Survey: Half of Americans Concerned That Electronic Health Records Will Negatively Impact Privacy

CDW Healthcare, part of the public sector subsidiary of CDW LLC, recently announced the results of a national survey on patient perceptions of electronic health records (EHRs) and the security of personal health information (PHI).

The report, “Elevated Heart Rates:  EHR and IT Security,” found that while patients trust their doctors to protect their information, 49 percent believe that EHRs will have a negative impact on the privacy of their PHI and health data.

As healthcare organizations transition to EHRs, they will be responsible for maintaining and protecting a significant amount of personal data electronically.  According to the survey, patients not only require that PHI be held securely, but also believe that healthcare organizations are responsible for protecting financial information (86 percent), personally identifiable information (93 percent) and any information provided about a patient’s family (94 percent).

“The new era of EHR brings with it a whole new set of requirements for healthcare organizations -- particularly in the area of IT security,” said Bob Rossi, vice president of CDW Healthcare.  “Digital files are not inherently less secure than paper files, but they do require a completely different set of technologies, processes and internal policies for protection.”

In fact, recent research from CDW Healthcare indicates that many physician practices have not yet prioritized IT security.  According to CDW Healthcare’s Physician Practice EHR Price Tag, 30 percent of physician practices report that they lack basic anti-virus software and 34 percent report that they do not use network firewalls.  Both elements are considered basic steps in developing a minimum IT security profile.

According to the U.S. Department of Health and Human Services, patients should expect significant benefits from the PHI included in EHRs, including:

  • The reduction of adverse drug events, medical errors and redundant tests and procedures when used in conjunction with e-prescribing.
  • The regular use of preventive services such as health screenings, which can help reduce health care costs.
  • Improved communication between patients and providers, giving patients better access to timely information.
  • The reduction of office waiting time by improving office efficiency.

Both the Health Insurance Portability and Accountability Act (HIPAA) of 1996 and the Health Information Technology for Economic and Clinical Health (HITECH) Act set standards for protecting PHI and create penalties for any violations.  Beyond those formal penalties, however, patients may respond to any breach of trust with a changed business relationship. 

For survey respondents who were notified of a breach of their personal data from any business or organization in the past, 33 percent changed their relationship with the offending organization, including 9 percent that severed the relationship, 12 percent that reduced spending and 12 percent that no longer trust that organization.

Ultimately, survey respondents put responsibility for the protection of their information directly on physician practices.  When asked who they hold primarily responsible for the privacy and security of their health information, 84 percent of respondents cited either a staff member at the doctors’ office by role, or the medical practice as a whole.

“For physician practices, IT security must be a primary part of any EHR,” said Rossi.  “Right now, patients trust their doctors more than anyone else to protect their personal information.  But like any relationship based upon trust, even one breach can fundamentally change the dynamic.”

CDW Healthcare conducted a survey of 1,000 respondents across the United States from January 24 to January 31.  The age and gender distribution of the survey sample match that of the overall U.S. population.  All survey respondents had been to both a doctors’ office and hospital/outpatient clinic in the previous 18 months.

A full copy of CDW Healthcare’s Elevated Heart Rates:  EHR and IT Security Report is available at http://www.cdw.com/HeartRates

 

Featured

  • 12 Commercial Crime Sites to Do Your Research

    12 Commercial Crime Sites to Do Your Research

    Understanding crime statistics in your industry and area is crucial for making important decisions about your security budget. With so much information out there, how can you know which statistics to trust? Read Now

  • Boosting Safety and Efficiency

    Boosting Safety and Efficiency

    In alignment with the state of Mississippi’s mission of “Empowering Mississippi citizens to stay connected and engaged with their government,” Salient's CompleteView VMS is being installed throughout more than 150 state boards, commissions and agencies in order to ensure safety for thousands of constituents who access state services daily. Read Now

  • Live From GSX: Post-Show Review

    Live From GSX: Post-Show Review

    This year’s Live From GSX program was a rousing success! Again, we’d like to thank our partners, and IPVideo, for working with us and letting us broadcast their solutions to the industry. You can follow our Live From GSX 2023 page to keep up with post-show developments and announcements. And if you’re interested in working with us in 2024, please don’t hesitate to ask about our Live From programs for ISC West in March or next year’s GSX. Read Now

    • Industry Events
    • GSX
  • People Say the Funniest Things

    People Say the Funniest Things

    By all accounts, GSX version 2023 was completely successful. Apparently, there were plenty of mix-ups with the airlines and getting aircraft from the East Coast into Big D. I am all ears when I am in a gathering of people. You never know when a nugget of information might flip out. Read Now

    • Industry Events
    • GSX

Featured Cybersecurity

Webinars

New Products

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions. 3

  • PE80 Series

    PE80 Series by SARGENT / ED4000/PED5000 Series by Corbin Russwin

    ASSA ABLOY, a global leader in access solutions, has announced the launch of two next generation exit devices from long-standing leaders in the premium exit device market: the PE80 Series by SARGENT and the PED4000/PED5000 Series by Corbin Russwin. These new exit devices boast industry-first features that are specifically designed to provide enhanced safety, security and convenience, setting new standards for exit solutions. The SARGENT PE80 and Corbin Russwin PED4000/PED5000 Series exit devices are engineered to meet the ever-evolving needs of modern buildings. Featuring the high strength, security and durability that ASSA ABLOY is known for, the new exit devices deliver several innovative, industry-first features in addition to elegant design finishes for every opening. 3

  • QCS7230 System-on-Chip (SoC)

    QCS7230 System-on-Chip (SoC)

    The latest Qualcomm® Vision Intelligence Platform offers next-generation smart camera IoT solutions to improve safety and security across enterprises, cities and spaces. The Vision Intelligence Platform was expanded in March 2022 with the introduction of the QCS7230 System-on-Chip (SoC), which delivers superior artificial intelligence (AI) inferencing at the edge. 3