Skip to content
MarketScale
‹ Back to IndustriesHealthcare

Healthcare Orgs Can Secure Their Health Data with Workforce & Regulatory Enhancements

Healthcare organizations face escalating cyber threats to patient data and must address both workforce shortfalls and evolving regulatory frameworks to strengthen their security posture. Robin Berthier, Ph.D. outlines how staffing gaps and insufficient compliance structures leave health data vulnerable. Combining targeted workforce development with updated regulations is presented as essential to protecting sensitive healthcare information.

This story was produced through MarketScale. See how Healthcare teams put it to work with Executive Thought Leadership.

Promoted content from Experts Talk on MarketScale.

By Robin Berthier, Ph.D. · Cybersecurity in HealthcareHealthcare TechnologiesNetwork PerceptionPatient Privacy
Share

Key takeaways

01

Staffing gaps in cybersecurity roles leave healthcare organizations exposed to data breaches and ransomware attacks.

02

Regulatory frameworks must evolve to keep pace with the increasingly sophisticated threat landscape targeting health data.

03

A combined approach addressing both workforce capacity and compliance requirements is critical for sustainable healthcare cybersecurity.

Get featured

Want to get featured in MarketScale Healthcare?

Create a free MarketScale workspace and get your company's expertise featured across our Healthcare coverage. No credit card, no demo required.

Request an invite

The healthcare industry faces a rising wave of cyberattacks, highlighting the critical urgency to fortify cyber defenses. These breaches threaten the integrity and availability of essential healthcare services and sensitive health data, intensifying the need for robust cybersecurity measures. This urgency is partly driven by the complex nature of healthcare technologies and the limited cybersecurity workforce capable of managing these challenges.

The healthcare industry faces a rising wave of cyberattacks, highlighting the critical urgency to fortify cyber defenses.

Given the high stakes of protecting sensitive health data, how can healthcare organizations better prepare to face these growing threats?

In a recent Expert's Talk episode, Robin Berthier, the CEO and co-founder of Network Perception shares his insights on the pressing need for robust cybersecurity defenses in the healthcare industry. He highlights the crucial role of strategic regulations, the importance of understanding the intricate healthcare IT landscape, and the need for a skilled cybersecurity workforce to implement effective protections.

Key takeaways:

  1. Regulation as a Catalyst: Without stringent regulations akin to those in other critical sectors, healthcare organizations may lack the motivation to align their resources adequately with cybersecurity needs.
  2. Visibility and Complexity: Gaining clear visibility over existing IT assets and understanding the intricate interactions between applications and equipment are crucial first steps toward effective cybersecurity.
  3. Workforce Challenges: The scarcity of skilled cybersecurity professionals within healthcare further complicates the implementation of best practices and sophisticated defense mechanisms.
  4. Board-Level Engagement: Recently, cybersecurity discussions have ascended to the board level in many organizations, signaling a shift towards more strategic and governed approaches.
  5. Risk Prioritization: With limited resources, healthcare providers must prioritize risks, focusing on the most critical areas that could impact patient safety and data integrity.
Video TranscriptExpand ↓

You know, it's I I don't see, out outside of really having regulation, I don't see a solution for making those resources more aligned with the need. I mean, we keep hearing those three problems from the organization we're working with. Like one is this greater sense of urgency around just gaining visibility over what we have. Second, to understand the the complexity. Like, you you mentioned, like, how complex those applications and equipment were interacting with each other. So it's it's really hard for an organization now to do just risk assessment on on top of that complexity. And then the third challenge is the limited workforce. You're right. Like, it's just one person often, and they don't have the resources or the staff to be able to just adopt the best practice cybersecurity solutions. So other than regulation, that's why I mentioned the TSFCE directives in the oil and gas pipeline and have experience on the electric side with the NERC SIP, which is the most punitive OT cybersecurity framework in the US. Like, if you don't comply, you you get fined up to one million dollar per day. But but without that big hammer, I just don't see, organizations having the the capacity to allocate more budget or or or Yeah. Interest to those those internal, internal fights. Yep. I agree fully. Yeah. And I I should say, you know, risk prioritization is always the name of the game, right, particularly for Sysco. They have limited resources and and many things they have to do for the business. So it's it's constantly a a juggernaut for sure. The good news there is that we are seeing I mean, we've seen a shift last year where that discussion, reached the the board level in any organization. I think the visibility on those breaches is helping. I was really pleased to see the new version of the NIST CSF really emphasizing governance, so putting responsibility at at the highest level in organization to to take cybersecurity seriously.

Experts Talk

Part of this channel

Experts Talk

Industry experts debate the ideas that drive B2B decisions.

Visit the channel

Your experts belong here

Every story in MarketScale Healthcare starts with a company putting its clinicians, service-line leaders, and field engineers on the record. Buyers are already reading this topic. The only question is whose experts they find.

Service-line buyers vet vendors quietly, and your clinicians become the proof they find while doing it.

Get your team featuredSee how it works15 minutes, straight to a calendar.

About the author

RB
Robin Berthier, Ph.D.

Follow Healthcare Insights

Get new expert content in your inbox.

Healthcare: are you visible to AI?

Before they reach out, Healthcare buyers ask AI engines which vendors to trust. See how AI describes your company today, and where competitors show up instead.

Free workspace

You just read one Healthcare expert. Your company is full of them.

This article was produced through MarketScale. The same platform turns your clinicians, service-line leaders, and field engineers into the articles, video, and social content Healthcare buyers are searching for. Create a free workspace and see it with your own people. No credit card, no demo required.

