Health Systems & Cyberattacks: A Growing Threat
- As cyber threats intensify, healthcare IT leaders are emphasizing the need for robust cyber resilience strategies. Experts at the ViVe 2025 Conference highlighted that effective preparation, clear communication,...
- Anahi Santiago, chief information security officer at ChristianaCare, noted that healthcare remains a prime target for cyberattacks.
- Anika Gardenhire, chief digital & information officer at Ardent Health Services, echoed this sentiment, describing the sophisticated nature of modern cyberattacks.
Healthcare organizations face escalating cyberattacks,demanding robust cyber resilience strategies. Discover how IT leaders are responding with proactive planning and cross-disciplinary collaboration to protect patient safety and operational continuity. Ransomware and sophisticated threats targeting healthcare remain a constant peril, exacerbated by expanding attack surfaces. Experts stress teh need for rapid response, clear role definitions, and strong regulatory frameworks. News directory 3 highlights how organizations can proactively engage with regulators and prioritize regular drills. Also, understand the critical role of AI governance and vendor security compliance in safeguarding sensitive data. Discover what’s next.
Health Systems Prioritize Cyber Resilience amid Rising Threats
Updated June 21, 2025

As cyber threats intensify, healthcare IT leaders are emphasizing the need for robust cyber resilience strategies. Experts at the ViVe 2025 Conference highlighted that effective preparation, clear communication, and strong cross-disciplinary collaboration are vital for maintaining patient safety and ensuring operational continuity when technology inevitably fails.
Anahi Santiago, chief information security officer at ChristianaCare, noted that healthcare remains a prime target for cyberattacks. Ransomware attacks, frequently enough executed by nation-state actors and financially motivated hackers, are a constant threat. The growing attack surface, driven by cloud adoption and interconnected systems, exacerbates the problem.
Anika Gardenhire, chief digital & information officer at Ardent Health Services, echoed this sentiment, describing the sophisticated nature of modern cyberattacks. These attacks, she said, are meticulously planned and often exploit vulnerabilities in third-party vendors or legacy systems. Gardenhire emphasized the importance of rapid response and clear role definition during a cyber incident.
Dale Kadlec, assistant general counsel at Microsoft, stressed the importance of a strong regulatory framework to complement technical defenses. He predicted increasing regulatory scrutiny and a potential patchwork of state regulations, notably concerning AI governance. Kadlec urged organizations to proactively engage with regulators.
Andy Puterbaugh, president of Hospitals and Health Systems at Teladoc Health, emphasized the value of scenario planning and tabletop exercises to build muscle memory for crisis response. He also highlighted the need for digital health companies to align with health systems’ security requirements.
“These aren’t teenage hackers in a hoodie. It’s a highly coordinated industry. They spend months casing health systems,identifying weaknesses,and planning attacks with military-level precision,” said Gardenhire.
What’s next
health systems must prioritize cyber resilience, conduct regular drills, and foster transparent communication to mitigate the impact of unavoidable cyber incidents. As AI becomes more prevalent, thoughtful implementation and governance will be crucial for maintaining security and patient safety. Vendor security compliance is also essential for protecting sensitive data and ensuring operational continuity.
