Risk Assessment of Integrated Electronic Health Records

The paper describes the security concerns related to Electronic Health Records (EHR) both in registration of data and integration of systems. A description of the current state of EHR systems in Iceland is provided, along with the Ministry of Health's future vision and plans. New legislation pr...

Full description

Bibliographic Details
Main Authors: Bjornsson, Bjarni Thor, Sigurdardottir, Gudlaug, Stefansson, Stefan Orri
Language:English
Published: 2010
Subjects:
Online Access:http://hdl.handle.net/10822/1025790
http://worldcatlibraries.org/registry/gateway?version=1.0&url_ver=Z39.88-2004&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&atitle=Risk+assessment+of+integrated+electronic+health+records.&title=Studies+in+health+technology+and+informatics+&volume=&issue=&date=2010&au=Bjornsson,+Bjarni+Thor;+Sigurdardottir,+Gudlaug;+Stefansson,+Stefan+Orri
id ftgeorgetownuniv:oai:repository.library.georgetown.edu:10822/1025790
record_format openpolar
spelling ftgeorgetownuniv:oai:repository.library.georgetown.edu:10822/1025790 2023-10-09T21:52:44+02:00 Risk Assessment of Integrated Electronic Health Records Bjornsson, Bjarni Thor Sigurdardottir, Gudlaug Stefansson, Stefan Orri 2010 Article http://hdl.handle.net/10822/1025790 http://worldcatlibraries.org/registry/gateway?version=1.0&url_ver=Z39.88-2004&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&atitle=Risk+assessment+of+integrated+electronic+health+records.&title=Studies+in+health+technology+and+informatics+&volume=&issue=&date=2010&au=Bjornsson,+Bjarni+Thor;+Sigurdardottir,+Gudlaug;+Stefansson,+Stefan+Orri en eng Studies in health technology and informatics 2010; 155: 78-84 http://worldcatlibraries.org/registry/gateway?version=1.0&url_ver=Z39.88-2004&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&atitle=Risk+assessment+of+integrated+electronic+health+records.&title=Studies+in+health+technology+and+informatics+&volume=&issue=&date=2010&au=Bjornsson,+Bjarni+Thor;+Sigurdardottir,+Gudlaug;+Stefansson,+Stefan+Orri http://hdl.handle.net/10822/1025790 eweb:328670 Accountability Health Legislation Records Risk Risk Assessment Technology Assessment Confidentiality Information Science Ethics 2010 ftgeorgetownuniv 2023-09-12T20:12:51Z The paper describes the security concerns related to Electronic Health Records (EHR) both in registration of data and integration of systems. A description of the current state of EHR systems in Iceland is provided, along with the Ministry of Health's future vision and plans. New legislation provides the opportunity for increased integration of EHRs and further collaboration between institutions. Integration of systems, along with greater availability and access to EHR data, requires increased security awareness since additional risks are introduced. The paper describes the core principles of information security as it applies to EHR systems and data. The concepts of confidentiality, integrity, availability, accountability and traceability are introduced and described. The paper discusses the legal requirements and importance of performing risk assessment for EHR data. Risk assessment methodology according to the ISO/IEC 27001 information security standard is described with examples on how it is applied to EHR systems. Other/Unknown Material Iceland Georgetown University: DigitalGeorgetown
institution Open Polar
collection Georgetown University: DigitalGeorgetown
op_collection_id ftgeorgetownuniv
language English
topic Accountability
Health
Legislation
Records
Risk
Risk Assessment
Technology Assessment
Confidentiality
Information Science Ethics
spellingShingle Accountability
Health
Legislation
Records
Risk
Risk Assessment
Technology Assessment
Confidentiality
Information Science Ethics
Bjornsson, Bjarni Thor
Sigurdardottir, Gudlaug
Stefansson, Stefan Orri
Risk Assessment of Integrated Electronic Health Records
topic_facet Accountability
Health
Legislation
Records
Risk
Risk Assessment
Technology Assessment
Confidentiality
Information Science Ethics
description The paper describes the security concerns related to Electronic Health Records (EHR) both in registration of data and integration of systems. A description of the current state of EHR systems in Iceland is provided, along with the Ministry of Health's future vision and plans. New legislation provides the opportunity for increased integration of EHRs and further collaboration between institutions. Integration of systems, along with greater availability and access to EHR data, requires increased security awareness since additional risks are introduced. The paper describes the core principles of information security as it applies to EHR systems and data. The concepts of confidentiality, integrity, availability, accountability and traceability are introduced and described. The paper discusses the legal requirements and importance of performing risk assessment for EHR data. Risk assessment methodology according to the ISO/IEC 27001 information security standard is described with examples on how it is applied to EHR systems.
author Bjornsson, Bjarni Thor
Sigurdardottir, Gudlaug
Stefansson, Stefan Orri
author_facet Bjornsson, Bjarni Thor
Sigurdardottir, Gudlaug
Stefansson, Stefan Orri
author_sort Bjornsson, Bjarni Thor
title Risk Assessment of Integrated Electronic Health Records
title_short Risk Assessment of Integrated Electronic Health Records
title_full Risk Assessment of Integrated Electronic Health Records
title_fullStr Risk Assessment of Integrated Electronic Health Records
title_full_unstemmed Risk Assessment of Integrated Electronic Health Records
title_sort risk assessment of integrated electronic health records
publishDate 2010
url http://hdl.handle.net/10822/1025790
http://worldcatlibraries.org/registry/gateway?version=1.0&url_ver=Z39.88-2004&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&atitle=Risk+assessment+of+integrated+electronic+health+records.&title=Studies+in+health+technology+and+informatics+&volume=&issue=&date=2010&au=Bjornsson,+Bjarni+Thor;+Sigurdardottir,+Gudlaug;+Stefansson,+Stefan+Orri
genre Iceland
genre_facet Iceland
op_source eweb:328670
op_relation Studies in health technology and informatics 2010; 155: 78-84
http://worldcatlibraries.org/registry/gateway?version=1.0&url_ver=Z39.88-2004&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&atitle=Risk+assessment+of+integrated+electronic+health+records.&title=Studies+in+health+technology+and+informatics+&volume=&issue=&date=2010&au=Bjornsson,+Bjarni+Thor;+Sigurdardottir,+Gudlaug;+Stefansson,+Stefan+Orri
http://hdl.handle.net/10822/1025790
_version_ 1779315918435778560