How Strive Health Ensures Data Security: A Comprehensive Six-Step Approach 

Author : Strive Health

Digital tools can make life easier and streamline the healthcare experience. Healthcare providers use electronic health records (EHRs) and digital systems to manage patient information and deliver better care.

Although technology improves care, it can also raise concerns about the security of sensitive patient information.

“A holistic security program is like an onion,” said Gabe Stapleton, VP of Security and Enterprise Technology at Strive Health. “There are multiple layers of protection in place. So, when one layer fails, several more are still protecting your information.”

Learn how Strive keeps healthcare information secure — and how individuals can apply the same approach to protect their own personal data.

A Data Security Program Built on Trust

Strive built its security program using the gold standard from the very start. Strive maintains a HITRUST CSF® certification, which Stapleton calls “the foundational layer of a good security program in healthcare.”

Strive takes over 300 security measures to protect patient data and limit access points to sensitive information. They fall into the six steps HITRUST recommends for maintaining a robust security system:

  1. Identify — Find the assets you need to protect and create a safety plan.  
  1. Protect — Put layers of defense into place.  
  1. Detect — Receive alerts so you know when something goes wrong.  
  1. Respond — Plan for and react to a security alert.  
  1. Recover — Retrieve the data lost after an incident. 
  1. Repeat — Cycle back through each phase to improve security.  

Data security risks don’t exclusively stem from technology itself. Often, it is how people use technology. Strive provides thorough, ongoing education to all Strivers, aka employees.

“The primary method of attack is through phishing emails and scams,” Stapleton said. “We train and test employees so they can identify phishing emails and know what to do if they receive one.”

Strive’s technology systems all require two or more credentials to log in — security called multifactor authentication.

“We do this across our entire company as an initial stopgap if a password is compromised,” Stapleton said.

6 Steps to Improve Personal Data Security

Most people rely on the Internet to communicate, shop and so much more. People share bits of personal information in many different places online. To protect personal information, use these same steps.

First, it’s helpful to start with the fundamentals. Stapleton recommends people start with training resources like those offered by the state of Pennsylvania to learn about cybersecurity. These resources provide valuable context for this six-step approach.

Step 1. Identify

• Create a list of your accounts — email, social media, banking — and prioritize protecting the critical accounts first.

• Create a list of your devices: phone, laptop, tablet, smart home devices and home network.

Step 2. Protect

• Use passwords, fingerprints or facial recognition for all your devices.

• Create a unique password for every account. Never reuse passwords.

• Find a password manager to help you keep track of login information and passwords.

• Use multifactor authentication on any accounts that offer it. If critical accounts with sensitive information don’t offer multifactor authentication, consider switching to another provider that does.

• Receive training on how to protect yourself online. Your actions are your first layer of defense. Learning how to spot threats online will keep you safe.

Step 3. Detect

• Configure alert settings in your accounts and devices. Have them text or email you when they find suspicious activity.

• Sign up for a credit monitoring service (some credit cards come with these). They will alert you to changes in your credit and suspicious online activity associated with your email account.

Step 4. Respond

• When an account detects suspicious activity, change your password quickly.

• You may have provided information online that you shouldn’t have. As soon as you realize it, access the correct site and change your account password.

Step 5. Recover

• Social media sites are difficult to recover from an attacker because they don’t verify your identity upon joining. Therefore, they can’t verify whether you or the attacker rightfully owns the account.

• You can recover your profile for banking sites or other platforms that verify your identity when you join. Contact the institution as quickly as possible after an attack so they can stop all account activity until you are back in control.

Step 6. Repeat

• Regularly implement these steps for all accounts on your list.

By layering protection, Strive keeps patient data more secure. The same approach can also be applied to safeguard your personal online habits.

To read more about Strive’s HITRUST certification, click here.


Get in Touch

Questions about care services, a partnership or anything else? We’re here to answer them.  

Get in Touch

Health and Well Being

We care about your physical well-being, so your insurance starts the day you join strive.

Medical, Dental & Vision
We offer a variety of medical (HMO, PPO and HDHP) plans through United Healthcare and Kaiser, two dental plans and one comprehensive vision plan.

Life & Supplemental Insurance
Strivers are provided 100% employer-paid life insurance, short-term disability and long-term disability coverage as of your start date. Additional supplemental insurance, including accident, life and critical illness, are available.

Flexibility and Time Off

Transformational work takes high performance. We believe Strivers perform better when they are fully charged, so we provide flexibility to support your inner well-being.

Hybrid-Remote Work
Our hybrid-remote approach ensures team members can work from home while collaborating in person when needed. Strive provides a full technology package and monthly technology reimbursement.

Vacation Time
Full-time, regularly scheduled Strivers can use vacation time for travel, relaxation or volunteering.

Sick Time
Life happens, so we provide up to two weeks of paid time off annually for illness, medical care, caregiving responsibilities and other types of emergencies.

Well-Being Days
Annual Strive-wide well-being days off provide Strivers the opportunity to focus solely on their well-being.

Paid Holidays
Annual Strive-wide holidays allow all Strivers to disconnect together to reflect and celebrate.

Paid Leave
Our 12 weeks of paid birth giving leave and four weeks of paid bonding leave start day one. We provide a four-week paid sabbatical after five years to return recharged. In alignment to our mission, we offer a paid living donor leave if any Strivers choose to become a living donor.

Other Perks

The needs of every Striver are different, so we ensure our benefits support a wide range of community, family and professional well-being.

Retirement and Financial Planning
Strive provides a 401k with an employer match, access to the Best-Interest Advice program and our financial planning tools, Empower and SoFi.

Employee Resource Groups (ERGs)
Strive is dedicated to promoting a sense of community and at work. We currently offer Parents/Guardians/Caregivers, Strive Forward (LGBTQIA+), Underrepresented Minorities, Women & Allies and Veterans’ ERGs.

Mental Health Platforms & Employee Assistance Programs
Strivers have access to Headspace Care through Kaiser, Calm Health through both medical carriers and a full-service Employee Assistance Program.

Family-Forming Support
Strive partners with Maven Maternity through UHC. Strivers enrolled in UHC gain access to Maven’s virtual platform designed to support women’s and family health. Maven provides personalized, on-demand guidance for navigating family-building, pregnancy, postpartum and parenting journeys.

Strivers enrolled in Kaiser will still have access to their Birth-Giving Support Program that includes prenatal care, labor and delivery support, postpartum and newborn care and additional services.

Professional Development
Strive supports growth through annual professional development reimbursements, paid time off for clinical licensure requirements and tuition discounts through CSU Global.

Employee Discounts
Strive offers Fetch for pet insurance since we know that your pets are part of your family. Strivers also enjoy PerkSpot for product discounts such as gyms and daycares near you, electronics, hotels and more. The best part? PerkSpot is customizable to your interests.