Saturday, April 16, 2011

Office 2010 Ribbon Bar to Menu Pull Down Help

We have been converting many of our Clients to Microsoft Office 2010 from various older versions of Office.  Overall, everything is going well.  However, for some Clients the Ribbon Bar, introduced in Office 2007, is causing some problems.  Even though the design of the Ribbon Bar is supposed to make finding all the the various Office functions easier, it can actually be more difficult for those that have already created a mental path to finding those functions in the old menu pull downs.  This appears to be a common problem.  To address the issue, Microsoft has created several tools to help users make the change.  You can find them here.

image

I have found that the Ribbon Bar is actually easier to use, but I do find that sometimes I just can’t find something that I used to be able to locate pretty quickly.  By using these tools and a little replication I can get my brain to accept the change.

Friday, March 18, 2011

Medi-Span Update Distribution Changes

Wolters Kluwer, the company that owns Medi-Span, is making changes to the way it distributes the quarterly drug database updates.  After June 30th 2011 they will no longer ship the updates via CD.  Instead, they will publish the updates to a website to be downloaded.  This means there will be one more CD update covering 2Q11.  After that customers will need to download the updates from the website.

This affects our Allscripts Clients.  We have partnered with Wolters Kluwer to take care of the whole process for our Clients.  We will create the necessary website account and set up the process.  For those Clients that we manage the Medi-Span updates, we will download and install them when they are released.  We will be notified by Wolters Kluwer when updates are released.  At that point we will download the updates and schedule an after hours installation.

In order for Allscripts Clients to be able to utilize the downloadable updates Allscripts must be at version 7.0.1.36 or higher. Clients that wish to have us take care of the registration process can simply contact our office.

Tuesday, March 15, 2011

Internet Explorer 9 Released

The latest version of Internet Explorer was released on 3/14/11.  Version 9 is more secure, faster and sports an updated user interface.  On the technical side, it supports HTML5 very well.  The new user interface is much slimmer than previous versions allowing for more viewing area.  It takes advantage of hardware acceleration which allows for a very fast browsing experience.  Expect some pretty neat stuff when web developers start taking advantage of IE9’s display capabilities.  The address and search bar are now combined in the One Box.  It takes a little getting used to, but quickly feels like the right way to work. 

IE9 is tightly integrated with Windows 7.  It also runs in Windows Vista but not Windows XP.  Websites can be pinned to the taskbar and/or start menu in Windows 7.  IE9 also allows users to protect themselves from marketing tracking that occurs on many if not most websites.  You can manually block tracking on specific websites or utilize predefined lists that are provided by several Microsoft partners. 

IE9 is much more standards compliant than previous versions of IE.  While not perfect, it really does work much better on more sites than in the past.  It’s adherence to HTML5 specs will insure that this is true moving forward as well.

I have been using IE9 for about 8 months.  Other than the typical “beta issues” that comes with running beta software, it has been pretty good.  By the time the Release Candidate was available, IE9 was pretty solid.   Now that the final product has been released, it’s certainly worthy of replacing your existing browser.  As with all new software, we do suggest taking some time to test IE9 in your specific environment to insure that your critical websites work properly before you roll it out to your devices.  It’s a solid product.  It will make browsing the internet safer, faster and much more enjoyable.

Saturday, January 22, 2011

What is YOUR Time Worth?

It seems like we go through phases when Clients or prospects begin asking whether they can do some of their own network support.  Of course this really starts coming up more often when the economy is in a poor condition.  We always try to get our Clients to take on some of the basic day to day support tasks.  For instance, why pay us to replace a mouse or keyboard.  In some cases, if the Client has a little more technical expertise we will help them take on higher level tasks.  However, when it comes to items they may affect the security or reliability of their network, we draw the line.

Most often these requests are based on perceived costs.  “If I do the task myself I don’t have to pay you and therefore I save money.”  In the case of lower level tasks that may be true.  However, in higher level tasks it may not only be untrue but can also be disastrous.

