際際滷

際際滷Share a Scribd company logo
Health Information System Security
Kristin Clark
MHA 616
Prince Ordu
April 16, 2012
Introduction
 Health management information systems (HMIS) are the
accumulation of paper and electronic patient data
 As more data is stored electronically the need for
security and confidentiality of patient information is
increased
 Use of electronic health records is increasing
 Provide a complete patient history

 Ensuring the privacy and security of electronic health
information is a key challenge for organizations that
collect, store, and exchange such information.
(Dimitropoulos and Rinzk, 2009, p. 428)
Electronic Health Records
 EHR are a system that
will allow doctors and
nurses to access data,
and give clarifications to
clinicians performing
follow up care, to whom
a patients previous
treatment or medical
information is often
needed. (Tan, 2010, p.
120)
Electronic Health Records
Advantages
 Provides a complete
patient history
 Increased patient safety
 Reduce medical
errors
 Improved quality of care
 Reduces costs
 Decreases number of
repeat testing
 Decrease fraud

Disadvantages
 Privacy/confidentiality
concerns
 Cost to implement EHR
systems
 Lack of standardization
HIPAA
 Health Insurance Portability and
Accountability Act (HIPAA)
 Passed in 1996
 Designed to protect the
freedom, security, privacy, and
confidentiality of patients
medical records
 Protects personal records,
diagnosis, treatments, progress,
recommendations, radiology
images, and lab results
Patient Privacy/Confidentiality
Concerns
 EHRs use of wireless networks require increased security
 Anti-virus software
 Firewalls
 Passwords
 Security codes

 Intrusion detections systems
 Intrusion prevention systems
 Requires a back up system for power outages or disaster
recovery
Ways To Increase Security
 Educate those with access to HMIS about HIPAA
 Only use patient data for healthcare purposes
 Keep from those with malicious intent
 Privacy Rule

 Consumer control- have the right to release information
 Setting boundaries- ensure health information is used
for healthcare purposes only
 Accountability- Responsible for actions
 Public responsibility- only release information for
emergency circumstances
 Security- release information for public and national
health
Ways To Increase Security
 Privacy screens on computers
 Blur and black outs
 Only the individual entering information can see the
screen
 Encryption
 Scrambles text so a key is needed to decipher the text
 Authentication
 Fingerprints
 Palm scans
 Retinal scans
 Voice recognition
HMIS Security Systems In Place
 Duke University Medical Center and
Health System
 Implementation of single sign on
system
 Allows access to multiple
systems simultaneously
 St. Vincents Hospital and Healthcare
Center
 Implemented biometric
authentication
 Implemented a single sign on
system
Issues With Security Methods
 Authentication Issues
 Protective clothing such as gloves, masks, and
goggles are often used which can hinder access to
scanning
 Dirt and blood can decrease biometric scanner
reliability
 It is not fail proof
 Smart cards/Passwords
 Cards can be lost
 Passwords can be forgotten or hacked
Conclusion
 Electronic health records are on the rise
 Has both advantages and disadvantages
 Compliance with HIPAA is necessary for HMIS to protect
patient confidentiality
 Many ways to increase security
 Educations
 Anti-virus, firewalls, passwords
 Authentication
References
 Dimitropoulos.L, Rizk. S. (2009). A state-based approach to privacy
and security for interoperable health information exchange. Health
Affairs. 28(2). 428-434. Retrieved from proQuest database.
 Harrisoin, P. J., Samanujan. S. (2011). Electronic medical records:
great idea or great threat to privacy? The Review of Business
Information Systems. 15(1). 1-7. Retrieved from proQuest
database.
 Hewitt, B., McLeod, A. (2011). Modeling security in acceptance of
electronic health record systems. Journal Of Information Privacy &
Security. 7(3). 23-45. Retrieved from proQuest database.
 Nataraj. S. (2011). Security concerns in e-prescribing. The Review
of Business Information Systems. 15(1). 15-18. Retrieved from
proQuest database.
 Tan, J. K. H. (2010). Adaptive Health Management Information
Systems (3rd ed.). Sudbury: Jones and Bartlett.

