Security, Privacy and Compliance (SPC)


The Security, Privacy, and Compliance (SPC) committee was formed to address the ever-increasing need within the NJ healthcare provider and payer community for greater collaboration and education on information security, patient privacy, and regulatory compliance issues. Through educational sessions focused on the most pressing issues in the world of information/cyber security, our goal is to increase awareness, share best practices and lessons learned, and serve as a convener for members interested in security, privacy, and compliance.

Call for Abstracts

SPC is in the process of scheduling Podcasts.

If you are interested in participating in a Podcast, please email spc@njhimss.org to let us know.

We will then meet with you to discuss topics and questions and coordinate the Podcast.

We look forward to hearing from our NJHIMSS member base!


Past Webinars


Basic Cyberattacks: Inside Out

Presenter: John Gomez, CEO, Sensato

Date: Tuesday, November 18, 2021 from 12 noon to 1pm

Recording: https://zoom.us/rec/share/58rUyJPO_F2XnZAlUfB8jL8SgGJjjeMH6fUeg8ah-P5Up22YUOAnxyfM2sPfWc1i.wrkHpp52J9Rzorgo

PPSM: Click here to download.


Closing IoT Security Gaps: Strengthening overall cyber threat protection in Healthcare

Presenters: John Rossiter, Principal Consulting Engineer and Chief Information Security Officer (CISO) for Aspire Technology Partners, Neville Lee, Director of Infrastructure for Englewood Hospital and Medical Center, Ido Geffen, VP of Customer Experience for CyberMDX

Date: Tuesday, September 23, 2021 at 12 noon

Recordinghttps://zoom.us/rec/share/Po_MJd2z-Qas6OaWakwUg1TNi33qIiuhZetPj7314ec9-HLNOacBzPTlOYTgxMT4.p0XlCFwG7iYY3gxp?startTime=1632411929000

PPSM: Click here to download.


Cybersecurity and Risk Management Innovations - 2021 and beyond

Presenters: Miroslav Belote, CISO, Valley Health System, Hussein Syed, CISO, RWJBarnabas Health, Vikas Khosla, Chief Digital Health Security Officer, Intraprise Health

Date: Tuesday, July 22, 2021 at 12 noon

Recordinghttps://zoom.us/rec/share/uSCA381NgHz7gj0llb29F8565_zJV9lFzSYP-1Qw45Lvs3AOPlAVUmoTA4n0bgFZ.51sHGcZjWUSU2Ex3?startTime=1626969418000


Real World Cybersecurity Incident Response

Presenter: John Gomez, Founder & CEO of Sensato

Date: Thursday, June 17, at 12 noon

Recording: https://zoom.us/rec/share/uO7d0sKF7y9vRXhjBbx0DfKC3z1uWqFcbAgpeZmVsLWmkD1YJ7zeErI2TZhtpsgx.l12w9VOPtWlXzlpR


Designing Effective Tabletop Simulations

Presenter: John Gomez, Founder & CEO of Sensato

Date: Thursday, May 20, 2021 at 12 noon

PDFhttps://s3.amazonaws.com/amo_hub_content/Association1060/files/Sensato%20Leadership%20Series%20VII.pdf

Recording: https://zoom.us/rec/share/Ny8oIf5EGxqXFGXo9sT81Z9msEKcQp5U-GTjoZK1ZoSizwWYaZVu2OyCC1ndDFmt.Sd1lL2GLKYdPDVXr?startTime=1621525464000    


New Artificial Intelligence (AI) technologies in Healthcare and associated Cybersecurity Risks

Robert J Babin, Sr., Director, Strategic Initiatives/CISO, Saint Peters Healthcare System and Paul Garrin, EVP/CIO Urban Health Plan - Date: March 18, 2021

PDF: https://drive.google.com/file/d/1IdP2m-SbvZcddpoNFHVCWoE1ADwzAnwH/view?usp=sharing

Recording: https://drive.google.com/file/d/1AsYKlc90Jhu7VYroNqj8G3a7WOpGjmNV/view?usp=sharing


HIPAA Compliance is NOT GDPR Compliance and More Legal Myths Debunked

Matt MacDonald, CISA, CCSFP, CQHP, Manager, IT Assurance, Wolf & Company - Date: February 18, 2021

PDF: https://s3.amazonaws.com/amo_hub_content/Association1060/files/NJ%20HIMSS%20Phishing%20Presentation_2_18_21.pdf

Recording: https://attendee.gotowebinar.com/recording/6583649540826279938


HIPAA Compliance is NOT GDPR Compliance and More Legal Myths Debunked

Sara Rugnetta and Jordan L. Fischer, Esq. - Bechage - Date: January 28, 2021

PDF: https://drive.google.com/file/d/1fipHqzIqlX75GENxiwQFO-BjjF2Zmctn/view?usp=sharing

Recording: https://drive.google.com/file/d/1fipHqzIqlX75GENxiwQFO-BjjF2Zmctn/view?usp=sharing


How the Final Rules on Information Blocking Will Affect Your Organization

Helen Oscislawski, Principal and Managing Member at Attorneys at Oscislawski - Date: June 12, 2020.

