{"id":5462,"date":"2021-07-28T14:42:35","date_gmt":"2021-07-28T18:42:35","guid":{"rendered":"https:\/\/solutionsreview.com\/identity-management\/?p=5462"},"modified":"2021-07-28T14:42:35","modified_gmt":"2021-07-28T18:42:35","slug":"identity-management-lessons-from-the-uc-san-diego-health-attack","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/","title":{"rendered":"Identity Management Lessons from the UC San Diego Health Attack"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-4721\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg\" alt=\"Identity Management Lessons from the UC San Diego Health Attack\" width=\"800\" height=\"480\" srcset=\"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg 800w, https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity-300x180.jpg 300w, https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity-768x461.jpg 768w, https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity-450x270.jpg 450w, https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity-135x81.jpg 135w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><b><i>We share cybersecurity-expert delivered identity management lessons from the UC San Diego Health Attack.\u00a0<\/i><\/b><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">As we discussed in a <span style=\"text-decoration: underline\"><strong><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/uc-san-diego-health-phishing-attack-exposes-medical-data\/\" target=\"_blank\" rel=\"noopener\">previous article<\/a><\/strong><\/span>, the UC San Diego Health Attack has stirred a profound conversation among <span style=\"text-decoration: underline\"><strong><a href=\"https:\/\/solutionsreview.com\/identity-management\/get-a-free-identity-and-access-management-software-solutions-buyers-guide\/\" target=\"_blank\" rel=\"noopener\">cybersecurity<\/a><\/strong><\/span> experts on its impact and aftermath.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Part of that conversation involves <span style=\"text-decoration: underline\"><strong><a href=\"https:\/\/suggestionengine.solutionsreview.com\/buyer\/signup\" target=\"_blank\" rel=\"noopener\">identity management<\/a><\/strong><\/span> experts and their advice. Here are the key lessons we took away.\u00a0\u00a0<\/span><\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"iam-inject\" href=\"https:\/\/suggestionengine.solutionsreview.com\/buyer\/signup\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" title=\"\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2021\/02\/Identity_Suggestion_Engine_Horiz_800.gif\" alt=\"IAM Solution Suggestion Engine\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n<h2 style=\"text-align: justify\"><b>Identity Management Lessons from the UC San Diego Health Attack<\/b><\/h2>\n<h3 style=\"text-align: justify\"><b>Robert Prigge<\/b><\/h3>\n<p style=\"text-align: justify\"><i><span style=\"font-weight: 400\">Robert Prigge is CEO of <\/span><\/i><a href=\"https:\/\/www.jumio.com\/\" target=\"_blank\" rel=\"noopener\"><i><span style=\"font-weight: 400\">Jumio<\/span><\/i><\/a><i><span style=\"font-weight: 400\">.\u00a0<\/span><\/i><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">\u201cUC San Diego Health&#8217;s data breach was a result of unauthorized access through employee accounts after a phishing attack, highlighting how healthcare organizations have yet to implement proper security that can protect employee and patient identities. It&#8217;s highly likely that personally identifiable information was accessed or obtained in this breach, placing victims at risk of fraud or identity theft. Fraudsters can leverage the medical records, lab results, Social Security numbers, and government identification numbers to impersonate legitimate patients and commit insurance fraud, seek covered medical care, and refill unauthorized prescriptions. It&#8217;s also possible the exposed information is already circulating on the dark web &#8211; where it can command a high value since there&#8217;s more personal information in health records than any other electronic database. As the healthcare sector shifts toward telemedicine and remains a lucrative target for cyber-criminals, it&#8217;s critical that institutions trust their patient is who they claim to be. Leveraging biometric authentication (using a person&#8217;s unique human traits to verify identity) confirms patient identity, which allows healthcare organizations to approve or deny online accounts, appointment requests and attempted purchases while safeguarding employee email accounts against phishing attempts.\u201d<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Alicia Townsend<\/b><\/h3>\n<p style=\"text-align: justify\"><i><span style=\"font-weight: 400\">Alicia Townsend is a Technology Evangelist at <\/span><\/i><a href=\"https:\/\/www.onelogin.com\/\" target=\"_blank\" rel=\"noopener\"><i><span style=\"font-weight: 400\">OneLogin<\/span><\/i><\/a><i><span style=\"font-weight: 400\">.<\/span><\/i><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">\u201cYet again, another healthcare institution has become the victim of a phishing attack. Sadly, malicious actors are constantly trying to take advantage of employees in the healthcare industry in order to access such a rich source of patient personal information. The full extent of this particular breach has not yet been fully discovered, though first reports suggest that the bad actors were only able to access the email account of a few employees. While they did not seem to get full access to entire data stores of patient information, they did get access to personal information for a number of patients, everything from basic contact information to social security numbers to medical history.