首页> 外文会议>Annual midwest instruction and computing symposium >Case Study: Information Security Risk Assessment for a Small Healthcare Clinic Using the Security Risk Assessment Tool Provided by HealthIT.gov
【24h】

Case Study: Information Security Risk Assessment for a Small Healthcare Clinic Using the Security Risk Assessment Tool Provided by HealthIT.gov

机译:案例研究:使用HealthIt.gov提供的安全风险评估工具的小医疗保健诊所信息安全风险评估

获取原文

摘要

Information security risk assessments in the healthcare industry are legally required and demand an ongoing investment of time and resources. Small clinics, in particular, are less likely to have streamlined processes in place to meet these requirements. In this case study, we evaluate a small dental clinic using an assessment tool recommended by the federal government to cover the main benchmarks required by law. We found that the clinic owner demonstrated a proactive approach which balances security needs with business functionality. We identified several areas where improvements could be made, which included addressing vulnerabilities, improving communication with key business associates, and creating an appropriate level of documentation to validate existing processes. This clinic is likely ahead of the security curve and yet still was found to be vulnerable in key areas, a cautionary tale for other healthcare providers who have yet to initiate serious efforts in this area.
机译:信息安全风险评估在法律上需要,并要求采取时间和资源的持续投资。特别是小型诊所的可能性不太可能有流线型的过程,以满足这些要求。在这种情况下,我们使用联邦政府建议的评估工具评估小型牙科诊所,以涵盖法律要求的主要基准。我们发现诊所所有者展示了一个积极的方法,使企业功能平衡了安全需求。我们确定了几个可以进行改进的领域,其中包括解决漏洞,从而提高与关键业务关联的通信,并创建适当的文档才能验证现有流程。这座诊所可能会领先于安全曲线,但仍被发现在关键领域易受攻击,这是其他医疗保健提供者的警告故事,他们还未在这一领域启动认真努力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号