily investigated and remediated. Breach investigations have previously been hampered due to the lack of robust and consistent logging.</li>
<li>Improving software supply chain security. All software sold to the U.S. government will need to adhere to new security standards. Developers will be required to maintain greater visibility into their software solutions and make security data publicly available. The government will also launch a pilot “energy star” label program to demonstrate whether software was developed securely.</li>
<li>A Cybersecurity Safety Review Board will be created that consists of government and private sector leads that will meet following any significant security breach to analyze what has happened. Recommendations can then be made and implemented to ensure similar attacks are prevented in the future.</li>
<li>Improvements to cyber incident detection capabilities. A government-wide endpoint detection and response system will be implemented, along with robust intra-governmental information sharing.</li>
</ul>
<p>“This Executive Order makes a significant contribution toward modernizing cybersecurity defenses by protecting federal networks, improving information-sharing between the U.S. government and the private sector on cyber issues, and strengthening the United States’ ability to respond to incidents when they occur,” explained the Biden Administration in a statement about the Executive Order. “It is the first of many ambitious steps the Administration is taking to modernize national cyber defenses.”</p>The post <a href="https://spincompliance.com/improve-cybersecurity-new-government-executive-order/">Improve Cybersecurity – New Government Executive Order</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>FBI Issues Warning About Mamba Ransomware (hipaajournal.com)</title>
		<link>https://spincompliance.com/fbi-issues-warning-about-mamba-ransomware-hipaajournal-com/</link>
		
		<dc:creator><![CDATA[Trish Breingan]]></dc:creator>
		<pubDate>Tue, 06 Apr 2021 13:15:27 +0000</pubDate>
				<category><![CDATA[Cyber Security]]></category>
		<guid isPermaLink="false">http://hypnotic-feeling.flywheelsites.com/?p=1522</guid>

					<description><![CDATA[<p>An increase in cyberattacks involving Mamba ransomware has prompted the Federal Bureau of Investigation and the Department of Homeland Security to issue a flash alert warning organizations and companies in multiple sectors about the dangers of the ransomware.</p>
The post <a href="https://spincompliance.com/fbi-issues-warning-about-mamba-ransomware-hipaajournal-com/">FBI Issues Warning About Mamba Ransomware (hipaajournal.com)</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></description>
										<content:encoded><![CDATA[<p>An increase in cyberattacks involving Mamba ransomware has prompted the Federal Bureau of Investigation and the Department of Homeland Security to issue a flash alert warning organizations and companies in multiple sectors about the dangers of the ransomware.</p>
The post <a href="https://spincompliance.com/fbi-issues-warning-about-mamba-ransomware-hipaajournal-com/">FBI Issues Warning About Mamba Ransomware (hipaajournal.com)</a> appeared first on <a href="https://spincompliance.com">SPIN Compliance Solutions</a>.]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
