首页> 外文会议>MEDINFO >Concepts for a Standard based Cross-organisational Information Security Management System in the Context of a Nationwide EHR
【24h】

Concepts for a Standard based Cross-organisational Information Security Management System in the Context of a Nationwide EHR

机译:基于标准的基于跨组织信息安全管理系统的概念在全国范围内的EHR的背景下

获取原文

摘要

Working with health related data necessitates appropriate levels of security and privacy. Information security, meaning ensuring confidentiality, integrity, and availability, is more organizational, than technical in nature. It includes many organizational and management measures, is based on well-defined security roles, processes, and documents, and needs permanent adaption of security policies, continuously monitoring, and measures assessment. This big challenge for any organization leads to implementation of an information security management system (ISMS). In the context of establishing a regional or national electronic health record for integrated care (ICEHR), the situation is worse. Changing the medical information exchange from on-demand peer-to-peer connections to health information networks requires all organizations participating in the EHR system to have consistent security levels and to follow the same security guidelines and rules. Also, the implementation must be monitored and audited, establishing cross-organizational information security management systems (ISMS) based on international standards. This paper evaluates requirements and defines basic concepts for an ISO 27000 series-based cross-organizational ISMS in the healthcare domain and especially for the implementation of the nationwide electronic health record in Austria (ELGA).
机译:使用健康相关数据需要适当的安全和隐私。信息安全,意思是确保机密性,完整性和可用性,更加组织,而不是技术性质。它包括许多组织和管理措施,基于明确的安全角色,流程和文件,并需要永久性适应安全政策,不断监测和措施评估。任何组织的这一挑战都会导致执行信息安全管理系统(ISMS)。在为综合护理(ICEHR)建立区域或国家电子健康记录的背景下,情况更糟。将医疗信息交换从按需点对点连接到健康信息网络,要求参与EHR系统的所有组织具有一致的安全级别,并遵循相同的安全指南和规则。此外,必须根据国际标准进行监测和审核实施,建立跨组织信息安全管理系统(ISMS)。本文评估了对医疗领域的基于ISO 27000系列的交叉组织ISMS的基本概念,特别是在奥地利(ELGA)的全国电子健康纪录的实施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号