Censinet Announces Healthcare Cybersecurity Benchmarking Study Co-Sponsored by the American Hospital Association and KLAS Research

Post Summary
It is a landmark study co-sponsored by Censinet, the American Hospital Association (AHA), and KLAS Research, designed to help healthcare organizations compare cybersecurity investments, resources, and performance to peer organizations.
The study leverages the NIST Cybersecurity Framework (NIST CSF) and Health Industry Cybersecurity Practices (HICP) to provide comprehensive benchmarks for participating organizations.
Participants receive: Full access to NIST CSF and HICP Benchmarking modules at no cost. Automated action plans to identify gaps and prioritize cybersecurity investments. Peer benchmarks for targeted resource allocation and performance improvement.
It helps healthcare providers strengthen cybersecurity maturity, reduce enterprise risk, and protect patient safety by offering actionable insights and peer comparisons.
Healthcare organizations can enroll by contacting benchmarks@censinet.com or visiting Censinet representatives at events like CHIME22 Fall Forum.
Launching at CHIME22 Fall Forum, Landmark Benchmarking Study Delivers Peer Benchmarks Across Cybersecurity Investments, Resources and Overall Program Performance
BOSTON, MA – NOVEMBER 8, 2022 – Censinet, the leading provider of healthcare risk management solutions, today announced “The Healthcare Cybersecurity Benchmarking Study” co-sponsored by the American Hospital Association (AHA) and KLAS Research, launching at CHIME22 Fall Forum, Nov 7-10, 2022, in San Antonio, TX. The landmark study, currently enrolling hospital and health system participants now, will enable participating organizations to compare cybersecurity investments, resources, performance and maturity to peer organizations across key operational cyber metrics, and coverage of NIST Cybersecurity Framework (NIST CSF), and Health Industry Cybersecurity Practices (HICP).
“The Healthcare Cybersecurity Benchmarking Study is the first benchmarking initiative in healthcare to combine key organizational indicators, NIST CSF, and HICP for comprehensive provider self-evaluation and peer comparison,” said Ed Gaudet, CEO and Founder of Censinet. “We’re honored to come together with leading industry partners like the AHA and KLAS Research, as well as leading health system sponsors, to advance this Study with unprecedented collaboration and transparency, making our industry truly ‘stronger together’ against cyber threats.”
“With cyber risk now representing significant enterprise risk to hospitals and health systems, the time has never been more critical to elevate our industry’s cyber strength, maturity, and resilience,” said John Riggi, National Advisor for Cybersecurity and Risk, American Hospital Association. “The Healthcare Cybersecurity Benchmarking Study brings all of us together to accomplish this objective and, like a rising tide, will help all providers succeed in reducing enterprise risk and protecting patient safety.”
“Cyber maturity is now a critical part of the dialogue between providers and vendors during the evaluation and purchasing process in healthcare,” said Taylor Davis, President, KLAS Research. “This Study helps ensure that rapid, high-value innovation adoption between all parties across the industry never jeopardizes patient care, patient safety, or business operations, and will promote continuous improvement in security performance for the long run.”
The Healthcare Cybersecurity Benchmarking Study is provided in partnership with following leading health system sponsors, including Baptist Health, Cedars-Sinai, Dayton Children’s, Fairview Health Services, Hartford HealthCare, Intermountain Healthcare, Marshfield Clinic Health System, and Mass General Brigham.
This Study aims to establish trusted cybersecurity-specific benchmarks across the healthcare industry through anonymized, aggregated datasets to deliver targeted insight and peer comparison to participating providers. As such, participating organizations are entitled to the following benefits from Censinet:
- Full access to Censinet’s NIST CSF and HICP Benchmarking modules at no cost during the study and post-study until Mar 31, 2023.
- Automated Action Plans and Guidance to identify critical gaps in cybersecurity controls, policies, and procedures and prioritize future cyber investments.
- Peer benchmarks at the detailed, NIST CSF Subcategory level for targeted investment and resource allocation.
Sponsors are enrolling participants now to join other leading healthcare organizations in this landmark initiative to strengthen cybersecurity across the industry. To participate or learn more, please speak with Censinet and other sponsors during the CHIME22 Fall Forum in San Antonio, TX, Nov 7-10, or contact us directly at benchmarks@censinet.com.
About Censinet
Censinet®, based in Boston, MA, enables healthcare organizations to take the risk out of their business with Censinet RiskOpsTM, the first and only cloud-based risk exchange that integrates and consolidates enterprise risk management and operations capabilities across critical clinical and business areas. RiskOps builds upon the Company’s foundational success with third-party risk management (TPRM) for healthcare. Censinet transforms healthcare risk by increasing productivity and operational effectiveness while eliminating risks to care delivery, data privacy, and patient safety. Find out more about Censinet and its RiskOps platform at censinet.com.