NPS +73 · 1,000+ creators · 38+ countries

What you get, free

Your own MarketScale Studio workspace
One video edit a month, on us
AI writing, editing, and publishing tools
In-platform coaching to learn the system

More Healthcare Insights

More nurses did not lift safety culture scores in a 205-hospital analysis

More nurses did not lift safety culture scores in a 205-hospital analysis

A 2026 analysis in the Journal of Hospital Management and Health Policy combined 2021–2022 HSOPC results with AHA, HCRIS, and AHRF data across 205 hospitals and reported that small increases in nurse and physician staffing lined up with slightly lower “percent positive” patient safety culture scores in several dimensions. According to the Journal of Healthcare Management abstract hosted on Ovid, the study described a 2% decrease in positive staffing perceptions with β=−0.02 per additional nurse FTE and a −0.01 change in perceived reporting of patient safety events per additional nurse, while additional physician staffing was associated with −0.01 changes in perceptions of communication openness and organizational learning, and joint ventures were associated with a −0.03 change in perceptions of management support for safety (all p<0.05). The operational read is that adding headcount by itself does not ensure stronger safety-culture signals; hospitals also need the workflows that turn observations into closed-loop fixes, from “just culture” reporting expectations to facilities work-order follow-through, as described by Sentara Health leaders in Chief Healthcare Executive and by Health Facilities Management’s environment-of-care guidance. For health system operators, the near-term consequence shows up in how HSOPC survey targets connect to leader scorecards, rounding programs, digital reporting tools, and joint-venture governance, especially where staffing growth is driven by complexity and handoffs.

  • 01If HSOPC “percent positive” scores are a board KPI, staffing increases can move in the opposite direction unless reporting and learning loops scale too. The study’s negative coefficients are small, but they signal a measurement risk during growth.
  • 02Facilities and clinical safety cultures converge in the same pipeline: observation, reporting, triage, work order, verification. HFM Magazine’s door-lock example is the same system problem as event reporting, it is throughput and closure, not awareness.
  • 03Joint ventures can add operational complexity that dilutes perceived management support for safety. That belongs in JV governance charters and integration playbooks, not only in finance models.

Sep 1, 2026

Smart ICU and ambient AI cut errors when they feed data and notes into the EMR

Smart ICU and ambient AI cut errors when they feed data and notes into the EMR

Two HIMSS26 APAC case studies point to the same operational lesson: hospitals are getting measurable gains from “smart ICU” device integration and ambient AI documentation only when those tools are tightly integrated into core clinical workflows. Pondok Indah Hospital Group in Indonesia reported reductions of up to 70% in ICU administrative errors and 40% in adverse drug reactions after integrating smart devices, according to Healthcare IT News. Sir H.N. Reliance Foundation Hospital in India reported ambient AI is now used for nearly 90% of progress notes and shift handovers across five live use cases on a single EMR-integrated platform, also reported by Healthcare IT News. New JAMA Network cardiovascular research adds a parallel signal on the clinical side, with AI-enabled acquisition and interpretation approaches moving into screening and triage workflows, which raises procurement questions about validation, interoperability, and change management at the bedside.

  • 01A useful benchmark is emerging for documentation automation: “nearly 90% of progress notes and shift handovers” on ambient AI when it is deployed as one EMR-integrated platform, not a set of point tools (Healthcare IT News).
  • 02The measurable ROI in ‘smart ICU’ programs shows up where operators feel pain: fewer administrative errors and medication-related events, not in abstract “digitization” metrics (Healthcare IT News reported up to 70% and 40% reductions, respectively).
  • 03For hospitals with multiple device vendors and fragmented documentation workflows, integration work, interfaces, identity, order context, and governance, is likely to consume more effort than model selection, so contracts and implementation plans should price integration explicitly.

Sep 1, 2026

Gartner says AI budgets are growing faster than the rules to control them

Gartner says AI budgets are growing faster than the rules to control them

Gartner’s late-August 2026 research points to a familiar operational pattern in enterprise AI: budgets are rising faster than the controls meant to keep costs and risk predictable. In a Aug. 26 press release, Gartner said AI spending by customer service leaders surged 38% even as overall service and support budgets rose 2%. Earlier, at Gartner’s March 2026 Data & Analytics Summit, Gartner analysts said only 44% of organizations had adopted financial guardrails or AI FinOps practices, a gap that becomes more painful as AI workloads scale. The practical takeaway for CIOs, customer service operations leaders, and data and analytics teams is to treat AI governance, cost attribution, and human escalation paths as procurement requirements, not after-the-fact fixes.

  • 01A useful benchmark for planning: Gartner pegs AI spend growth in customer service at 38% versus 2% budget growth overall, a mismatch that forces reallocation and harder ROI proof.
  • 02Only 44% of organizations have adopted AI FinOps-style guardrails, according to Gartner. If AI is moving into production, chargeback and consumption limits need to be designed into the rollout.
  • 03Gartner also forecasts spending on securing AI will hit $4.8 billion in 2027, signaling that AI security is becoming a standalone budget line rather than a feature bundled into existing platforms.

Sep 1, 2026

Explore More Healthcare Insights

Read more expert perspectives from across Healthcare.

Browse Healthcare Hub

About the Expert

RB
Robin Berthier, Ph.D.

CEO and Co-Founder at Network Perception

Robin Berthier, Ph.D. is the CEO and co-founder of Network Perception, a cybersecurity company focused on network security analysis and compliance for critical infrastructure. He holds a Ph.D. in computer science and has extensive research and industry experience in network security and intrusion detection. Berthier is a recognized expert in operational technology (OT) security and healthcare cybersecurity.

For B2B teams

Your experts could be publishing here

Stories like this one run on content MarketScale captures from real practitioners. See how your team's expertise becomes coverage in Healthcare and beyond.

Book a 15-minute demo

Or call us. No forms required. We pick up. 214-945-2512