The Acalvio Advantage for HIPAA Compliance
Acalvio’s ShadowPlex Deception solution is perfectly suited to organizations seeking HIPAA compliance. Since ShadowPlex allows organizations to deploy realistic deceptions at scale and in a cost effective manner, it alleviates the limitations of earlier generation, “Deception 1.0” Solutions.
The solution delivers four key benefits:
- Early detection of malicious activity that has penetrated the perimeter, with high fidelity (that is, low false positives)
- The ability to inhibit attackers and slow their efforts to compromise critical systems
- Intelligence gathering on the attacker (modes of operation, potential data exposure, and spread within the network)
- Internal threat intelligence and enhanced visibility of network & system activity
These benefits map to 13 controls in the HIPAA Security Rule, in particular those related to malware detection and inhibition, data protection, and risk assessment. For a complete list, check out our HIPAA Compliance Whitepaper.
We’ve talked about Acalvio’s Deception 2.0 advantages in previous blogs, but one thing is worth repeating because it’s particularly relevant to healthcare covered entities: Service Reflection. Credible deception in healthcare is hard because there are so many industry-specific systems on the internal network, and if the deception solution can’t blend in with them, a savvy attacker will spot the ruse. Service Reflection lets you take a single specialized system or application and clone it into hundreds of decoys, making it easy to create a deception posture that looks credible and stays credible over time.