DocumentCode :
250416
Title :
Network security vulnerabilities and personal privacy issues in healthcare information systems: A case study in a private hospital
Author :
Namoglu, Nihan ; Ulgen, Yekta
Author_Institution :
Biyomedikal Muhendisligi Enstitusu, Bogazici Univ., İstanbul, Turkey
fYear :
2014
fDate :
16-17 Oct. 2014
Firstpage :
1
Lastpage :
3
Abstract :
Healthcare industry has become widely dependent on information technology and internet; as it moves from paper to electronic records. Despite the benefits of electronic system, good quality may not be totally achieved unless its risks to security are mitigated. Working in collaboration with a 150 bed private hospital in Turkey; this study aims to present a secure healthcare network infrastructure while presenting the security vulnerabilities in the current hospital information systems. The regulation criteria in Turkey and counterparts in USA and EU are compared according to their privacy approach and a list of items for common security controls from different industries is proposed as a best practice. The study shows that the hospital is not compliant with known healthcare standards like HIPAA or ISO 80001. Management´s attitude against privacy and security shows that the responsibility is totally to IT and Biomedical Engineering Departments. As hospitals are adopting electronic transactions, consideration must be given to protect public electronic health records in terms of personal privacy aspects. Healthcare industry in Turkey should benefit from best practices in other industries and applications in other countries. This study can lead the pathway for policy makers in healthcare organizations and regulation authorities to implement a more secure environment for every citizen.
Keywords :
electronic health records; health care; hospitals; security of data; Internet; healthcare information systems; healthcare network infrastructure security; hospital information systems; personal privacy issues; public electronic health record protection; Hospitals; ISO standards; Industries; Privacy; Security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Biomedical Engineering Meeting (BIYOMUT), 2014 18th National
Conference_Location :
Istanbul
Type :
conf
DOI :
10.1109/BIYOMUT.2014.7026385
Filename :
7026385
Link To Document :
بازگشت