Cyber Survivor

Dan Dodson

Welcome to ”Cyber Survivor,” where host Dan Dodson uncovers the stories of resilience and innovation in healthcare cybersecurity. Explore real-world insights from doctors, administrators, and IT professionals on safeguarding data and privacy amid modern digital challenges. Join us for essential strategies and tales of triumph in the fight against cyber threats.

  1. May 28

    Episode 34- Robots, Paper Charts, And One Very Long Day.

    A cyber event doesn’t feel “digital” when you’re the one on the gurney. We’re joined by Jack, who shares his story anonymously after being impacted as a patient during a hospital cyber incident while being treated for prostate cancer. He takes us from pre-surgery nerves to the uncomfortable reality of not fully knowing what’s happening once you’re under anesthesia and relying on a care team, technology, and processes you can’t see.  We talk about robotic-assisted surgery and why connected medical devices can raise new questions in the patient’s mind, even when the clinical goal is the safest, most effective approach. Jack describes waking up to an unexpected timeline, hearing bits and pieces about “something” going wrong, and then dealing with a major post-op life change: learning to live with a temporary colostomy bag. It’s an unfiltered reminder that ransomware in healthcare, EHR downtime, and operational disruption can ripple into real patient outcomes, comfort, and trust.  We also dig into what he noticed on the hospital floor when systems went down, including the shift to paper charting and how staff handled conversation around the disruption. Along the way, we wrestle with a tough question for healthcare leaders, administrators, and cybersecurity teams: how transparent should hospitals be with patients during and after a cyberattack, and what does “enough information” look like when care must continue?  If you care about patient safety, healthcare cybersecurity, and the human side of incident response, listen and share this story with someone who needs to hear it. Subscribe to Cyber Survivor, leave a review, and tell us your take: what would you want your hospital to communicate if systems failed?

    13 min
  2. May 14

    Episode 33- What Happens To Patients When Clinics Get Hacked

    A handwritten note on a doctor’s office door doesn’t sound like the start of a cybersecurity story until you realize the clinic can’t even tell you why they’re closed. I’m Dan Dotson, and I sit down with our second John Doe, who’s spent nearly two decades in healthcare cybersecurity, to unpack what it feels like when the crisis you usually defend against suddenly hits you as a patient. John walks us through the surreal details: an eerily empty parking lot, dark hallways, no call despite an appointment confirmed the day before, and a weekend of waiting with unanswered questions. When he finally reaches the office, he hears the words no patient wants to hear: “We got hacked.” From there, we dig into the real-world impact of a clinic cyberattack, including delayed care, postponed referrals and tests, and the mental load of wondering whether your protected health information is exposed. We also get specific about what healthcare leaders can do better: incident response plans that include patient communication, scripts and training for front-desk teams, escalation paths for tough calls, and a thoughtful approach that protects trust while facts are still emerging. If you care about healthcare cybersecurity, ransomware resilience, patient safety, or HIPAA-era communication, this story connects the technical and human sides in a way that sticks. Subscribe to Cyber Survivor, share this with someone who works in healthcare, and leave a review so more people hear how cybersecurity protects patients. What would you expect your clinic to say if their systems went down?

    24 min
  3. Apr 30

    Episode 32- A Patient’s Story From Inside A Ransomware Attack

    The scariest words in a hospital shouldn’t be “systems are down,” but that’s exactly what John hears while he’s lying in a bed with crushing pain, fever, and doctors worried an infection could be moving toward sepsis. He came in expecting fast answers and coordinated care. Instead, he watches a modern emergency workflow buckle under a ransomware incident, and he feels the emotional whiplash that comes when patient safety suddenly depends on clipboards, phone calls, and memory. We talk through what a healthcare cyberattack looks like from the patient’s side: staff scrambling to find orders they can’t see, “shortly” turning into long delays for antibiotics, lab results arriving slowly or needing retesting, and the constant uncertainty of not knowing what comes next. John describes how electronic health record downtime changes the tone of care, not because clinicians stop caring, but because systems that normally keep treatment organized and safe are no longer available. The result is a roller coaster of fear, especially when every minute feels like it matters. Then we follow the story past the hospital stay. John ends up admitted longer than expected, leaves with shaken confidence in the health system, and receives no post-discharge outreach or apology. That silence becomes part of the lasting impact, raising a hard question for healthcare cybersecurity leaders, IT teams, and administrators: how do we rebuild trust after ransomware, and how do we communicate in a way that supports patients without creating more confusion? If you care about ransomware defense, incident response, patient safety, and cyber resilience in healthcare, listen now, then subscribe, share the episode with someone in healthcare, and leave a review so more people hear what downtime really costs.