PDF:https://s3.amazonaws.com/amo_hub_content/Association1060/files/Information%20Blocking%20Rule_NJHIMSS%20Webinar%20June%2012%202020%20(Oscislawski)%20v_distribution.pdf

Recording: https://attendee.gotowebinar.com/recording/5820703914318010371


SPC 1-hour Webinar:  COVID-19: HIPAA, Telemedicine, Telehealth and more

Helen Oscislawski, Principal and Managing Member at Attorneys at Oscislawski - Date: April 2, 2020.

PDF: https://s3.amazonaws.com/amo_hub_content/Association1060/files/COVID-19%20HIPAA%20CMS%20Waivers%20Telemedicine_NJHIMSS%20Webinar%20April%202%202020%20(Oscislawski)-compressed.pdf

Recording: https://drive.google.com/file/d/1Jxq4n2QHVJ1fFZuCO5NvaaSIFrzGopAP/view?usp=sharing

Q&A: https://s3.amazonaws.com/amo_hub_content/Association1060/files/April%202%2C%202020%20HIMSS%20Q%26A%20follow%20up.pdf


Couples Counseling – Selecting an MSSP" - ATIF GHAURI, CISSP, CCSA, CISM, PRINCIPAL, CYBERSECURITY PRACTICE LEADER and SERGHEI IFTODI, DIRECTOR, MANAGED SECURITY SERVICES at Mazars USA - Date = February 2020

Recording: https://drive.google.com/file/d/16SiLNFz6xZNVA0_IrxfdNIwRtSjc3vb2/view


Transformational Compliance Training Through Employee Engagement - Margarita Derelanko, Director of Compliance Robin's Nest, Inc., Victoria Hewitt, Privacy Specialist Robin's Nest, Inc., Karen Acker,Administrative Director/Compliance Officer Robin's Nest, Inc - Date: June 27, 2019

PDF: https://drive.google.com/file/d/1jjjUDmsco5N3ja72uO13jarn_JxgOBhJ/view?usp=sharing

Recording: https://drive.google.com/file/d/1a9CCGn0P8Gc53OSwkX6irrtGNXf2FRxt/view?usp=sharing


Healthcare IT Cyber Security Challenges and Solutions Jason Tahaney, Director, Information Technology, Hunterdon Healthcare System: Date:April 25, 2019

PDF: https://drive.google.com/file/d/1NUaxaqfzbKjKOC7wHJL-JRY1iKRu0YKF/view?usp=sharing

Recording: https://drive.google.com/file/d/1oBcsLLUL48cBoPhAVcRsBJnmcUpY8Cyl/view?usp=sharing

Membership PDF (please share) :  https://drive.google.com/file/d/17Xq1eNp8tDtaGbzfpjOEzYyKbPy8g3ym/view?usp=sharing


Managing a HIPAA Breach - Helen Oscislawski, Esq., Founder – Attorneys at Oscislawski LLC: Date: March 21, 2019

PDF: https://drive.google.com/file/d/1EFQyIpISpv3IQwMpgt2OlMHiv-1Ps35t/view?usp=sharing

Recording: https://drive.google.com/file/d/1NRbYR4-F0bbubbRoPdTI9xVNkcstrij5/view?usp=sharing

Tools:  https://drive.google.com/drive/folders/1CG9DlzDtWpjHd4XSaRP785Aqn2Jyh-tu?usp=sharing


The Current Cybersecurity Threat Landscape in Healthcare and the Top 10 Things to do to Reduce Risk - Scott Fitzgerald, Certified CISO and Paul Garrin, CIO/CTO Partner at Tatum a Randstad Company: Date: February 21, 2019

PDF: https://drive.google.com/file/d/10vE9rPXae7tGk2B0IApC2lVjTax7emES/view?usp=sharing

Recording: https://drive.google.com/file/d/1eoY3XYhkl_pspkOUs5n2Asy6RlCGQd7p/view?usp=sharing


Improving Security thru Information Sharing and Threat Intelligence: Date January 17, 2019

PDF:  This is a panel discussion and there is no slide deck PDF. See the recording link below.