First, let’s think about pure cost.  Over the years I have had doctors, lawyers, business owners and other high level people attempt to do their own network support.  Let’s say that an IT Pro charges $100.00 per hour.  A problem occurs on the network.  The doctor, lawyer, business owner does his/her own troubleshooting and tries to resolve the issue his or herself.  Let’s even say they get things going.  Perhaps it took several hours, maybe a day, maybe more.  So we saved the cost of the IT person, right?  Probably not.  Consider this.  How much is the value of that doctor’s, lawyer’s, etc time?  In most cases, the value of that persons time far exceeds the $100.00 that the IT Pro would have charged.  Beyond that, how much faster would the IT Pro have solved the problem?  If we just estimate half the time, how much is that in downtime cost to the organization?  Do you know how much it costs your organization for every hour of downtime?

Another perhaps even more serious consideration is even if the network is up and running again, what might you have missed?  Perhaps the hard drive is failing and simply turning the server off and on cleared the immediate problem.  Everyone goes back to work and after a few minutes, hours, days, or weeks it goes down again.  This time this system will not come up and after more time is spent trying to fix the problem you call in an IT Pro.  What he or she finds is that not only is the hard drive now completely dead, the backup has not been running since the original issue.  What is the cost of all that lost work?

While it is true that Clients have the capability to fix simple IT related problems, in most cases the perceived cost savings by trying to handle more involved IT issues is simply not there.  And in some cases the results can be disastrous.

Monday, November 15, 2010

EPHI Information Breach Concerns

As most of our health care Clients are probably already aware, a VNA here in Connecticut was in the news recently and it wasn’t good news.  A nurse’s laptop was stolen from her car.  The laptop contained information on around 12,000 patients. 

Almost immediately, we started getting inquiries from some of our health care Clients asking about the security of their laptops.  I decided to write this blog post to respond to these inquiries in a fashion that will hopefully help all our health care Clients.

First, laptops should be encrypted.  Encryption insures that if a laptop is stolen or lost the information on the hard drive cannot be accessed by taking the drive out of the laptop and trying to access it in another device.  Having a laptop encrypted means that if a laptop is stolen or lost you would not have to report it as required by HiTech/HIPAA.

Covered entities and business associates must only provide the required notification if the breach involved unsecured protected health information.  Unsecured protected health information is protected health information that has not been rendered unusable, unreadable, or indecipherable to unauthorized individuals through the use of a technology or methodology specified by the Secretary in guidance. 

We use TrueCrypt, a free open source encryption tool to encrypt devices.  There are some things to know about encrypting laptops.  First, it is time consuming.  Encrypting a brand new laptop can take 2 or more hours depending on the size of the hard drive and the speed of the laptop.  It can take 4 or more hours on an older laptop.  It can also affect the performance of the laptop, especially older laptops that are already running slow.  Once the laptop is encrypted, the user will need to enter two passwords to start the laptop up.  (there are several variations on how data can be encrypted)  If the encryption key is lost, the data on the laptop is lost (we have processes in place to make sure the key is not lost)

Now come the hard facts.  A large portion of the laptops we work on have the password attached to the laptop somewhere.  Do you know if that is happening in your practice?  If the password is exposed you have no security, even if the laptop is encrypted.  Also, if the device is left logged on when it is being moved from location to location, you don’t have security either.  If the laptop is lost or stolen, one simply needs to open the laptop and all the data is exposed.  Again encryption doesn’t matter.

We have been getting inquiries as to whether an organizations laptops are encrypted or not.  While this is a good question to ask, I’m afraid that you should already know the answer to the question.  Also, this is not the only question to ask.  What are your security policies relative to the laptops and your EPHI in general?  Are your nurses and other staff aware of the policies and are they following them?  What are the consequences if they don’t follow them.  What happens if there is a breach?  Does everyone in your organization know what the protocol is?  If the media is asking questions, do you have a protocol in place?  When was the last time you changed passwords? Do you have an inventory of all your devices?  How often is it checked to see if anything is missing? etc., etc.

Unfortunately, security and ease of use are not synonymous. Security can be painful.  We have to remember complex passwords and follow rules that make our jobs just a little more difficult.  However, it is imperative that security be taken seriously today, in our personal and professional lives.  We do not want to be the next security related news story.

Feel free to contact us if you would like to review your security status.