The study surveyed 1,000 adults in the U.S. to determine customer churn rates following data breaches. HIPAA requires hospitals to notified affected patients no later than 60 days from discovery. However, patients want communication much sooner.
According to the survey, 73 percent of patients expect to be alerted of a security incident within 24 hours of the breach being discovered. If notified early, patients tend to be more forgiving. Around 90 percent said they would have lenience if they knew that the organization had a plan in place for communicating with patients.
Not all hospitals, health systems and healthcare organizations have communication plans in place. In another Experian study, 34 percent of organizations said their data breach response plan doesn’t include customer notification.
To read more, click here.
More articles on cybersecurity:
Allegheny Health Network warns patients of ‘phone number spoofing’
MUSC Health nurse posted unauthorized photo of infant patient on social media
14 healthcare privacy incidents in August
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.