OCR Presents to MUSC, British Airways Hack, and Executing DR/BC




InfoSec ICU show

Summary: Steve and Gerry cover Health and Human Services Office of Civil Rights (HHS OCR) briefing presented to MUSC recently and discuss the clarification it brought with it. They cover the details of the recent British Airways hacked that compromised 380,000 individuals credit card information. Given the impending Hurricane Florence, the guys refresh on Disaster Recovery and Business Continuity Planning.<br> <a href="https://podcast.musc.edu/podcast/infosec/e40-infosecicu/" target="_blank" rel="noopener">Show Notes</a><br> <br> Resources:<br> HHS OCR Guidance –&gt; HIPAA for App Developers<br> <a href="https://hipaaqsportal.hhs.gov/" target="_blank" rel="noopener">https://hipaaqsportal.hhs.gov/</a><br> British Airways Hack<br> <a href="https://www.riskiq.com/blog/labs/magecart-british-airways-breach/" target="_blank" rel="noopener">https://www.riskiq.com/blog/labs/magecart-british-airways-breach/</a><br> DR / BCP<br> NIST 800-34 r1<br> <a href="https://nvlpubs.nist.gov/nistpubs/legacy/sp/nistspecialpublication800-34r1.pdf" target="_blank" rel="noopener">https://nvlpubs.nist.gov/nistpubs/legacy/sp/nistspecialpublication800-34r1.pdf</a><br> Tool to assist in determining disclosures for emergency situations: <br> <a href="https://www.hhs.gov/sites/default/files/ocr/privacy/hipaa/understanding/special/emergency/emergencyprepdisclose.pdf" target="_blank" rel="noopener">https://www.hhs.gov/sites/default/files/ocr/privacy/hipaa/understanding/special/emergency/emergencyprepdisclose.pdf</a><br>  <br>  <br> One Cool Things<br> Gerald Auger – Seeking Research Participants!<br> <a href="https://www.linkedin.com/feed/update/urn:li:activity:6445309181837873152" target="_blank" rel="noopener">https://www.linkedin.com/feed/update/urn:li:activity:6445309181837873152</a><br> <br> Contact<br> Email <a href="mailto:infosecicu@musc.edu">infosecicu@musc.edu</a><br> Twitter:<br> <br> * <a href="https://twitter.com/Gerald_Auger" target="_blank" rel="noopener">Gerry Auger (@Gerald_Auger)</a><br> * <a href="https://twitter.com/sgcardinal" target="_blank" rel="noopener">Steven Cardinal (@sgcardinal)</a><br> <br>