Cybersecurity for Healthcare Staff: Phishing, Ransomware and Devices
The attacks that actually reach healthcare staff, and the habits that stop them.
1. Program overview
Healthcare is among the most attacked sectors, and almost every successful intrusion starts with a person rather than a firewall. This course covers what staff actually encounter: phishing and spear-phishing aimed at clinicians, credential theft, ransomware and what happens to a hospital during an outage, removable media, connected medical devices, and the specific risk of shared workstations and shoulder surfing. It ends with downtime working — what clinical staff do when systems are gone — which is the part most training omits and the part that matters most.
2. Why this program
- Attacks staff actually encounter, not abstract threat models.
- Includes connected medical device risk.
- Covers shared workstations and clinical realities.
- Ends with downtime working. usually omitted
3. Who it is for
Nurse · Physician · Pharmacist · Medical Secretary · Allied Health · Lab Technician · Healthcare Manager
4. Program objectives
- Recognise phishing and social engineering targeted at healthcare staff
- Apply safe credential and authentication practice
- Describe how ransomware affects clinical operations
- Identify the risks introduced by connected medical devices
- Apply safe practice at shared and mobile workstations
- Operate safely during an unplanned systems outage
5. Learning outcomes
- Identify indicators of phishing in a described message
- Apply appropriate authentication practice to a given scenario
- Describe the clinical consequences of a ransomware outage
- Recognise device and removable-media risks in a described unit
- Apply safe practice to a shared workstation situation
- Plan clinical continuity actions for a systems downtime event
6. Curriculum
Module 1: Why Healthcare Is Targeted
- Why Healthcare Is Targeted
Module 2: Phishing and Social Engineering
- Phishing and Social Engineering
Module 3: Credentials and Access
- Credentials and Access
Module 4: Ransomware and Devices
- Ransomware and Devices
Module 5: Working Through Downtime
- Working Through Downtime
7. Duration and structure
Total study hours: 2.5 — 2h content + 0.5h assessment. Duration is expressed in study hours only.
9. What you receive
This certificate confirms completion of Cybersecurity for Healthcare Staff: Phishing, Ransomware and Devices. Duration is expressed in study hours.
10. Delivery format
Self-paced · start any time · any device · lifetime access to the enrolled version.
