Netwrix Report Reveals Growing Identity Security Risks in Healthcare

0
Netwrix has released new healthcare findings from its 2026 Data and Identity Security Report, highlighting increased risks surrounding unauthorized access to sensitive information. The research found that 31% of healthcare organizations experienced unauthorized identities accessing sensitive data during the past year, compared with 24% across other industries. Among healthcare organizations that experienced an incident, 33% reported costs exceeding $250,000, versus 21% in other sectors.

Healthcare also ranked lowest among 16 industries for confidence that its Active Directory (AD) environments are free of privilege escalation risks, with 86% lacking full confidence in their Active Directory security. Only 14% of healthcare organizations said they were fully confident, compared with 26% across all industries.

“In healthcare, nobody is starting from a clean slate,” said Jeff Warren, Chief Product Officer at Netwrix. “These environments are built on decades of legacy systems, typically underpinned by Active Directory and all the permissions that have accumulated in it. Instead of inheriting the access you meant to give it, an AI agent inherits what’s already there.”

AI is adding identities faster than healthcare can govern them

Seventy-nine percent of healthcare organizations said their non-human identities are not fully governed. Seventy-five percent said AI and automation have increased identity-related risk to sensitive data over the past two years, and 70% said their data access governance is behind the speed of AI adoption.

Most healthcare organizations can’t immediately see who has access

Seventy-seven percent can’t immediately determine who has access to a specific piece of sensitive data, a challenge that AI is likely to exacerbate as agents proliferate. Sixty-one percent said it would take hours and multiple tools. Forty-eight percent said a compromised identity is the most common starting point for unauthorized access to sensitive data.

An account with limited permissions in Active Directory can still have a route to more sensitive resources through relationships such as delegation and group membership. Permissions that are no longer needed can make those paths harder to identify. Netwrix PingCastle assesses Active Directory environments for security risks and provides remediation guidance.

“Before adding more AI agents and other non-human identities, healthcare organizations need to understand the access that’s already there,” said Darryl Baker, Senior Staff Security Researcher at Netwrix. “An account can appear to be pretty limited and still have a route to something much more sensitive. Proactively discovering privilege escalation paths and cleaning up permissions give you a much clearer view of what you’re handing to a new identity.”

Methodology

The Netwrix 2026 Data and Identity Security Report is based on a global survey of 2,317 security professionals conducted in early 2026. The research benchmarked 1,889 organizations across more than 60 industries and 12 security dimensions.

The healthcare findings are based on 145 healthcare respondents, primarily in the United States. Sixteen industries had sufficient representation for industry-level comparisons. Healthcare responses were compared with responses from other industries where noted.

Additional Resources

Download the Netwrix 2026 Data and Identity Security Report

For more information, visit: https://netwrix.com/en/

Related News:

SonicWall Healthcare Protect Report Reveals Escalating Cyber Threats

Netwrix Expands Microsoft Cloud Security for AI Agent Identities

Share.

About Author

Leigh Porter's first love is to love people. Beginning her career as a neonatal RN was an obvious choice until life threw the curve ball to embark on a new IT endeavor. Pursuing this fresh career was a piece of cake with her resilient and steadfast character. Outside of the office, Leigh also diligently gives much of her time faithfully as a nationally awarded volunteer leader to a very dear to her heart organization.