International Journal of Leading Research Publication

E-ISSN: 2582-8010     Impact Factor: 9.56

A Widely Indexed Open Access Peer Reviewed Multidisciplinary Monthly Scholarly International Journal

Call for Paper Volume 7 Issue 6 June 2026 Submit your research before last 3 days of to publish your research paper in the issue of June.

Cybersecurity Risk Assessment Framework for EHR Systems in Clinical Settings

Author(s) Kranthi Kumar Asike Parameshwa
Country United States
Abstract The healthcare revolution has led to the tremendous usage of Electronic Health Record (EHR) systems that are required to guarantee an effective clinical practice, patient care coordination, and evidence-based decision-making. The greater adoption of EHR systems, nevertheless, has exposed healthcare organizations to many forms of cybersecurity attacks, including ransomware, phishing attacks, malware, insider attacks, and network attacks. This can compromise patient privacy, disrupt the operations of a hospital, and lead to a risk to patient safety, hence the need to have a well-organized strategy on how to counter the impact of cybersecurity threats in clinical facilities. The authors in this work provide a generalized system of cybersecurity risk assessment, which specifically targets EHR systems related to healthcare. The framework includes the identification of the threat, the analysis of the vulnerability, ranking risk associated with probability and impact, and recommendations of security control, where regular monitoring and incident response should be used. Scenario-based evaluation, systematic literature assessment, and expert validation enabled the framework to reveal its potential for realizing serious threats, prioritizing risks in a productive way, and providing actionable advice on mitigating such risks without disrupting the clinical processes. The specified framework addresses the principal drawbacks of the existing standards, such as NIST, ISO/IEC 27001, and OCTAVE, by offering a healthcare-centred strategy of aligning technical, organizational, and operational perspectives. The framework will enhance the security of sensitive patient data and be more resistant to evolving cyber threats since it will enable healthcare organizations to proactively assess and control cybersecurity risks.
Keywords Cybersecurity, Electronic Health Records, Risk Assessment, Healthcare IT, Clinical Workflows, Threat Mitigation.
Field Sociology
Published In Volume 7, Issue 5, May 2026
Published On 2026-05-17
DOI https://doi.org/10.70528/IJLRP.v7.i5.2167
Short DOI https://doi.org/hb4xbp

Share this