TechSolution: Ransomware
Response Proposal
Prepared for the Hospital Board
ITPP5112A2 | 2025
1. Introduction: The Threat of
Ransomware
• • Ransomware encrypts hospital data,
disrupting patient care.
• • Cybercrime ranked among top 10 global
risks (World Economic Forum).
• • Healthcare is a prime target due to reliance
on digital systems.
• • Example: NotPetya attack highlighted global
healthcare vulnerability.
2. Role of IT Professionals and
Ethics
• • TechSolution IT experts specialise in
containment, recovery, and security.
• • Guided by ISC², ISACA, and IITPSA Codes of
Conduct.
• • Uphold integrity, confidentiality, and
compliance with POPIA.
• • Ethical governance and responsible incident
management are priorities.
3. Attack Entry and Immediate
Actions
• • Likely entry points: phishing, weak
passwords, or unpatched software.
• • Immediate response:
• – Isolate infected systems and stop data
backups.
• – Notify authorities and stakeholders.
• – Restore critical systems first to ensure
patient safety.
4. Ransomware Removal and
Continuity
• • Use verified clean backups – never pay
ransom.
• • Conduct forensic investigation to remove all
traces.
• • Activate Business Continuity Plan (BCP):
• – Secure isolated networks.
• – Temporary manual processes for patient
data.
• – Real-time monitoring by TechSolution.
5. Long-term Prevention and
Compliance
• • Implement multi-factor authentication and
strong passwords.
• • Regular software updates and vulnerability
assessments.
• • Conduct staff cybersecurity awareness
training.
• • Align with ISO/IEC 27001 and POPIA
standards.
• • Maintain encrypted offsite backups and
frequent audits.
6. Conclusion
• • Cybercrime poses an ongoing threat to
healthcare.
• • TechSolution ensures recovery through
ethical, technical, and legal practices.
• • Our holistic strategy prioritises patient
safety, operational resilience, and data
integrity.
• • Together, we can build a cyber-resilient
healthcare environment.