Skip to content
MarketScale
‹ Back to IndustriesHealthcare

Healthcare Orgs Can Secure Their Health Data with Workforce & Regulatory Enhancements

Healthcare organizations face escalating cyber threats to patient data and must address both workforce shortfalls and evolving regulatory frameworks to strengthen their security posture. Robin Berthier, Ph.D. outlines how staffing gaps and insufficient compliance structures leave health data vulnerable. Combining targeted workforce development with updated regulations is presented as essential to protecting sensitive healthcare information.

This story was produced through MarketScale. See how Healthcare teams put it to work with Executive Thought Leadership.

Promoted content from Experts Talk on MarketScale.

By Robin Berthier, Ph.D. · Cybersecurity in HealthcareHealthcare TechnologiesNetwork PerceptionPatient Privacy
Share

Key takeaways

01

Staffing gaps in cybersecurity roles leave healthcare organizations exposed to data breaches and ransomware attacks.

02

Regulatory frameworks must evolve to keep pace with the increasingly sophisticated threat landscape targeting health data.

03

A combined approach addressing both workforce capacity and compliance requirements is critical for sustainable healthcare cybersecurity.

Get featured

Want to get featured in MarketScale Healthcare?

Create a free MarketScale workspace and get your company's expertise featured across our Healthcare coverage. No credit card, no demo required.

Start free

The healthcare industry faces a rising wave of cyberattacks, highlighting the critical urgency to fortify cyber defenses. These breaches threaten the integrity and availability of essential healthcare services and sensitive health data, intensifying the need for robust cybersecurity measures. This urgency is partly driven by the complex nature of healthcare technologies and the limited cybersecurity workforce capable of managing these challenges.

The healthcare industry faces a rising wave of cyberattacks, highlighting the critical urgency to fortify cyber defenses.

Given the high stakes of protecting sensitive health data, how can healthcare organizations better prepare to face these growing threats?

In a recent Expert's Talk episode, Robin Berthier, the CEO and co-founder of Network Perception shares his insights on the pressing need for robust cybersecurity defenses in the healthcare industry. He highlights the crucial role of strategic regulations, the importance of understanding the intricate healthcare IT landscape, and the need for a skilled cybersecurity workforce to implement effective protections.

Key takeaways:

  1. Regulation as a Catalyst: Without stringent regulations akin to those in other critical sectors, healthcare organizations may lack the motivation to align their resources adequately with cybersecurity needs.
  2. Visibility and Complexity: Gaining clear visibility over existing IT assets and understanding the intricate interactions between applications and equipment are crucial first steps toward effective cybersecurity.
  3. Workforce Challenges: The scarcity of skilled cybersecurity professionals within healthcare further complicates the implementation of best practices and sophisticated defense mechanisms.
  4. Board-Level Engagement: Recently, cybersecurity discussions have ascended to the board level in many organizations, signaling a shift towards more strategic and governed approaches.
  5. Risk Prioritization: With limited resources, healthcare providers must prioritize risks, focusing on the most critical areas that could impact patient safety and data integrity.
Video TranscriptExpand ↓

You know, it's I I don't see, out outside of really having regulation, I don't see a solution for making those resources more aligned with the need. I mean, we keep hearing those three problems from the organization we're working with. Like one is this greater sense of urgency around just gaining visibility over what we have. Second, to understand the the complexity. Like, you you mentioned, like, how complex those applications and equipment were interacting with each other. So it's it's really hard for an organization now to do just risk assessment on on top of that complexity. And then the third challenge is the limited workforce. You're right. Like, it's just one person often, and they don't have the resources or the staff to be able to just adopt the best practice cybersecurity solutions. So other than regulation, that's why I mentioned the TSFCE directives in the oil and gas pipeline and have experience on the electric side with the NERC SIP, which is the most punitive OT cybersecurity framework in the US. Like, if you don't comply, you you get fined up to one million dollar per day. But but without that big hammer, I just don't see, organizations having the the capacity to allocate more budget or or or Yeah. Interest to those those internal, internal fights. Yep. I agree fully. Yeah. And I I should say, you know, risk prioritization is always the name of the game, right, particularly for Sysco. They have limited resources and and many things they have to do for the business. So it's it's constantly a a juggernaut for sure. The good news there is that we are seeing I mean, we've seen a shift last year where that discussion, reached the the board level in any organization. I think the visibility on those breaches is helping. I was really pleased to see the new version of the NIST CSF really emphasizing governance, so putting responsibility at at the highest level in organization to to take cybersecurity seriously.

Experts Talk

Part of this channel

Experts Talk

Industry experts debate the ideas that drive B2B decisions.

Visit the channel

Your experts belong here

Every story in MarketScale Healthcare starts with a company putting its clinicians, service-line leaders, and field engineers on the record. Buyers are already reading this topic. The only question is whose experts they find.

