Q&A with Experian Identity expert on best practices around protecting patient data

by Kerry Rivera 3 min read March 15, 2019




There’s no doubt that identity theft is a concern for any industry that handles sensitive customer information; health care is no exception. In 2017 alone, the U.S. Department of Health and Human Services reported 477 healthcare breaches. Together, they compromised nearly 5.6 million patient records. Without adequate IT security, everything that organizations use to improve patient engagement and the continuum of care – especially patient portals – becomes an open door for hackers.

But how do we keep patient data secure without burdening patients? We asked Victoria Dames, Experian’s senior director of identity management, how the healthcare industry is evolving to solve for identity theft, as well as best practices all healthcare organizations can adopt to better meet this growing threat.

In the world of healthcare, both patients and providers are understandably hyper-sensitive about the exchange and security of healthcare data. How is the industry arming itself to protect data? Are there any shifts you’ve witnessed in security practices over the past few years?

Absolutely! The industry has quickly evolved into leveraging technology to share data between organizations and with their patients, but this does bring inherit risk. Criminals also took notice to this shift, and medical identity theft became one of the fastest growing types of identity theft with a roughly 22 percent annual growth. With this evolution, the industry has tightened up on data access, especially as it pertains to the patient. Over the last five years, we’ve seen the shift to enable technology to help identity-proof patients before granting them access to sensitive information. This used to be a manual process.

What are some of the best practices healthcare organizations can adopt to limit instances of medical identity theft?

First, organizations must understand where their access points are throughout their ecosystems. With 64 percent of patients citing a privacy issue as a key concern for accessing health information online, they should inform patients that they’re providing secure methods for access to their information.

Additionally, healthcare organizations must evaluate how physicians access different types of data and portals. As healthcare caught up to electronic records and systems, portals for e-prescribing also arrived. Given the nature of this use case, providing a heightened NIST level of identity proofing is required. The key is to assess what level of identity proofing is needed at each entry point to keep balance on security and the end-user experience.

When you look to the future of healthcare, what types of digital technologies and solutions do you see providers putting in place to prevent fraud and protect patient data?

Technology moves quickly and so do we. Identity proofing has seen an acceleration in the use of biometrics at different points of entry throughout healthcare organizations, which strengthens our solution.

We are starting to see the use of biometrics, similar to your phone face ID, used more broadly through healthcare in conjunction with existing identity-proofing solutions. Experian achieved the Kantara Initiative certification with adherence to the latest guidelines achieving NIST 800-63-3 IAL2 (National Institute of Standards and Technology Special Publication Digital Identity Guidelines 800-63-3 for Identity Assurance Level 2 (IAL2)). This reinforces our commitment to support clients in authenticating consumers, while balancing a positive experience.

Learn more about Experian’s identity management solutions.

Related Posts

Experian Health ranked #1 in Best in KLAS for 2025

Experian Health is very pleased to announce that we've ranked #1 in the 2025 Best in KLAS: Software & Services report, for our Contract Manager and Contract Analysis product, for the third consecutive year. Contract Manager, when paired with Contract Analysis, empowers healthcare providers by ensuring payers comply with contract terms, identifying and recovering underpayments, and arming them with real claims data to negotiate contracts. This enables providers to negotiate more favorable terms and maintain financial stability.  Clarissa Riggins, Chief Product Officer at Experian Health, says, “In the ever-evolving healthcare landscape, our Contract Manager solution has once again been recognized as the #1 Revenue Cycle Management tool by KLAS for the third consecutive year. This prestigious ranking underscores the significant value our solution delivers to our clients by identifying underpayments and facilitating revenue recovery. We are honored to continue supporting our clients with innovative solutions that drive financial success and operational efficiency.”  Learn more about how Contract Manager and Contract Analysis can help your healthcare organization validate reimbursement accuracy, recover underpayments and boost revenue.   Learn more Contact us

Published: February 5, 2025 by kelly.nguyen
How to increase patient engagement

Learn how providers can increase patient engagement, why it matters and key strategies that deliver improved end-to-end patient experiences.

Published: January 30, 2025 by Experian Health
Revenue cycle management checklist: improve experience & profits

Traditional revenue cycle management strategies are on shaky ground. This revenue cycle management checklist can help find opportunities.

Published: January 28, 2025 by Experian Health

Spotlight test

Spotlight Description

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Sticky Subscribe Title

Sticky Subscribe Description
Sticky Subscribe

Testing Spotlight Paragraph block

Testing the spotlight block header

Archive Testing

Categories