Recording: https://drive.google.com/file/d/1wQTsY0N1RE7eu1OYKDqlX5jWZHv6GwEX/view?usp=sharing


NJCCIC – Defending our Digital Density - Michael T. Geraghty, Chief Information Security Officer – State of New Jersey; Director NJCCIC: Date November 8, 2018

PDF:  https://drive.google.com/file/d/1_Syhzk4ktxestTcfBS4ZeDuvCs3ZSQgi/view?usp=sharing

Recording: https://drive.google.com/file/d/1ne71f_PJ9RBsPanBPJDLeFYVUVbyeCkZ/view?usp=sharing


Results of a June 2018 Mock Ransonware Attack - John Ulett, VP / CIO, CentraState Healthcare System  & Mark Handerhan, Director of Systems and IT Operations & Information Security Officer, CentraState Healthcare System: Date: October 18, 2018

PDF: https://drive.google.com/file/d/1oCJRrcAyCGAWCFM3_eM_EyBYaxtvXCVL/view?usp=sharing

Recording:  https://drive.google.com/file/d/1n0DBGNhDNKMdmTZZEkRUk30tugKBRSNq/view?usp=sharing


Creating Compliant Security Relationships with Vendors -  Joseph A. Piccolo, MBA, CHC, Vice President, Corporate Compliance, Inspira Health Network  &  Francois J. Bodhuin, Director, IT and CISO, Inspira Health Network- Date: September 13, 2018

PDF: https://drive.google.com/file/d/1hIub-KMoVa_eJIiGWNHTrzdzWwAw9lC3/view?usp=sharing  

Recording:  https://drive.google.com/file/d/127pE0qwL1dORX9VIR7vOriXRXyNR6vFz/view?usp=sharing  


Cybersecurity Services Available to Healthcare Delivery Organizations (HDOs) from the Department of Homeland Security -  Richard S. Richard, Cybersecurity Advisor, Stakeholder Risk Assessment and Mitigation (SRAM), Office of Cybersecurity and Communications U.S. Department of Homeland Security - Date: August 30, 2018

PDF: https://drive.google.com/file/d/1tastEqpQNsAwYxOD00ZAsH9CBxTU46ru/view

Recording: https://drive.google.com/file/d/1wWNjBaG-PCV_9vL3biWOM8lrKmJDUtUj/view?usp=sharing


The job of cybersecurity is presently addressed as an "additional duty" - Paul Garrin, CIO/CTO Partner at Tatum a Randstad Company & Robert Babin, IT Director and CISO at St. Peters Health System - Date: July 26,2018

PDF: https://drive.google.com/file/d/182hEo927h5tm_BvMW0lCfwDflJdahD-f/view?usp=sharing

Recording: https://drive.google.com/file/d/16EqUL2_hisLTG9zG3sGU__pqNy_neYEM/view?usp=sharing


Medical Device Security—Defending from the Inside Out - Russell Rice, Vice President, Products & Ben Wilson, Vice President, Business Development, Healthcare, CloudPost Networks - Date: May 10, 2018

PDF: https://drive.google.com/file/d/1h_Zj7289l_xW5YT_Aco7ONUjKbnuFapX/view?usp=sharing

Recording: https://drive.google.com/file/d/1oneG2zkQ2L81FrKrbL8lq9bqJkxmqF1w/view?usp=sharing


Embracing BYOD and the Cloud for Healthcare Organizations – Gleb Evfarestov, Solution Engineer, and Rich Campagna, CMO, Head of Products, Bitglass  - Date: April 13, 2018

PDF: https://drive.google.com/file/d/1pHkHNV707N6R6QBNQSEIlMElekiKCOkA/view?usp=sharing

Recording: https://drive.google.com/file/d/1T-wmjOpahB_BzSB_gibLcEnfVdai9JB5/view?usp=sharing


The Violence and Financial Implications of CyberSecurity – John Gomez, President of Sensato - Date: March 16, 2018

PDF: https://drive.google.com/file/d/1uWqh091-eXsiwX0_jssaQ37D2GwvtIW6/view?usp=sharing

Recording: https://drive.google.com/file/d/1qGlAPDwEnDKpwA015XF8lmahJgcMGtES/view?usp=sharing