Skip to content
AIHCM - American Institute of Healthcare Management
Back to program
AIHCM Program Handbook
CYBR · v1

Cybersecurity for Healthcare Staff: Phishing, Ransomware and Devices

The attacks that actually reach healthcare staff, and the habits that stop them.

Foundation · 2.5 study hours · Digital Health & AI

1. Program overview

Healthcare is among the most attacked sectors, and almost every successful intrusion starts with a person rather than a firewall. This course covers what staff actually encounter: phishing and spear-phishing aimed at clinicians, credential theft, ransomware and what happens to a hospital during an outage, removable media, connected medical devices, and the specific risk of shared workstations and shoulder surfing. It ends with downtime working — what clinical staff do when systems are gone — which is the part most training omits and the part that matters most.

2. Why this program

  • Attacks staff actually encounter, not abstract threat models.
  • Includes connected medical device risk.
  • Covers shared workstations and clinical realities.
  • Ends with downtime working. usually omitted

3. Who it is for

Nurse · Physician · Pharmacist · Medical Secretary · Allied Health · Lab Technician · Healthcare Manager

4. Program objectives

  • Recognise phishing and social engineering targeted at healthcare staff
  • Apply safe credential and authentication practice
  • Describe how ransomware affects clinical operations
  • Identify the risks introduced by connected medical devices
  • Apply safe practice at shared and mobile workstations
  • Operate safely during an unplanned systems outage

5. Learning outcomes

  • Identify indicators of phishing in a described message
  • Apply appropriate authentication practice to a given scenario
  • Describe the clinical consequences of a ransomware outage
  • Recognise device and removable-media risks in a described unit
  • Apply safe practice to a shared workstation situation
  • Plan clinical continuity actions for a systems downtime event

6. Curriculum

  1. Module 1: Why Healthcare Is Targeted

    • Why Healthcare Is Targeted
  2. Module 2: Phishing and Social Engineering

    • Phishing and Social Engineering
  3. Module 3: Credentials and Access

    • Credentials and Access
  4. Module 4: Ransomware and Devices

    • Ransomware and Devices
  5. Module 5: Working Through Downtime

    • Working Through Downtime

7. Duration and structure

Total study hours: 2.52h content + 0.5h assessment. Duration is expressed in study hours only.

9. What you receive

This certificate confirms completion of Cybersecurity for Healthcare Staff: Phishing, Ransomware and Devices. Duration is expressed in study hours.

10. Delivery format

Self-paced · start any time · any device · lifetime access to the enrolled version.

American Institute of Healthcare Management · aihcm.us · Program CYBR v1. This handbook is generated from the current published program record.