Document Type
Conference Paper
Publication Date
2025
DOI
10.34190/iccws.20.1.3374
Publication Title
Proceedings of the 20th International Conference on Cyber Warfare and Security (ICCWS 2025)
Pages
659-667
Conference Name
20th International Conference on Cyber Warfare and Security (ICCWS 2025), 28-29 March 2025, Williamsburg, Virginia
Abstract
Healthcare systems face unprecedented security and privacy challenges due to increasing digitization and interconnectedness. This paper provides a comprehensive analysis of these challenges by examining various cyberattacks, defensive mechanisms, and governance frameworks within modern healthcare infrastructure. The research systematically categorizes prevalent security threats, such as ransomware, insider threats, and data breaches, identifying vulnerabilities specific to healthcare systems. Furthermore, the study evaluates current defensive strategies, including encryption techniques, access control systems, and intrusion detection tools, assessing their effectiveness against complex cyber threats. A key focus is placed on governance structures and their role in cybersecurity resilience. The research explores how regulatory compliance, stakeholder management, and risk mitigation frameworks impact the security and privacy of healthcare systems. The study highlights the complexity of managing healthcare environments, particularly where sensitive patient data is at risk due to integration across electronic health records (EHRs), medical devices, and communication networks. Governance is shown to be critical not only in incident response but also in ensuring that security policies and defensive measures are effectively implemented and monitored. By integrating threat analysis with governance evaluation, the research provides systems framework aimed at strengthening healthcare cybersecurity paradigm. This framework is intented to guide policymakers, healthcare adminstrators, and security professionals in enhancing defense mechanisms and developing governance strategies that ensure long-term system resilience. Ultimately, the objective of this research is to contribute to the broader discourse on cybersecurity in healthcare, emphasizing the need for robust frameworks that balance operational efficiency with stringent security requirements. This paper is relevant to the fields of cyber warfare and defense, providing critical insights into the vulnerabilities and defense mechanisms specific to healthcare, a sector increasingly targeted by cyber adversaries. The recommendations aim to improve the overall security posture of healthcare systems globally, aligning with the objectives of securing national critical infrastructure.
Rights
© 2025 The Authors.
This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International (CC BY-NC-ND 4.0) License.
ORCID
0000-0003-2824-4528 (Alla), 0009-0009-1889-6427 (Bheesetty)
Original Publication Citation
Alla, S., Komaragirl, S. G., Duvall, T., Karahan, S., Bheesetty, N., & Chattu, V. K. (2025). A governance-centric framework for strengthening healthcare cybersecurity: A systems perspective. In S. J. Blackmon & S. Karahan (Eds.), Proceedings of the 20th International Conference on Cyber Warfare and Security (ICCWS 2025) (pp. 659-667). Academic Conferences International Limited.
Repository Citation
Alla, Sujatha; Komaragiri, Sai Gireesh; Duvall, Teresa; Karahan, Satluk; Bheesetty, Nagesh; and Chattu, Vijay Kumar, "A Governance-Centric Framework for Strengthening Healthcare Cybersecurity: A Systems Perspective" (2025). Engineering Management & Systems Engineering Faculty Publications. 281.
https://digitalcommons.odu.edu/emse_fac_pubs/281
Included in
Cybersecurity Commons, Health and Medical Administration Commons, Health Information Technology Commons, Information Security Commons, Risk Analysis Commons
Comments
The DOI to this conference paper, https://doi.org/10.34190/iccws.20.1.3374, is non-functional and a landing page for this work has not been developed by the publisher.