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">UC San Diego Health has stated that they have taken steps to enhance their security processes and procedures. We can only hope that includes requiring additional authentication factors when their users log in to access all resources, including email. But even they admit that they need the \u201ccommunity to remain alert to threats\u201d. We have stated it before and it needs to be stated again: healthcare institutions must implement security training for all of their users. Everyone needs to be educated on how to spot phishing attempts, how to keep their passwords secure, the importance of using additional authentication factors, and what to do in case they suspect an attack.\u201d<\/span><\/p>\n<p style=\"text-align: justify\"><div class=\"hr hr\"><\/div><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Thanks to these identity management experts for their time and comments on the UC San Diego Health Attack. For more, check out the <span style=\"text-decoration: underline\"><strong><a href=\"https:\/\/solutionsreview.com\/identity-management\/get-a-free-identity-and-access-management-software-solutions-buyers-guide\/\" target=\"_blank\" rel=\"noopener\">Identity Management Buyer\u2019s Guide<\/a><\/strong><\/span> or the <span style=\"text-decoration: underline\"><strong><a href=\"https:\/\/suggestionengine.solutionsreview.com\/buyer\/signup\" target=\"_blank\" rel=\"noopener\">Solutions Suggestion Engine<\/a><\/strong><\/span>.\u00a0<\/span><\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"iam-inject\" href=\"https:\/\/suggestionengine.solutionsreview.com\/buyer\/signup\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" title=\"\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2021\/02\/Identity_Suggestion_Engine_Horiz_800.gif\" alt=\"IAM Solution Suggestion Engine\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>We share cybersecurity-expert delivered identity management lessons from the UC San Diego Health Attack.\u00a0 As we discussed in a previous article, the UC San Diego Health Attack has stirred a profound conversation among cybersecurity experts on its impact and aftermath.\u00a0 Part of that conversation involves identity management experts and their advice. Here are the key [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":4721,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5,1],"tags":[142,1740,16,1204,76,425,1169,254,435,1741,1739],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Identity Management Lessons from the UC San Diego Health Attack<\/title>\n<meta name=\"description\" content=\"We share cybersecurity-expert delivered identity management lessons from the UC San Diego Health Attack.\u00a0Find out more here.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/\",\"name\":\"Identity Management Lessons from the UC San Diego Health Attack\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg\",\"datePublished\":\"2021-07-28T18:42:35+00:00\",\"dateModified\":\"2021-07-28T18:42:35+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"We share cybersecurity-expert delivered identity management lessons from the UC San Diego Health Attack.\u00a0Find out more here.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg\",\"width\":800,\"height\":480,\"caption\":\"Identity Management Lessons from the UC San Diego Health Attack\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/identity-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Identity Management Lessons from the UC San Diego Health Attack\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/\",\"name\":\"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services\",\"description\":\"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Identity Management Lessons from the UC San Diego Health Attack","description":"We share cybersecurity-expert delivered identity management lessons from the UC San Diego Health Attack.\u00a0Find out more here.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/","url":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/","name":"Identity Management Lessons from the UC San Diego Health Attack","isPartOf":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg","datePublished":"2021-07-28T18:42:35+00:00","dateModified":"2021-07-28T18:42:35+00:00","author":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"We share cybersecurity-expert delivered identity management lessons from the UC San Diego Health Attack.\u00a0Find out more here.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#primaryimage","url":"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg","contentUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/healthcare-identity.jpg","width":800,"height":480,"caption":"Identity Management Lessons from the UC San Diego Health Attack"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/identity-management\/identity-management-lessons-from-the-uc-san-diego-health-attack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/identity-management\/"},{"@type":"ListItem","position":2,"name":"Identity Management Lessons from the UC San Diego Health Attack"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/identity-management\/#website","url":"https:\/\/solutionsreview.com\/identity-management\/","name":"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services","description":"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/5462"}],"collection":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/comments?post=5462"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/5462\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media\/4721"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media?parent=5462"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/categories?post=5462"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/tags?post=5462"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}