U.S. flagAn official website of the United States government

HHS Cyber Gateway

Resource Library

Our cybersecurity resources are free and can be used by organizations sized small to large. Search below to find the latest best practices, cyber hygiene resources, and more! Search and use the bank of resources HHS has to offer to find information and materials in one place!

85 resources

Healthcare Threat Identification

Poster

This cyber hygiene poster highlights that threats exist at every level of your organization. Be aware of the threats that face your organization in order to protect PHI.

405(d) SBAR - Log4j

SBARs

Learn more about the Log4j SBAR of 2021 to provide situational background and recommendation on the threat.

HICP Executive Summary of Technical Updates

Publications

This is a working document of all the HICP updates that have been implemented in the 2023 Edition. Feel free to review for all of our new content and cybersecurity topics.

Have You Heard - MFA

Infographics

Check out this infographic to learn more about Multi-factor authentication (MFA), or two-factor authentication (2FA).

How to Implement Patching (Small organizations)

Infographics

This “how to” gives your organization information and background on patching as well as implementation tips for your small organization to start working on now!

How to Implement Data Security (Large organizations)

Infographics

This resource provides organizations with the know how for implementing data security in a large organization. Your team or organization can use this infographic for new information as well as a refresher of information to keep patients safe.

Knowledge on Demand’s Quick Shots: Botnet

Publications

This video helps users identify and be aware of the threat of botnet by understanding what it is and how it works. Use this video in your organization or share with others that may or may not know the term botnet, or the threat that looms.

Operational Continuity-Cyber Incident (OCCI) Checklist

Publications

The Operational Continuity-Cyber Incident (OCCI) checklist serves as an action plan designed to assist operational staff and executive management in effectively responding to and recovering from an extended enterprise outage caused by a severe cyber-attack. This checklist, an integral component of your broader Incident Response Plan (IRP), is specifically tailored to address the critical first 12 hours following a cyber event.

HICP Highlights

Newsletter

One page overview of 2023 HICP Publication

Healthy Cyber Habits

Poster

This Healthy Cyber Habits poster is a reminder for everyone in an organization that Cybersecurity is a shared responsibility along with actions at every role to keep patients safe.

Cyber Hygiene: Cyber Safety is Everyone's Responsibility

Poster

2024 National Cybersecurity Awareness Month: Cyber Safety is Everyone's Responsibility Poster. Download and use this poster in your organization as a reminder that keeping everyone can do something to strengthen your organization's cyber posture.

Ransomware Infection Poster

Poster

Be wary of this type of malware with quick tips and mitigation practices to protect your organization with this poster.

Have You Heard - Telehealth Security

Infographics

Check out this Have You Heard on Telehealth Security with great information and statistics on cybersecurity implications.

Teleworking Tips

Poster

Check out these 12 tips for safe teleworking recommendations from HICP!

How to Implement Data Security (Medium organizations)

Infographics

This resource provides organizations with the know how for implementing data security in a medium organization. Your team or organization can use this infographic for new information as well as a refresher of information to keep patients safe.

How to Implement Patching (Large organizations)

Infographics

This “how to” gives your organization information and background on patching as well as implementation tips for your large organization to start working on now!

Cyber Hygiene: Security Operations and Incident Response in Healthcare

Poster

2024 National Cybersecurity Awareness Month: Security Operations and Incident Response Poster. Download and use this poster in your organization as a helpful reminder of information relating to implementing a Security Operations Center (SOC) and effective Incident Response (IR).

Cyber Hygiene: Secure Your Inbox, Protect Your Patients

Poster

2024 National Cybersecurity Awareness Month. Download and use this poster in your organization as a helpful reminder of information relating to email phishing and the importance of securing your inbox.

HHS CPG Highlights

Infographics

Check out this one pager highlighting the Health and Human Services Cybersecurity Performance Goals!

Knowledge on Demand’s Quick Shots: Access Management

Publications

This video helps users identify and be aware of the topic of Access Management by understanding what it is and how it works. Use this video in your organization or share with others that may or may not know the term access management, or the threat that looms.

Cybersecurity Toolkit

Poster

Find out what is in (and what needs to be in) your cybersecurity toolkit to protect patients from cybersecurity threats.

Knowledge on Demand’s Quick Shots: Malware

Publications

This video helps users identify and be aware of the threat of malware by understanding what it is and how it works. Use this video in your organization or share with others that may or may not know the term malware, or the threat that looms.

Check your Cyber Pulse - HICP's 10 Mitigating practices

Infographics

The 405(d) Task Group has produced this series aligning with HICP’s 10 mitigation practices to give healthcare organizations a quick reference for maintaining cybersecurity readiness every day and will allow your organization to self-diagnose their cybersecurity posture from Healthy to Risky to Very Risky behaviors.

2022 Patient Safety Awareness Week Poster

Poster

Check out the 2022 Patient Safety Awareness Week poster! Patient Safety Awareness Week is an important time of year for healthcare organization members to reflect and learn new ways to protect patients, and this also includes cyber safety.

Have You Heard - Ransomware

Infographics

Check out this Have You Heard on Ransomware with great information and statistics on ransomware threats.

Medium/Large Organizations Executive Card

Publications

This resource allows medium and large sized organizations to understand the benefits of HICP and how to use the guide to fit their organization!

Legal Implications of a Cyber Attack

Webinars

Under the auspices of the Cybersecurity Act of 2015 (CSA), Section 405(d), the U.S. Department of Health and Human Services ( HHS ) convened the CSA 405(d) public/private task group to enhance cybersecurity and align industry security practices.

Cybersecurity Awareness Month Toolkit-All Size Organizations!

Toolkits

This toolkit is designed to help you promote cyber safety as patient safety during the month of October to your organization. With this toolkit you will have the ability to highlight important cyber tips and information that can help your employees grow their cyber awareness and increase their ability to keep patients safe from cyber threats.

CPG_HICP Crosswalk

Publications

This is a working document that aligns CISA CPGs to the HICP publication best practices

Cyber Hygiene: Identity and Access Management

Poster

2024 National Cybersecurity Awareness Month: Identity and Access Management Poster. Download and use this poster in your organization as a reminder that keeping everyone can do something to strengthen your organization's cyber posture.

Small Practices Executive Card

Publications

This resource allows small sized organizations to understand the benefits of HICP and how to use the guide to fit their organization!

Cyber Safety Zone Poster

Poster

This poster is a cyber hygiene poster highlighting the top 5 threats in the healthcare sector and tips anyone can use to mitigate them.

Have You Heard - Protecting EHRs

Infographics

Check out this Have You Heard on Protecting EHRs with statistics and tips to support patients health records.

Rhysida Ransomware Attack

SBARs

Learn more about the Rhysida Ransomware Attack SBAR of 2023 to provide situational background and recommendation on the threat.

Cybersecurity Diet

Poster

Find out how to protect your patients from all cyber-threats with a balanced cybersecurity approach.

Social Engineering Infection Poster

Poster

Beware of social engineering infections with quick tips and mitigation practices to protect your organization with this poster.

How to Implement Patching (Medium organizations)

Infographics

This “how to” gives your organization information and background on patching as well as implementation tips for your medium organization to start working on now!

How to Implement Data Security (Small organizations)

Infographics

This resource provides organizations with the know how for implementing data security in a small organization. Your team or organization can use this infographic for new information as well as a refresher of information to keep patients safe.

Cybersecurity Check Up

Poster

Learn more on how to conduct a cybersecurity checkup on your organization daily!

New Techniques

Infographics

Check out this infographic to learn more on new techniques criminals are using to threaten patients!