• Contact
  • 888-54-FIRST
  • Client Login
    • Client Portal
    • Online Store
Search
First Healthcare Compliance
  • Solutions
    • Compliance Management Software
    • Online Compliance Courses
    • Compliance Management Suite
  • Plans
  • Resources
    • Blog
    • Virtual Education Hub
    • 1st Talk Compliance Podcast
    • Connect Magazine
    • Compliance Posters
    • Healthcare Compliance Books
    • Newsletter Signup
  • News & Events
    • Press Releases
  • Our Team
  • Request Demo
  • Menu Menu
  • Shopping Cart Shopping Cart
    0Shopping Cart

Blog

Healthcare Cybersecurity Awareness Training Q & A with Ray Ribble

Healthcare Cybersecurity Awareness Training, Q&A with Ray Ribble

June 15, 2021/in Blog, Cybersecurity, Employee Training

Healthcare Cybersecurity Awareness Training Q & A with Ray Ribble

Raymond Ribble, founder of SPHER, Inc., presented the webinar “Healthcare Cybersecurity Awareness Training” recently and a recording can be viewed here. Ray returned to answer many commonly asked questions from the webinar.

How do I make sure my home PC is encrypted?

Ensuring that a home computer is encrypted requires different actions depending on the type of computer. The answer depends on whether you are using a MAC or PC.

The instructions for ensuring a Mac computer is encrypted are as follows:

  • On your Mac, choose Apple menu > System Preferences, click Security & Privacy, then click FileVault. Open the FileVault pane
  • Click Turn On FileVault. You might be asked to enter your password.
  • Choose how to unlock your disk and reset your login password if you forget it:
  • Click Continue.

The instructions for ensuring a PC is encrypted are as follows:

  • Sign into Windows with an administrator account (you may have to sign out and back in to switch accounts).
  • Select the Start button, then select Settings > Update & Security > Device encryption.
  • If device encryption is turned off, select Turn on.

I am using the EHR regularly, is there a risk that I could get hacked and expose my office as well?

Yes, there is always a risk.   Our home set-ups are inherently less secure than an office environment.  I advise you to start by speaking with your IT and administrative senior managers.  Consider the login process to the EHR, is it a two-factor authentication process?  If you are accessing a portal, then IT may be able to establish a secure VPN tunnel to allow the work-from-home employees to log in and use when accessing those systems.  Of course, encryption of your PC and placing strong security on your home router and modem will help greatly.  Each environment will vary, so I really do advise you to consult the IT manager and ask for them to review the environment to ensure it is secure.

Is there a way for me to see what my remote users are doing from home, what are they accessing?

Yes, there are a few ways to make that happen.  This is a great question because it addresses the HIPAA requirement for auditing and monitoring access to PHI.  In most cases the EHR/EMR has an audit log.  If you have access to those logs, then you can conduct a manual review of the person in question and see what types of queries they are making in the application.  Your office may use a network monitoring tool such as SPLUNK that allows IT to see the traffic associated with access to and movement of data within your systems.  And last but not least, you can use a solution such as SPHER that actively monitors all user access regardless of their location and allows you to monitor 100% of user activity and run compliance analytics to review any abnormal behaviors that are detected.

When working from home should I use my WiFi or a hard line (cable) to connect to the internet?

It is always BEST to use the hardline cable, if you have that capability.  You can buy a long cable for that purpose at Best Buy or your favorite computer store.  If you select to use WiFi then I recommend you to go into the settings and “Turn Off” the WiFi broadcast, called SSID.  This makes it harder for your neighbors or a hacker to drive by and see your WiFi network.  You’ll know the login data and be able to access it from the house.

Ray Ribble ECRaymond Ribble, founder of SPHER, Inc. a leading SaaS-based compliance analytics solution and co-founder of Fusion Systems Co., Ltd. an international IT Consulting business with operations throughout Asia and across multiple industry verticals. He is active in multiple international businesses, having lived in Japan and mainland China for close to 20 years. He is active in numerous healthcare privacy groups such as HIMSS and MGMA, speaking at healthcare industry events, and works to contribute to the growing awareness of the need to identify internal and external malfeasance to prevent data breaches.

Ray’s career began as an aerospace engineer at Northrop Corporation, advancing into international financial systems consulting and solutions development across Asia for many of the worlds’ top investment banks. Ray’s firm was prominent in working with the HITECH Program serving over 2000 provider groups across Southern California in attesting to Meaningful Use and addressing the increasingly complex privacy and security mandates.

