Nguyen Xuan V, Petscavage-Thomas Jonelle M, Straus Christopher M, Ikuta Ichiro
Department of Radiology, The Ohio State University College of Medicine, 396 W. 12th Ave. Suite 486, Columbus, OH 43210 USA.
Department of Radiology, Penn State Hershey Medical Center, Hershey, Pennsylvania. 500 University Dr. HG300B, Hershey, PA 17033 USA.
Curr Probl Diagn Radiol. 2025 Mar-Apr;54(2):245-250. doi: 10.1067/j.cpradiol.2024.07.010. Epub 2024 Jul 9.
To improve awareness and understanding of cybersecurity threats to radiology practice and better equip healthcare practices to manage cybersecurity risks associated with medical imaging, this article reviews topics related to cybersecurity in healthcare, with emphasis on common vulnerabilities in radiology operations. This review is intended to assist radiologists and radiology administrators who are not information technology specialists to attain an updated overview of relevant cybersecurity concepts and concerns relevant to safe and effective practice of radiology and provides a succinct reference for individuals interested in learning about imaging-related vulnerabilities in healthcare settings. As cybersecurity incidents have become increasingly common in healthcare, we first review common cybersecurity threats in healthcare and provide updates on incidence of healthcare data breaches, with emphasis on the impact to radiology. Next, we discuss practical considerations on how to respond to a healthcare data breach, including notification and disclosure requirements, and elaborate on a variety of technical, organizational, and individual actions that can be adopted to minimize cybersecurity risks applicable to radiology professionals and administrators. While emphasis is placed on specific vulnerabilities within radiology workflow, many of the preventive or mitigating strategies are also relevant to cybersecurity within the larger digital healthcare arena. We anticipate that readers, upon completing this review article, will gain a better appreciation of cybersecurity issues relevant to radiology practice and be better equipped to mitigate cybersecurity risks associated with medical imaging.
为提高对放射学实践中网络安全威胁的认识和理解,并使医疗保健机构更好地应对与医学成像相关的网络安全风险,本文回顾了医疗保健领域中与网络安全相关的主题,重点关注放射学操作中的常见漏洞。本综述旨在帮助非信息技术专家的放射科医生和放射学管理人员全面了解与放射学安全有效实践相关的网络安全概念和问题,并为有兴趣了解医疗环境中成像相关漏洞的个人提供简要参考。由于网络安全事件在医疗保健领域日益普遍,我们首先回顾医疗保健领域常见的网络安全威胁,并提供医疗数据泄露发生率的最新情况,重点关注对放射学的影响。接下来,我们讨论应对医疗数据泄露的实际考虑因素,包括通知和披露要求,并详细阐述可采取的各种技术、组织和个人行动,以尽量减少适用于放射学专业人员和管理人员的网络安全风险。虽然重点是放射学工作流程中的特定漏洞,但许多预防或缓解策略在更大的数字医疗保健领域也与网络安全相关。我们预计,读者在读完这篇综述文章后,将更好地理解与放射学实践相关的网络安全问题,并更有能力降低与医学成像相关的网络安全风险。