Georgia Hospital Deploys Strong Authentication Solution For Remote Access

To comply with HIPAA regulations, the Georgia-based Gwinnett Medical Center already was leveraging two-factor authentication via hardware tokens in order to protect patient files, sensitive medical data and clinical information.

The solution, however, was cost-prohibitive to deploy to a wider audience and cumbersome for the medical staff to use. To address these concerns, Gwinnett Medical Center (GMC) turned to Entrust Inc. and the Entrust IdentityGuard versatile authentication platform, a cornerstone of a layered security approach.

"From a cost perspective, it was just hard to top the versatility and strength of the Entrust IdentityGuard authentication solution, but the usability for our staff members really put the Entrust solution over the top," said Rick Allen, IT director at Gwinnett Medical Center. "We now are able to save money across the board and deploy strong enterprise authentication for a larger group of users, and the employees can just carry the grid cards with their ID badges, which makes them much easier to keep track of than a key-fob token. In addition, the platform supports a wide array of authenticators that, in the future, can help us secure a variety of applications that also house sensitive patient information."

Facilitated by trusted partner PossibleNOW, Entrust IdentityGuard with one of its innovative authentication capabilities, grid cards is now used to authenticate GMC doctors and staff who wish to remotely access the corporate network via SSL VPN. Gwinnett will initially deploy grid cards to be deployed to 1,500 current users, who are being migrated to the new system as their current tokens expire. The solution may be expanded to secure as many as 3,000 users in the future.

"The importance of protecting sensitive patient information is obvious, but Gwinnett Medical Center should be applauded for implementing an easier, more cost-effective authentication platform to assist in their compliance with regulatory requirements," said Entrust chairman, president and CEO Bill Conner. "Not only are they solving this current pain point and reducing cost, they're implementing a comprehensive versatile authentication platform with capabilities to help address a variety of security challenges that they may experience in the future."

Entrust IdentityGuard's gird card is a secure and simple form factor that is easily stored, carried and produced. In addition, PossibleNOW created a custom card-production application that allows the hospital to easily print, distribute and manage the card-production process in-house, helping to further reduce cost and streamline protocol. The Atlanta-based security vendor provides consulting services and designs, develops and implements online applications.

Gwinnett Medical Center also plans to leverage the Entrust versatile authentication platform to help secure access to a Web-based physician portal application.

Entrust IdentityGuard enables organizations to layer security -- according to access requirements or the risk of a given transaction -- across diverse users and applications. The platform's authentication options include username and password, IP-geolocation, machine/device, questions and answers, out-of- band one-time passcode (delivered via voice, SMS or e-mail), grid cards and a range of one-time-passcode tokens. Entrust IdentityGuard also provides multiple methods of supporting mutual authentication, including picture and caption replay.

With a flagship facility in Lawrenceville, Ga., Gwinnett Medical Center is a not-for-profit healthcare network that provides an array of high-quality services and facilities to both Lawrenceville and Duluth, which anchor the Gwinnett region in Georgia. Tracing its heritage back more than 60 years, the Gwinnett Medical Center includes three hospitals plus additional supporting medical facilities, which are serviced by more than 4,300 employees and 800 affiliated physicians. In 2007, GMC provided care to more than 400,000 patients.

Featured

  • New Report Reveals Top Trends Transforming Access Controller Technology

    Mercury Security, a provider in access control hardware and open platform solutions, has published its Trends in Access Controllers Report, based on a survey of over 450 security professionals across North America and Europe. The findings highlight the controller’s vital role in a physical access control system (PACS), where the device not only enforces access policies but also connects with readers to verify user credentials—ranging from ID badges to biometrics and mobile identities. With 72% of respondents identifying the controller as a critical or important factor in PACS design, the report underscores how the choice of controller platform has become a strategic decision for today’s security leaders. Read Now

  • Overwhelming Majority of CISOs Anticipate Surge in Cyber Attacks Over the Next Three Years

    An overwhelming 98% of chief information security officers (CISOs) expect a surge in cyber attacks over the next three years as organizations face an increasingly complex and artificial intelligence (AI)-driven digital threat landscape. This is according to new research conducted among 300 CISOs, chief information officers (CIOs), and senior IT professionals by CSC1, the leading provider of enterprise-class domain and domain name system (DNS) security. Read Now

  • ASIS International Introduces New ANSI-Approved Investigations Standard

    • Guard Services
  • Cloud Security Alliance Brings AI-Assisted Auditing to Cloud Computing

    The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today introduced an innovative addition to its suite of Security, Trust, Assurance and Risk (STAR) Registry assessments with the launch of Valid-AI-ted, an AI-powered, automated validation system. The new tool provides an automated quality check of assurance information of STAR Level 1 self-assessments using state-of-the-art LLM technology. Read Now

  • Report: Nearly 1 in 5 Healthcare Leaders Say Cyberattacks Have Impacted Patient Care

    Omega Systems, a provider of managed IT and security services, today released new research that reveals the growing impact of cybersecurity challenges on leading healthcare organizations and patient safety. According to the 2025 Healthcare IT Landscape Report, 19% of healthcare leaders say a cyberattack has already disrupted patient care, and more than half (52%) believe a fatal cyber-related incident is inevitable within the next five years. Read Now

New Products

  • FEP GameChanger

    FEP GameChanger

    Paige Datacom Solutions Introduces Important and Innovative Cabling Products GameChanger Cable, a proven and patented solution that significantly exceeds the reach of traditional category cable will now have a FEP/FEP construction.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions.