Securing Patient Data: Shared Responsibility in Action
Wednesday, October 15, 2025 | 11:00 A.M. ET
How secure are your healthcare workloads in the cloud? With patient data under constant threat, healthcare organizations face unique challenges in meeting HIPAA compliance and protecting sensitive information. While many healthcare organizations are embracing the cloud, many still struggle to navigate the shared responsibility model -- where cloud providers secure the infrastructure, while healthcare providers remain accountable for protecting patient data, workloads, and applications. In this webinar, our CIS experts will break down how CIS Hardened Images help healthcare organizations meet their responsibilities under the shared model, strengthen their HIPAA compliance, and streamline cloud security.
By joining this webinar, you'll learn:
- How the shared responsibility model impacts cloud security for healthcare organizations and what providers are responsible for securing.
- What CIS Hardened Images® are and how they help streamline HIPAA compliance and other regulatory frameworks
- When to leverage pre-hardened images and adhere to security best practices.
- Why adopting a security-by-default approach reduces risk, cost, and resource allocation.
- Where to access CIS resources that support ongoing security and compliance in the cloud.
Register
About Our Presenters
Erin Dayton
Cloud Team Manager & Product Owner
Erin Dayton is the Cloud Team Manager and Product Owner at the Center for Internet Security (CIS) overseeing the technical development, production and releases of CIS Hardened Images. With over 10 years of experience in cybersecurity at CIS, Erin has spent the last eight years dedicated to the evolution of CIS Hardened Images in AWS, Microsoft Azure, Google Cloud, and Oracle Cloud Platform. Erin remains unrelenting in her pursuit of user feedback, product improvement, and complex problem solving.
Mishal Makshood
Sr. Cloud Security Account Executive
Mishal Makshood has spent the past five years at the Center for Internet Security (CIS) with a dedicated focus on cloud security. Over this time, his work has centered on helping organizations strengthen their cyber life cycles—building from the principle of starting secure and staying secure. His expertise lies in improving organizational security hygiene and enabling better operational resilience across major cloud platforms, including AWS, Google Cloud Platform (GCP), Oracle Cloud, and Microsoft Azure. Through this, Mishal has guided enterprises in adopting secure baselines, aligning with compliance frameworks, and creating long-term security strategies that adapt to evolving threats.
Thomas Sager
Cybersecurity Engineer, CIS Controls Team
Thomas Sager is the self-styled “Chief Cartographer” of the CIS Controls, where he tries to turn cybersecurity frameworks into usable advice on prioritization and where to start. Primarily this means providing and developing mappings to other frameworks which may be more onerous or industry specific, working with the other publishing entity or a team of industry volunteers whenever possible. There he uses skills developed during his previous work as a commercial security consultant to bridge the gaps between security controls as written and those responsible for implementing them.