    30 min
  4. Apr 16

    Episode 31- Healthcare Downtime Ready. With Dr. Mark Yoffe, MD

    A hospital can survive a lot, but it cannot treat patients when core clinical systems go dark. We sit down with Dr. Mark Yoffe, a physician who also thinks like a cybersecurity leader, to unpack what healthcare cyber risk really looks like from the bedside. As electronic health records replaced paper charts, care got faster and more coordinated, but the blast radius of outages, ransomware, and credential theft grew right along with it. The result is a modern truth most communities now feel: cybersecurity is not just about data, it is about keeping care available. We use the confidentiality, integrity, and availability triad as a practical lens for clinicians and IT teams. Why do physicians often prioritize availability in the ED and ICU? How do security controls like multifactor authentication support uptime, not just privacy? And what does real downtime readiness look like when a team is busy, short-staffed, and under pressure? Dr. Yoffe shares concrete steps that help: clearer downtime alerts, knowing exactly what systems are affected, paper forms staged throughout the hospital, and a plan for post-downtime reconciliation so the record stays accurate. We also dig into what actually wins physician buy-in. Instead of leading with restrictions, start by solving access and workflow pain points and show how security enables reliable clinical operations. From safer device habits and avoiding insecure SMS texting to case-based training that mirrors how clinicians learn, we outline education that sticks. Finally, we explore AI in healthcare documentation: where it can cut charting time, where privacy and cloud processing raise red flags, and why keeping a human in the loop protects record integrity. If you care about patient safety, healthcare cybersecurity, EHR downtime planning, and the future of AI in clinical workflow, hit subscribe, share this with a colleague, and leave a review with your biggest question about cyber readiness.

    37 min
  5. Apr 2

    Episode 30- When The Hospital Screens Go Dark. With Jane Doe

    The scariest part of a healthcare cyberattack isn’t the headline. It’s the quiet moment a clinician realizes they can’t register a patient, scan a medication, verify a dose, or send a lab order and the waiting room is still filling up. We sit down with an anonymous frontline nurse we call Jane Doe and walk through what “normal” looks like in a busy pediatric clinic: constant triage, newborn and well visits, vaccines, sick kids, and nonstop coordination. Then the systems go dark. No EHR, no barcode scanning, no electronic medication checks, no easy way to move information. Care doesn’t stop, but it slows and every workaround carries risk. Jane explains what paper charting feels like today, why newer doctors and residents can be thrown off by manual processes, and how stress shifts from “can we do this?” to “can we do this safely and on time?” We also zoom out to the bigger healthcare cybersecurity story: why downtime planning matters, how hospitals redeploy staff to keep labs and floors running, and why “cybersecurity is a dollar away from the bedside” is a real budget fight with real patient safety consequences. Jane shares how the experience changed her view of how fragile health systems can be and reflects on how nursing has evolved from family-centered care to a faster throughput model that can make cyber disruption hit even harder. If you care about patient safety, hospital resilience, ransomware risk, and practical incident response in healthcare, listen now. Subscribe to Cyber Survivor, share this story with a colleague, and leave a review so more people hear what cyber events really do to care.

