惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Y
Y Combinator Blog
GbyAI
GbyAI
U
Unit 42
WordPress大学
WordPress大学
Last Week in AI
Last Week in AI
P
Proofpoint News Feed
D
DataBreaches.Net
N
Netflix TechBlog - Medium
H
Hackread – Cybersecurity News, Data Breaches, AI and More
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
C
Check Point Blog
Martin Fowler
Martin Fowler
月光博客
月光博客
MongoDB | Blog
MongoDB | Blog
MyScale Blog
MyScale Blog
The Cloudflare Blog
Apple Machine Learning Research
Apple Machine Learning Research
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
M
MIT News - Artificial intelligence
云风的 BLOG
云风的 BLOG
罗磊的独立博客
B
Blog RSS Feed
J
Java Code Geeks
The GitHub Blog
The GitHub Blog

Citrix Blogs

What’s left for humans? – Citrix Blogs Why this moment feels different – Citrix Blogs Introducing Citrix Platform for Public Sector – Citrix Blogs how our partnership with Google has matured secure access for the browser era – Citrix Blogs When session recording stops scaling – Citrix Blogs A conversation with Cletis Earle – Citrix Blogs Imprivata Ready Certification validates Citrix Unicon: A practical guide for healthcare IT – Citrix Blogs Skills are all you need – Citrix Blogs UHMC customers now have expanded Citrix Secure Private Access entitlement – Citrix Blogs How CIOs turn post‑merger disorder into a synergy engine – Citrix Blogs why your AI strategy is focused on the wrong layer – Citrix Blogs Securing high privileged admin access doesn’t have to be complicated – Citrix Blogs What will knowledge work be in 18 months? Look at what AI is doing to coding right now. – Citrix Blogs Untangling spaghetti – Citrix Blogs Workers’ “second brains” break every assumption about how we secure knowledge work – Citrix Blogs Taming integration chaos (the core of M&A failure) – Citrix Blogs OpenClaw and Moltbook preview the changes needed with corporate AI governance – Citrix Blogs Three years. Five Use Cases. A Leader: Citrix – Citrix Blogs The hard truths about hospital consolidation: An M&A guide for IT leaders – Citrix Blogs Why Citrix is the most complete EUC platform – Citrix Blogs Sign in once, get more done: Why continuous identity is a strategic advantage – Citrix Blogs Everyone’s worried about the wrong AI security risk – Citrix Blogs Security by design, proven by action with Citrix NetScaler – Citrix Blogs The invisible 80%—what corporate-led AI transformations can’t see – Citrix Blogs Workers don’t want to build automations. They want to delegate. – Citrix Blogs speed vs. security – Citrix Blogs AI will be THE interface to knowledge work. Here’s how we’ll get there. – Citrix Blogs Why I joined Citrix — and what it means for healthcare leaders – Citrix Blogs How the most successful CIOs are building successful merger and acquisition approaches – Citrix Blogs IT admits workers control AI. Workers admit they use it to leave at 5. – Citrix Blogs
Your EHR is only as resilient as the infrastructure benea...
Cletis Earle · 2026-05-29 · via Citrix Blogs

There is a question I get from healthcare IT leaders more often than almost any other: how do we justify the cost of our infrastructure when no one in the boardroom understands what it does?

My answer is always the same: they understand it the moment something goes wrong.

That is the reality of healthcare IT. We operate in near invisibility when things work and under a microscope when they do not. And nothing makes things go wrong faster, at greater scale, and with more direct consequence to patients, than the wrong decision about how to deliver your EHR.

I have spent a long time thinking about what separates health systems that recover from major disruptions quickly from those that spend days, weeks or months, clawing back to normal operations. The answer is almost always architectural. Not a vendor decision, not a budget decision, not a staffing decision. An architectural one.

“Choosing the wrong delivery model can mean higher costs, more downtime in a crisis, and frustrated end-users; choosing the right model can improve uptime, contain cyber risks, and save millions of dollars over time.” – Envision IT, Epic Healthcare Delivery Models

The stakes have changed

Healthcare has always been a high-stakes environment for IT. But the threat landscape and the regulatory environment have converged in a way that makes EHR delivery architecture more consequential than it has ever been. Ransomware attacks are not a theoretical risk. Scripps Health lost four weeks of EHR access and $112.7 million in a single event. The wave of attacks targeting our sector is not slowing down.

At the same time, proposed HIPAA updates would require health systems to restore EHR access within 72 hours of a cyber incident. That is not a standard most thick-client environments can meet. I have watched organizations do the math after an event and realize—sometimes for the first time—what their architecture actually costs them when it fails.

That moment of recognition should happen before the incident, not after.

What the CrowdStrike event taught us

The 2024 CrowdStrike outage was painful for a lot of organizations, and it was clarifying for all of us. The recovery data tells a story that every CIO in healthcare should have in front of their leadership team.

“Three engineers recovered 18,000 thin client VDI desktops in four hours. At the same organization, a team of 150 IT staff needed nearly four days to recover 2,500 Windows PCs.” — Envision IT, Epic Healthcare Delivery Models

Read that again. Three people. Four hours. Eighteen thousand endpoints.

That is not a coincidence. That is architecture. When your EHR and clinical applications are delivered from a centralized platform through a single master VDI image, recovery simply means reverting that image. It means a reboot, not a rebuild. The contrast with decentralized, locally installed environments, where every affected device must be touched individually, should be a defining data point in every EHR delivery conversation your team is having right now.

This is a business decision, not a technical one

I want to be direct about something, because I think we do ourselves a disservice when we frame EHR delivery as an infrastructure question. It is not.

Every day your EHR is inaccessible, the patient safety clock starts.You lose revenue. Canceled procedures, delayed billing, ambulance diversion, and the cost of paper fallback workflows. These are not abstractions. The moment a clinician cannot reach Epic, the financial and care impacts start to compound, and your path back to normalcy gets farther away.

The architecture decision you make about EHR delivery shapes your organization’s ability to recover when things go wrong, your security posture, your total cost of ownership, and your ability to adapt as care models and regulations continue to evolve.

That is a strategic conversation. It belongs in the boardroom, not just the server room.

Independent research backs this up. Thin client VDI environments deliver 20 to 40 percent lower total cost of ownership than full PC deployments when you account for hardware, energy, and support costs over time. IT staffing ratios shift from roughly one admin per 60 endpoints to one per 500 to 1,000. And because no patient data lives on the device itself, a lost or stolen thin client is a nuisance, not a breach.

“Broad architectural decisions often have impacts that last for years. These choices can either limit or enable the system’s ability to quickly adapt to evolving market demands, regulatory requirements, or technological advancements.” — Envision IT, Epic Healthcare Delivery Models

What I tell other IT leaders

When a colleague asks me where to start, I tell them to stop framing EHR delivery as a technology problem and start framing it as a business continuity and risk management problem. Then take it to your CFO, your CMO, and your board with that framing, using a governance framework to align disaster preparedness activities and bring operations into active tabletop business resiliency exercises.

Show them the recovery data. Model the TCO difference. Walk them through what a 72-hour HIPAA restoration requirement means for your current architecture. The conversation changes when the numbers are on the table.

We have a responsibility to the patients and clinicians who depend on these systems every single day. That responsibility does not end at the edge of the server room. It extends to every endpoint, every workflow, and every decision we make about how those systems are delivered.

The architecture decision is the most important one you will make. Make it with intention.

For an independent, data-driven comparison of EHR delivery models across cost, risk, flexibility, and operational impact, read the Envision IT whitepaper: Epic Healthcare Delivery Models.