Client Experiences - HIPAA security implemented for small medical clinic
The Problem
This medical clinic had been in operation for about 18 months and had concerns about their ability to protect their data, as well as their ability to safely share data
The clinic had an on-premise medical records system which was being backed up according to their vendor
A site survey revealed inconsistent antivirus coverage with only 50% of devices having AV installed, and none were configured in accordance with best practices. In addition the AV was NOT centralized which made it nearly impossible to tell whether a problem might be developing
The site survey revealed that the vendor’s “backup” was only capturing the patient database, that they were not monitoring the backups, and that the backups were failing over 25% of the time.
The client indicated performance problems with user workstations which were inconsistent and were robbing productivity from the practice
The doctor was the primary IT resource for the practice
The Solution
With the site visit results above, a remediation plan was provided to the clinic owners
It was suspected that marginal power might be creating issues, as most devices were not using battery backups…as a result battery backups were deployed to power all devices
Within 5 days centralized antivirus was deployed to the server and all workstations using best practices configurations
Within 7 days a DATTO appliance had been deployed with on-site and off-site backups being performed every 30 minutes on the server and on the practice’s on-premise digital x-ray imaging system
DATTO Remote Monitoring and Management (RMM) was deployed to monitor the environment
The Impact
The battery backups and antivirus resulted in an immediate improvement for the users. The AV eliminated over a dozen pieces of malware within the first two days of deployment
The practice’s server suffered a hardware failure two months after engaging with this client. The DATTO business continuity made it possible to remotely restore the medical records system to another workstation, resulting in minimal business impact
The DATTO RMM monitoring identified hardware issues which were developing with two of the practices workstations allowing the hard drives to be replaced outside of business hours with no negative impact on the business
The doctor was no longer having to commit time to troubleshooting user helpdesk issues