    22 min
  6. Mar 5

    Episode 28 Healthcare Cyber Resilience, Explained. With Eric Enos

    What happens when a hospital’s voice system fails during a cyber event? Not just dropped calls—entire care workflows unravel. In this conversation with Eric Enos, CTO at LifePoint, we pull back the curtain on how modern care really runs and why resilience, not raw uptime, is the metric that matters. From EHR dependence to nurse call routing and location awareness, the hidden mesh of systems that power bedside care can become a single point of failure if teams design for availability instead of continuity. We start with the shift that put IT at the bedside: EMRs, decision support, ambient listening, and the promise of higher quality, faster coordination, and fewer errors. Then we confront the tradeoffs—expanded attack surfaces from SaaS, networks, and rapid consolidation. Eric explains why M&A without rigorous standardization balloons technical debt, complicates patching and incident response, and leaves organizations defending multiple aging platforms. The fix isn’t fancy: map real clinical workflows first, then align infrastructure, identity, and communications under them. Resilience means controlled degradation. If malware isolates a facility, SD‑WAN failover won’t matter; local downtime tools, voice redundancy, and independent communications paths will. We unpack practical steps: cross-functional tabletop exercises led by operators, end-to-end dependency mapping, and governance that keeps security and infrastructure rowing together. Then we get into AI. Treat LLMs like the smartest new employee—useful, fast, and fallible. Keep a human in the loop, establish clear guardrails, and confront open questions around liability and trust before letting AI drive patient-critical actions. If you care about healthcare cybersecurity, clinical operations, and the future of AI in hospitals, this episode delivers grounded strategies you can use now: protect workflows, reduce technical debt, and design systems that bend without breaking. Subscribe, share with a colleague on your clinical or security team, and leave a review with one change you’ll make to strengthen resilience this quarter.

    30 min
  7. Feb 19

    Episode 27- Boards, Risk, And The Cyber Front Line. with Richard Helppie

    Imagine the LED lights are on, clinicians are ready, and every screen goes dark. That’s the moment when governance—not gadgets—keeps care moving. We sit down with healthcare IT leader and board veteran Richard Helppie to chart a practical path for hospital boards to own cybersecurity as a top strategic risk, not a backend tech chore. We start by separating governance from operations and translating cyber into the risk language directors already use. Rich shares how to make cybersecurity a standing board item, recruit at least one cyber-comfortable director, and ask the questions that matter: what are our biggest threats, how are we mitigating them, how will we know when we’re breached, and how fast can we recover? Dan adds a simple framing that works: present cyber with the same dashboards and cadence as finance and patient safety so leaders can weigh tradeoffs with clarity. Then we get real about downtime. Many clinicians have never practiced on paper, and backups are now a prime target. We cover ransomware pressures, insurance posture, recovery objectives, and third-party risk—from supply chains to physician groups and patient portals. Human factors dominate the breach path, with phishing and help desk vishing exploiting speed-focused KPIs. The fix is cultural and operational: slow down where it counts, verify identities, harden processes, and measure cyber like hospital-acquired infections. AI threads through the conversation as both opportunity and attack surface. Waiting to “see what happens” is not a strategy. We outline the early governance questions boards should ask about data leakage, model access, and monitoring, and how to pair innovation with guardrails. To win investment and attention, Rich offers a three-point board briefing—why cyber matters, what program is in place, and what’s needed to close gaps—and explains why tabletop exercises with executives, vendors, and select directors consistently shift mindsets from denial to readiness. If you care about resilient care delivery, boardroom clarity, and practical defenses that work when systems fail, you’ll find a usable playbook here. Subscribe, share with a colleague who presents to boards, and leave a review with the one question you want every hospital board to ask about cybersecurity.

    28 min

Ratings & Reviews

5
out of 5
8 Ratings

About

Welcome to ”Cyber Survivor,” where host Dan Dodson uncovers the stories of resilience and innovation in healthcare cybersecurity. Explore real-world insights from doctors, administrators, and IT professionals on safeguarding data and privacy amid modern digital challenges. Join us for essential strategies and tales of triumph in the fight against cyber threats.

You Might Also Like