About the American Hospital Association
The American Hospital Association (AHA) is a not-for-profit association of health care provider organizations and individuals that are committed to the health improvement of their communities. The AHA advocates on behalf of our nearly 5,000 member hospitals, health systems and other health care organizations, our clinician partners – including more than 270,000 affiliated physicians, 2 million nurses and other caregivers – and the 43,000 health care leaders who belong to our professional membership groups. Founded in 1898, the AHA provides insight and education for health care leaders and is a source of information on health care issues and trends. For more information, visit the AHA website at https://www.aha.org.
About KLAS
KLAS has been providing accurate, honest, and impartial insights for the healthcare IT (HIT) industry since 1996. The KLAS mission is to improve the world’s healthcare by amplifying the voice of providers and payers. The scope of our research is constantly expanding to best fit market needs as technology becomes increasingly sophisticated. KLAS finds the hard-to-get HIT data by building strong relationships with our payer and provider friends in the industry. Learn more at https://klasresearch.com.
###
Contacts:
Justyn Thompson
(617) 221-6875
jthompson@censinet.com
Twitter: twitter.com/censinet
LinkedIn: linkedin.com/company/censinet
Blog: censinet.com/blog
Key Points:
What is the Healthcare Cybersecurity Benchmarking Study?
- The Healthcare Cybersecurity Benchmarking Study is a landmark initiative co-sponsored by Censinet, the American Hospital Association (AHA), and KLAS Research.
- It enables hospitals and health systems to compare their cybersecurity investments, resources, and performance to peer organizations.
- The study uses anonymized, aggregated data to provide actionable insights and peer benchmarks across key operational metrics, including compliance with the NIST Cybersecurity Framework (NIST CSF) and Health Industry Cybersecurity Practices (HICP).
What is the purpose of the study?
- The study aims to strengthen cybersecurity maturity and resilience across the healthcare industry.
- It provides participating organizations with tools to identify gaps in cybersecurity controls, prioritize investments, and improve overall program performance.
- By fostering collaboration and transparency, the study helps healthcare providers reduce enterprise risk and protect patient safety.
What frameworks does the study use for benchmarking?
The study leverages two widely recognized frameworks:
- NIST Cybersecurity Framework (NIST CSF): A comprehensive framework for managing cybersecurity risks.
- Health Industry Cybersecurity Practices (HICP): A set of best practices tailored to the healthcare sector to address cybersecurity threats.
- These frameworks ensure that benchmarks are aligned with industry standards and provide actionable guidance for healthcare organizations.
What are the benefits of participating in the study?
Participating organizations receive several key benefits, including:
- Free Access to Benchmarking Modules: Full access to NIST CSF and HICP Benchmarking modules at no cost during and after the study (until March 31, 2023).
- Automated Action Plans: Guidance to identify critical gaps in cybersecurity controls and prioritize future investments.
- Peer Benchmarks: Detailed comparisons at the NIST CSF Subcategory level to inform resource allocation and performance improvement.
- Collaboration Opportunities: The chance to join a community of healthcare leaders working to strengthen industry-wide cybersecurity.
Why is this study important for healthcare organizations?
- Cybersecurity is now a critical enterprise risk for hospitals and health systems, with threats like ransomware and data breaches jeopardizing patient safety and care delivery.
- The study provides healthcare organizations with the tools and insights needed to improve their cybersecurity maturity, reduce risks, and ensure compliance with industry standards.
- By participating, organizations can benchmark their performance against peers and make data-driven decisions to enhance their cybersecurity programs.
Who are the sponsors and partners of the study?
- The study is co-sponsored by Censinet, the American Hospital Association (AHA), and KLAS Research.
- Leading health systems, including Baptist Health, Cedars-Sinai, Dayton Children’s, Fairview Health Services, Hartford HealthCare, Intermountain Healthcare, Marshfield Clinic Health System, and Mass General Brigham, are also sponsors.
- These partnerships ensure the study is comprehensive, collaborative, and aligned with the needs of the healthcare industry.
How can healthcare organizations participate in the study?
- Organizations can enroll by contacting benchmarks@censinet.com or speaking with Censinet representatives at events like CHIME22 Fall Forum.
- Participation is open to hospitals and health systems looking to improve their cybersecurity maturity and resilience.
How does the study help improve cybersecurity in healthcare?
- The study provides actionable insights and benchmarks that help organizations identify gaps in their cybersecurity programs.
- It promotes collaboration and transparency across the industry, enabling healthcare providers to learn from one another and adopt best practices.
- By aligning with frameworks like NIST CSF and HICP, the study ensures that organizations are prepared to address current and emerging cybersecurity threats.