Children's Wisconsin is a pediatric healthcare system operating over 40 locations across the state. The threat model here is clinical: protecting pediatric patient data, securing connected medical devices, and defending the digital infrastructure that supports everything from routine checkups to complex specialty care, foster care coordination, and adoption services. Founded in 1894, the system is independent and dedicated entirely to children and teens - no adult hospital network to lean on, which means security decisions are made with a singular focus.
The attack surface is a healthcare environment's standard sprawl: electronic health records, telehealth platforms, diagnostic imaging systems, and the operational technology running across more than 40 physical sites. Compliance isn't optional - it's HIPAA at the baseline, with additional regulatory layers tied to child welfare and social services data. The cybersecurity function operates in a space where a breach doesn't just mean downtime or ransom; it means compromised medical histories of minors, a category that carries unique legal and ethical weight.
For security professionals, the draw is operational clarity. This is a mission-driven organization where the stakes are concrete - children's health data, clinical workflows, and the systems that connect families to care. The technical challenges are real: distributed infrastructure, a mixed clinical-and-social-services environment, and an institution that predates digital medicine by a century. The culture signals suggest a team oriented around purpose over flash, with roots in a founding vision that Wisconsin's children deserve the healthiest possible start.