Service-line buyers vet vendors quietly, and your clinicians become the proof they find while doing it.

Get your team featuredSee how it works15 minutes, straight to a calendar.

About the author

RB
Robin Berthier, Ph.D.

Follow Healthcare Insights

Get new expert content in your inbox.

Healthcare: are you visible to AI?

Before they reach out, Healthcare buyers ask AI engines which vendors to trust. Explore how your experts, customers, and partners can become useful content for buyers and AI search.

Free plan

You just read one Healthcare expert. Your company is full of them.

This article was produced through MarketScale. The same platform turns your clinicians, service-line leaders, and field engineers into the articles, video, and social content Healthcare buyers are searching for. Create a free workspace and see it with your own people. No credit card, no demo required.

NPS +73 · 1,000+ creators · 38+ countries

What you get, free

Your own MarketScale workspace, up to 10 people
One professional video edit a month for qualifying companies
Media requests to your crowd, remote recording, AI writing tools
$0, no credit card, nothing that expires

More Healthcare Insights

Health systems are partnering up without changing who owns the hospital

Health systems are partnering up without changing who owns the hospital

Health systems are choosing alliances over mergers, per a July McDermott Will & Schulte analysis and four July deals tracked by Becker's Hospital Review. St. Christopher's, Nemours, Jefferson and Temple signed a nonbinding alliance letter; Palomar UC San Diego Health launched July 1. Ownership stays put; governance, purchasing and outpatient investment absorb the change.

  • 01In an alliance, the contract does the integrating that an org chart does in a merger: McDermott Will & Schulte says governance design, exclusivity, antitrust review, community commitments and exit rights all have to be settled before signing.
  • 02Purchasing is now explicitly on the table in at least one no-ownership deal, the St. Peter's Health and Billings Clinic-Logan Health talks in Montana, which means shared supply contracts can arrive without a change of control.

Sep 19, 2026

Telemedicine in eye care stops at the retinal scan unless imaging moves home

Telemedicine in eye care stops at the retinal scan unless imaging moves home

An Ophthalmology Times commentary by T.Y. Alvin Liu, Ferdinand Hui and Phillip Phan sorts eye patients into three telemedicine tiers by clinical need. Patients needing regular OCT scans benefit less unless a home device can send the image. Video tools already sit inside Epic and Cerner; the deciding purchase for retina clinics is the imaging device in the patient's living room.

  • 01The dividing line for eye telemedicine is imaging, not video: patients who need regular OCT scans benefit less from remote visits unless a device at home can send the scan, so a video license alone shifts few of those encounters.
  • 02The provider-side requirement, a HIPAA-compliant secured video platform, was already built into Epic and Cerner by 2020; the patient-side requirements (1.5 MB up and down bandwidth, a quiet private room, comfort with the technology) sit outside the health system's control and are the ones worth screening for at scheduling.
  • 03Self-administered home color fundus photography for tracking non-proliferative diabetic retinopathy was named as the nearer route into retina telemedicine; home OCT for wet AMD is the harder gate and the device to watch.

Sep 19, 2026

Value-based care reaches a quarter of revenue at 30% of surveyed health organizations

Value-based care reaches a quarter of revenue at 30% of surveyed health organizations

Wolters Kluwer Health argues value-based care software is judged on whether customers hit incentive thresholds and avoid penalties. A Fierce Healthcare-reported survey it cites puts value-based care at a quarter or more of revenue for 30% of organizations. The analysis is a vendor publication that ends by pitching its own UpToDate Connect API.

  • 01The sharper question for any population health or care coordination platform is whether it changes what a clinician does at the moment of decision, or only reports afterward what happened. Wolters Kluwer's reading of the evidence is that many platforms still struggle with the first.
  • 02Vendors selling into value-based contracts now face a build-or-license decision on clinical content, because Wolters Kluwer names current, trusted content, consistent clinician adoption across sites, and a traceable link from guidance to quality metrics as the three hard problems.

Sep 18, 2026

Explore More Healthcare Insights

Read more expert perspectives from across Healthcare.

Browse Healthcare Hub

About the Expert

RB
Robin Berthier, Ph.D.

CEO and Co-Founder at Network Perception

Robin Berthier, Ph.D. is the CEO and co-founder of Network Perception, a cybersecurity company focused on network security analysis and compliance for critical infrastructure. He holds a Ph.D. in computer science and has extensive research and industry experience in network security and intrusion detection. Berthier is a recognized expert in operational technology (OT) security and healthcare cybersecurity.

For B2B teams

Your experts could be publishing here

Stories like this one run on content MarketScale captures from real practitioners. See how your team's expertise becomes coverage in Healthcare and beyond.

Book a 15-minute demo

Or call us. No forms required. We pick up. 214-945-2512