Security Requirements and Solutions in Electronic Health Records: Lessons Learned from a Comparative Study

被引:26
|
作者
Farzandipour, Mehrdad [1 ]
Sadoughi, Farahnaz [2 ]
Ahmadi, Maryam [2 ]
Karimi, Iraj [2 ]
机构
[1] Kashan Univ Med Sci, Kashan, Iran
[2] Iran Univ Med Sci, Tehran, Iran
关键词
Security model; Security requirements; Information security; Electronic health records;
D O I
10.1007/s10916-009-9276-7
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
A growing capacity of information technologies in collection, storage and transmission of information in unprecedented amounts has produced significant problems about the availability of wide limit of the consumers of Electronic Health Records of Patients. With regard to the existence of many approaches to developing Electronic Health Records, the basic question is what kind of Model is suitable for the guarantee of the security of Electronic Health Records? The present study is a descriptive-comparative investigation conducted in Iran in 2007, along with comparisons made Electronic health records information security requirements of Australia, Canada, England and U.S.A with. The research was based on the study of texts such as articles, library's books and journals and reliable websites from 1992 to 2006. Based on the collected data, a primary Model was designed. The Delphi Technique was offered to evaluate the questionnaire and final Model was designed and proposed. Australia, Canada, England and U.S.A have requirements related to organizing information security, classifying and controlling information asset, security of human resources, environmental and physical security, Operational and communication management security, information access control security and development and Maintenance security of Electronic Health Records information systems. In the U.S.A, the above security requirements are presented in administrative, Physical and Technical safeguards. Based on the research findings, a comprehensive model of electronic health record security requirements in seven pivots is presented for Iran. This model is a collection of EHR security requirements from studied countries. The studied countries are solely subject to part of elements of this model. The suggested model is different from the ones used in other countries in some respects and is recommended for application in Iran.
引用
收藏
页码:629 / 642
页数:14
相关论文
共 50 条
  • [1] Security Requirements and Solutions in Electronic Health Records: Lessons Learned from a Comparative Study
    Mehrdad Farzandipour
    Farahnaz Sadoughi
    Maryam Ahmadi
    Iraj Karimi
    [J]. Journal of Medical Systems, 2010, 34 : 629 - 642
  • [2] Security requirements and solutions in distributed Electronic Health Records
    Blobel, B
    [J]. INFORMATION SECURITY IN RESEARCH AND BUSINESS, 1997, : 377 - 390
  • [3] Implementing Electronic Health Records in Germany: Lessons (Yet to Be) Learned
    Schmitt, Tugce
    [J]. INTERNATIONAL JOURNAL OF INTEGRATED CARE, 2023, 23 (01):
  • [4] Security Aspects of Electronic Health Records and Possible Solutions
    Kanade, Prashant Vilas
    Kumar, Arun
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (04) : 789 - 793
  • [5] Lessons Premier Hospitals Learned About Implementing Electronic Health Records
    DeVore, Susan D.
    Figlioli, Keith
    [J]. HEALTH AFFAIRS, 2010, 29 (04) : 664 - 667
  • [6] Electronic Medical Records in the American Health System: challeneges and lessons learned
    Janett, Robert S.
    Yeracaris, Peter Pano
    [J]. CIENCIA & SAUDE COLETIVA, 2020, 25 (04): : 1293 - 1304
  • [7] Taiwan's perspective on electronic medical records' security and privacy protection: Lessons learned from HIPAA
    Yang, Che-Ming
    Lin, Herng-Ching
    Chang, Polun
    Jian, Wen-Shan
    [J]. COMPUTER METHODS AND PROGRAMS IN BIOMEDICINE, 2006, 82 (03) : 277 - 282
  • [8] Lessons learned from implementing an electronic records management system
    Maguire, Rachael
    [J]. RECORDS MANAGEMENT JOURNAL, 2005, 15 (03) : 150 - +
  • [9] Regulatory Issues in Electronic Health Records for AdolescentHIV Research:Strategies and Lessons Learned
    Green, Sara Shaw
    Lee, Sung-Jae
    Chahin, Samantha
    Pooler-Burgess, Meardith
    Green-Jones, Monique
    Gurung, Sitaji
    Outlaw, Angulique Y.
    Naar, Sylvie
    [J]. JMIR FORMATIVE RESEARCH, 2024, 8
  • [10] Lessons Learned from NARA's Electronic Records Archives Project
    Phillips, Megan E.
    [J]. ARCHIVING 2012: PRESERVATION STRATEGIES AND IMAGING TECHNOLOGIES FOR CULTURAL HERITAGE INSTITUTIONS AND MEMORY ORGANIZATIONS, 2012, : 8 - 12