...
首页> 外文期刊>International journal of information systems in the service sector >HIPAA Security and Privacy Rules Auditing in Extreme Programming Environments
【24h】

HIPAA Security and Privacy Rules Auditing in Extreme Programming Environments

机译:极限编程环境中的HIPAA安全和隐私规则审核

获取原文
获取原文并翻译 | 示例

摘要

Healthcare business is responsible of keeping patient data safe and secure by following the rules of the federal Health Insurance Portability and Accountability Act of 1996, (HIPAA). Agile software organizations that deal with healthcare software system face a number of challenges to demonstrate that their process activities conform to the rules of HIPAA. Such organizations must establish a software process life cycle and develop procedures, tools, and methodologies that can manage the HIPAA requirements during the different stages of system development, and also must provide evidences of HIPAA conformity. This paper proposes an auditing model for HIPAA security and privacy rules in XP environments. The design of the proposed model is based on an evaluation theory which takes as its input the work of Lopez ATAM, and the standards of common criteria (CC) concepts. The proposed auditing model has been assessed based on four case studies. The auditing result shows that the proposed model is capable of capturing the auditing evidences in most of the selected case studies.
机译:医疗保健业务负责遵循1996年联邦健康保险可移植性和责任法案(HIPAA)的规则,确保患者数据的安全。处理医疗软件系统的敏捷软件组织面临许多挑战,以证明其流程活动符合HIPAA的规则。此类组织必须建立软件过程生命周期,并开发可以在系统开发的不同阶段中管理HIPAA要求的过程,工具和方法,还必须提供HIPAA符合性的证据。本文提出了XP环境中HIPAA安全和隐私规则的审核模型。提议模型的设计基于评估理论,该评估理论以Lopez ATAM的工作以及通用标准(CC)概念的标准为输入。拟议的审计模型已基于四个案例研究进行了评估。审计结果表明,所提出的模型能够捕获大多数案例研究中的审计证据。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号