Phishing Training in Healthcare "Largely Ineffective," Says UC San Diego Study
University of California San Diego
|
Contributed by: Kate Gamble
Summary
A study involving 19,500 employees at UC San Diego Health found that current cybersecurity training programs are largely ineffective at reducing employee susceptibility to phishing scams. Despite implementing both mandated annual training and embedded phishing training, there was no significant difference in phishing susceptibility between employees who completed the training and those who did not. This highlights a critical challenge in the healthcare sector, where data breaches are on the rise, emphasizing the need for more engaging and effective cybersecurity training strategies to protect sensitive information. With over 725 major incidents reported in 2023 alone, healthcare organizations must re-evaluate their training methods to better defend against this persistent threat.