2 Minute Drill: Insider Threats in Healthcare: Employee Recruitment Schemes with Drex DeFord
Drex examines the growing insider threat landscape in healthcare cybersecurity. The episode covers CrowdStrike's recent insider incident where screenshots were leaked to cybercriminals, new research showing 93% of organizations struggle to detect insider threats, and the Geisinger Health/Nuance $5 million settlement over improper data access. Drex also reveals how ransomware groups like Medusa are directly recruiting healthcare employees with financial incentives, highlighting that insider threats aren't just malicious employees—they're also your people being actively targeted through phishing and recruitment offers.Remember, Stay a Little Paranoid X: This Week Health LinkedIn: This Week Health Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
--------
2:44
--------
2:44
UnHack (the Podcast): Breaking Down Silos and Building Up Culture with Shawna Hofer
November 25, 2025: What if cybersecurity awareness training could be fun, like mixing bratwurst and flu shots? Shawna Hofer, CISO at St. Luke's Health System, shares how her team transformed security culture by meeting staff where they are—literally. From creating engaging one-minute videos featuring everyday healthcare workers to establishing a groundbreaking IT and cyber resiliency team that breaks down traditional silos, Shawna reveals why the best healthcare CISOs are expert translators and relationship builders. She also tackles the tough questions around AI governance, operational resilience in the wake of major industry incidents, and why cyber preparedness must extend beyond hospital walls to protect entire communities. Discover how collaboration and creativity are reshaping healthcare cybersecurity from the inside out.Key Points:03:28 Building a Cybersecurity Culture08:00 Operational Resilience and Incident Response15:58 AI Governance20:55 Promoting Diversity in Cybersecurity25:27 The Role of a Healthcare CISOX: This Week HealthLinkedIn: This Week HealthDonate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
--------
28:13
--------
28:13
Newsday: Merger Madness and Why Hospitals are Moving Back to On-Prem Data with Dave Dyell
November 24, 2025: Healthcare organizations are drowning in applications they can't even inventory, especially after mergers and acquisitions. But the real shock comes when they try to access archived data years later. Dave Dyell, Managing Partner at Innovative Consulting Group, reveals why cloud storage fees are forcing health systems to rethink their entire archiving strategy, particularly for medical imaging. With AI initiatives on the horizon, the way you archive data today determines whether you can afford to use it tomorrow. Learn why strategic planning for data archiving isn't optional anymore—it's the difference between controlling costs and watching them spiral out of control.Key Points:03:12 Archiving and Data Management09:30 On-Prem vs Cloud Storage18:33 Future Strategies and ConclusionX: This Week HealthLinkedIn: This Week HealthDonate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
--------
22:10
--------
22:10
Newsday: Doing More with Less and Budgeting Wake-Up Calls with Bill Willis
November 21, 2025: What if your organization could reclaim millions of dollars just by rethinking processes you already have in place? Bill Willis, CTO of IDMWORKS, discusses the hidden costs plaguing healthcare IT, from runaway cloud storage bills to the shocking economics of password resets. Discover why identity management isn't just a security issue but a massive financial opportunity, how HR-IT integration is transforming onboarding from a week-long wait to day-one productivity, and why the cybersecurity crisis isn't really about technology at all. With real-world examples showing $2.5M to $5M in annual savings, this episode delivers the business case healthcare leaders need to drive change in 2026.Key Points:01:06 Boston City Tour Highlights02:36 Discussion on AI and Cloud Costs10:05 Cybersecurity and Identity Management19:12 Operational Efficiency and Cost SavingsX: This Week HealthLinkedIn: This Week HealthDonate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
Cybercriminals are escalating their tactics by deploying AI-enabled malware that adapts in real-time. Google Cloud and Anthropic threat intelligence reports reveal attackers using tools like Prompt Flux malware to contact AI APIs mid-attack, rewriting code to evade detection. Threat actors are bypassing AI safety guardrails through social engineering, tricking models into providing malicious capabilities. The underground cybercrime market now offers sophisticated multifunction tools, lowering barriers for less experienced criminals. Healthcare defenders must prepare for adaptive malware that uses generative AI to persist and survive longer inside target environments.Remember, Stay a Little Paranoid X: This Week Health LinkedIn: This Week Health Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
Cyber-safety is patient-safety. On “UnHack,” Drex DeFord, veteran healthcare CIO and infused strategist, breaks down the biggest cybersecurity and risk challenges facing healthcare today. Drex and expert guests explore what happened, why it matters, and how to build real-world resilience. The show's a mostly plain-English, mostly non-technical discussion that dives into the people, process, and technology making healthcare more secure; and it's NOT just for cyber-professionals; it’s for everyone in a healthcare organization, because modern cybersecurity is a team-sport.