DEFENDING AGAINST DIGITAL THREATS
Recent cyber-attacks have highlighted the vulnerability of the pharmacy industry to malicious hackers.
payroll data in the ‘MOVEit / Zellis Hack’, is a reminder of the importance of implementing and maintaining robust cybersecurity measures both within our individual businesses as well as across the wider pharmaceutical and healthcare industry.
I
As pharmacists, entrusted with sensitive and personal customer data, it is important for us to be continually aware of the practical steps we can take to protect our businesses and customers.
Implications of data breaches for pharmacies The pharmaceutical industry is a major target for cyberattacks because it collects and stores a large amount of sensitive patient data. Cyberattacks can have a significant impact on patients, including: • Disruption of access to medication: If a cyberattack takes down a pharmacy's computer systems, patients may not be able to access their medication.
• Data breaches: If a cyberattack results in a data breach, patient information may be stolen, which could lead to identity theft or other problems.
• Ransomware attacks: If a cyberattack results in a ransomware attack, the pharmacy may be forced to pay a ransom to regain access to its systems. This could lead to financial losses for the pharmacy and could also disrupt patient care.
Cybersecurity and GDPR Cybersecurity plays a crucial role in meeting the requirements of the General Data Protection Regulation (GDPR) for pharmacists. Key impacts of cybersecurity on GDPR compliance include: Data Protection & Security; Breach Notification (to authorities and individuals affected); Data Subject Rights; Privacy by Design Principles; Data Processing Agreements; Secure Data Transfer Controls; and Data Retention and Disposal Procedures. With significant fines for Pharmacy Owners (data ‘Controllers’), for non-compliance, the implementation of robust cybersecurity measures, is a critical consideration for pharmacy owners and staff.
The growing cybersecurity threat landscape There is a saying in the cybersecurity world that ‘Hackers don’t hack systems, they hack people’. Cybercriminals are becoming increasingly
18
scottishpharmacist.com
t was revealed in June 2023 that the payroll information for many firms, including Boots, was compromised. This theft of employees’
Page 1 |
Page 2 |
Page 3 |
Page 4 |
Page 5 |
Page 6 |
Page 7 |
Page 8 |
Page 9 |
Page 10 |
Page 11 |
Page 12 |
Page 13 |
Page 14 |
Page 15 |
Page 16 |
Page 17 |
Page 18 |
Page 19 |
Page 20 |
Page 21 |
Page 22 |
Page 23 |
Page 24 |
Page 25 |
Page 26 |
Page 27 |
Page 28 |
Page 29 |
Page 30 |
Page 31 |
Page 32 |
Page 33 |
Page 34 |
Page 35 |
Page 36 |
Page 37 |
Page 38 |
Page 39 |
Page 40 |
Page 41 |
Page 42 |
Page 43 |
Page 44 |
Page 45 |
Page 46 |
Page 47 |
Page 48