• 国家药监局综合司 国家卫生健康委办公厅
  • 国家药监局综合司 国家卫生健康委办公厅

Practice of cybersecurity risk management in large hospitals based on a situational awareness platform

Corresponding author: YANG Yang, zdyxxyy@126.com
DOI: 10.12201/bmr.202408.00065
Statement: This article is a preprint and has not been peer-reviewed. It reports new research that has yet to be evaluated and so should not be used to guide clinical practice.
  •  

    Abstract: Purpose/Significance Analyze network security risk events on the situational awareness platform of large hospitals, identify the causes of risk events, propose solutions and improvement suggestions. Methods/Process Taking a large hospital as an example, Risk events are aggregated based on situational awareness platform. Risky terminals within the hospital’s internal network are identified, and they are remediated and strengthened through network localization, exploitation of vulnerabilities, and manual inspection. This paper then analyzes the distribution of these risky terminals across different departments and investigates their causes, resulting in suggestions for improvement. Results/Conclusion The medical technology departments have a higher number of risky terminals, primarily due to inadequate management and the lack of comprehensive antivirus software coverage. After the remediation and reinforcement of risky terminals, the number of cybersecurity risk events on the situational awareness platform significantly decreases. By enhancing terminal security management in the hospital, improving personnel’s cybersecurity awareness, and implementing targeted cybersecurity measures in different zones, it is possible to effectively reduce the number of cybersecurity incidents in the hospital and boost its overall cybersecurity defenses.

    Key words: large; hospital, situation; awareness platform, network; security, risky; terminal

    Submit time: 27 August 2024

    Copyright: The copyright holder for this preprint is the author/funder, who has granted biomedRxiv a license to display the preprint in perpetuity.
  • 图表

  • renzijia, xiaoyong. Analysis and reflection on the current situation of network security in Chinese medicine hospitals in China,REN Zi-jian, XIAO Yong, SHEN Shao-wu, TIAN Shuang-gui , TIAN Shuang-gui, Hubei University of Chinese Medicine, Wuhan 430065, China. 2021. doi: 10.12201/bmr.202101.00006

    zangqiu, wang chun liang. Practice of Optimization Scheme of Hospital Network Security Under Security Level Protection. 2021. doi: 10.12201/bmr.202107.00010

    LI Zhi-yi, XIAO Yong, SHEN Shaowu. Analysis and reflection on the current situation of network security construction in Hubei Traditional Chinese Medicine Hospital. 2023. doi: 10.12201/bmr.202312.00014

    xiaoyong. The course and Prospect of network security construction of Traditional Chinese Medicine Hospital in China. 2021. doi: 10.12201/bmr.202108.00001

    GAO Yang, GAO Wen-yue. Research on the cultivation strategy of network information security literacy of medical students from the perspective of big data. 2020. doi: 10.12201/bmr.202004.00030

    LV yuxia. The information management platform of hospital archives based on SpringCloud framework Exploration and Application. 2021. doi: 10.12201/bmr.202110.00037

    Meng Xiao Yang. Risk Analysis and Countermeasure Suggestions for Hospital Near-Source Cyber-Attacks. 2024. doi: 10.12201/bmr.202406.00008

    Wang BoYuan, Xiao Gexin. Design of food safety risk monitoring information platform framework. 2020. doi: 10.12201/bmr.202008.00011

    Mou Shujuan, Zhang Shaolin, Wang Yuanyuan. Construction practice of Internet + medical service based on hospital information platform and bus technology. 2020. doi: 10.12201/bmr.202003.00310

    xu anqi, han jiaojiao, xu yihan, fan chun. Planning and Research of Smart Hospital Construction Based on Digital Transformation Platform. 2020. doi: 10.12201/bmr.202009.00014

  • ID Submit time Number Download
    1 2024-05-09

    10.12201/bmr.202408.00065V1

    Download
  • Public  Anonymous  To author only

Get Citation

SUN Bao-feng, ZHANG Wei-yi, YANG Yang, LI Yu-hong. Practice of cybersecurity risk management in large hospitals based on a situational awareness platform. 2024. biomedRxiv.202408.00065

Article Metrics

  • Read: 480
  • Download: 3
  • Comment: 0

Email This Article

User name:
Email:*请输入正确邮箱
Code:*验证码错误