Be sure to view a replay of Ray’s webinar “Healthcare Cybersecurity Awareness Training.” You can also view his webinars, HIPAA Security Rule – How to Manage Adherence,Surviving an OCR Audit, as well as others, including podcasts. Check out our other recent educational resources on Cybersecurity.

Tags: Cybersecurity, employee training
Share this
  • Share on Facebook
  • Share on X
  • Share on LinkedIn
  • Share on Reddit
  • Share by Mail
https://1sthcc.com/wp-content/uploads/2021/06/healthcare-cybersecurity_ft.jpg 758 1200 Catherine Short https://1sthcc.com/wp-content/uploads/2022/10/1sthcc-logo-1024x378.jpg Catherine Short2021-06-15 16:14:022025-04-15 12:43:08Healthcare Cybersecurity Awareness Training, Q&A with Ray Ribble
You might also like
Data Privacy and Cyber Security – What’s New?
The Virtual HIPAA Privacy and Security Workshop 2022 on Nov 3, 2022 offers Multiple Learning Credits The Virtual HIPAA Privacy and Security Workshop 2022 on Nov 3, 2022 offers Multiple Learning Credits
RE-RELEASE Employee Snooping & Insider Threats
A Closer Look at the FTC and the Poaching of PHI
The Intersection Between HIPAA, Cybersecurity, & Fraud, Waste and Abuse The Intersection Between HIPAA, Cybersecurity, & Fraud, Waste and Abuse
happy-bday-HIPAA-featured Happy 25th Birthday HIPAA! Q&A with Rachel V. Rose

Subscribe to Weekly eNewsletter

Get the latest healthcare compliance updates straight to your inbox.

Subscribe to Newsletter

Recent Posts

  • OSHA Recordkeeping in Healthcare: Answers to Frequently Asked Questions
  • Naughty or Nice? The Rules of Giving and Receiving in Healthcare
  • fraud waste abuse healthcare compliance
    FWA in Healthcare: How to Respond Appropriately to Detected Offenses
  • Infographic: 6 Areas of Potential Liability for Healthcare Providers
    6 Areas of Potential Liability for Healthcare Providers
  • 5 Benefits of Automating Incident Reporting in Healthcare
  • Compliance Primer Series: Fraud, Waste and Abuse

 

First Healthcare Compliance is a division of Panacea Healthcare Solutions. Learn more

Subscribe

Get the latest healthcare compliance updates straight to your inbox.

Subscribe to Newsletter

Connect

Get started: Request Demo

Call: 1-888-54-FIRST

E-mail: Contact us

  • Link to Instagram
  • Link to Youtube
  • Link to Facebook
  • Link to LinkedIn
  • Link to X
© Copyright 2026 Panacea Healthcare Solutions, LLC | Disclaimer | Privacy Policy and Copyright Notice
Scroll to top Scroll to top Scroll to top

We and our third-party partners use cookies to improve and personalize your experience on the site and with our services in addition to delivering and reporting on ads. Please visit our Privacy Statement for more information. By continuing to browse the site, you are agreeing to our use of cookies. Read Privacy Statement.

OKDismiss

Cookie and Privacy Settings



How we use cookies

We may request cookies to be set on your device. We use cookies to let us know when you visit our websites, how you interact with us, to enrich your user experience, and to customize your relationship with our website.

Click on the different category headings to find out more. You can also change some of your preferences. Note that blocking some types of cookies may impact your experience on our websites and the services we are able to offer.

Essential Website Cookies

These cookies are strictly necessary to provide you with services available through our website and to use some of its features.

Because these cookies are strictly necessary to deliver the website, refusing them will have impact how our site functions. You always can block or delete cookies by changing your browser settings and force blocking all cookies on this website. But this will always prompt you to accept/refuse cookies when revisiting our site.

We fully respect if you want to refuse cookies but to avoid asking you again and again kindly allow us to store a cookie for that. You are free to opt out any time or opt in for other cookies to get a better experience. If you refuse cookies we will remove all set cookies in our domain.

We provide you with a list of stored cookies on your computer in our domain so you can check what we stored. Due to security reasons we are not able to show or modify cookies from other domains. You can check these in your browser security settings.

Other external services

We also use different external services like Google Webfonts, Google Maps, and external Video providers. Since these providers may collect personal data like your IP address we allow you to block them here. Please be aware that this might heavily reduce the functionality and appearance of our site. Changes will take effect once you reload the page.

Google Webfont Settings:

Google Map Settings:

Google reCaptcha Settings:

Vimeo and Youtube video embeds:

Privacy Policy

You can read about our cookies and privacy settings in detail on our Privacy Policy Page.

Privacy Policy and Copyright Notice
Accept settingsHide notification only