More Related Content

What's hot (20)

Health information exchange (HIE)
Health information exchange (HIE)Health information exchange (HIE)
Health information exchange (HIE)
ACCESS Health Digital
Health Information Management Overview
Health Information Management OverviewHealth Information Management Overview
Health Information Management Overview
Daphnee Fuentevilla
Introduction to Health Informatics
Introduction to Health InformaticsIntroduction to Health Informatics
Introduction to Health Informatics
Moustafa Hosni
Clinical Decision Support Systems
Clinical Decision Support SystemsClinical Decision Support Systems
Clinical Decision Support Systems
Nawanan Theera-Ampornpunt
Healthcare Security Fundamentals
Healthcare Security FundamentalsHealthcare Security Fundamentals
Healthcare Security Fundamentals
Estellesc
Hmis
HmisHmis
Hmis
ADESH MEDICAL COLLEGE
Healthcare Data Management: Three Principles of Using Data to Its Full Potential
Healthcare Data Management: Three Principles of Using Data to Its Full PotentialHealthcare Data Management: Three Principles of Using Data to Its Full Potential
Healthcare Data Management: Three Principles of Using Data to Its Full Potential
Health Catalyst
The Scope of Health Information Technology: Progress and Challenges
The Scope of Health Information Technology: Progress and ChallengesThe Scope of Health Information Technology: Progress and Challenges
The Scope of Health Information Technology: Progress and Challenges
Andrew Oram
Electronic health records
Electronic health recordsElectronic health records
Electronic health records
Jocelyn Garcia
Ethical And Legal Aspects Of Health Care
Ethical And Legal Aspects Of Health CareEthical And Legal Aspects Of Health Care
Ethical And Legal Aspects Of Health Care
Lajpat Rai
Ethical & Social Issues in Health IT
Ethical & Social Issues in Health ITEthical & Social Issues in Health IT
Ethical & Social Issues in Health IT
Nawanan Theera-Ampornpunt
Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...
Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...
Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...
Nawanan Theera-Ampornpunt
TELEMEDICINE
TELEMEDICINETELEMEDICINE
TELEMEDICINE
Dr.SONAL GAUR
Healthcare information technology
Healthcare information technologyHealthcare information technology
Healthcare information technology
Dr.Vijay Talla
Introduction to Routine Health Information System 際際滷s
Introduction to Routine Health Information System 際際滷sIntroduction to Routine Health Information System 際際滷s
Introduction to Routine Health Information System 際際滷s
Saide OER Africa
Electronic medical records
Electronic medical recordsElectronic medical records
Electronic medical records
Namita Batra
Powerpoint on electronic health record lab 1
Powerpoint on electronic health record lab 1Powerpoint on electronic health record lab 1
Powerpoint on electronic health record lab 1
nephrology193
BENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDS
BENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDSBENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDS
BENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDS
UsmanYakubuMaaruf
Introduction to Health Informatics
Introduction to Health InformaticsIntroduction to Health Informatics
Introduction to Health Informatics
asm071149
Week 9 emr implementation final project
Week 9 emr implementation final projectWeek 9 emr implementation final project
Week 9 emr implementation final project
prdolfin
Health information exchange (HIE)
Health information exchange (HIE)Health information exchange (HIE)
Health information exchange (HIE)
ACCESS Health Digital
Health Information Management Overview
Health Information Management OverviewHealth Information Management Overview
Health Information Management Overview
Daphnee Fuentevilla
Introduction to Health Informatics
Introduction to Health InformaticsIntroduction to Health Informatics
Introduction to Health Informatics
Moustafa Hosni
Healthcare Security Fundamentals
Healthcare Security FundamentalsHealthcare Security Fundamentals
Healthcare Security Fundamentals
Estellesc
Healthcare Data Management: Three Principles of Using Data to Its Full Potential
Healthcare Data Management: Three Principles of Using Data to Its Full PotentialHealthcare Data Management: Three Principles of Using Data to Its Full Potential
Healthcare Data Management: Three Principles of Using Data to Its Full Potential
Health Catalyst
The Scope of Health Information Technology: Progress and Challenges
The Scope of Health Information Technology: Progress and ChallengesThe Scope of Health Information Technology: Progress and Challenges
The Scope of Health Information Technology: Progress and Challenges
Andrew Oram
Electronic health records
Electronic health recordsElectronic health records
Electronic health records
Jocelyn Garcia
Ethical And Legal Aspects Of Health Care
Ethical And Legal Aspects Of Health CareEthical And Legal Aspects Of Health Care
Ethical And Legal Aspects Of Health Care
Lajpat Rai
Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...
Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...
Public Health informatics, Consumer health informatics, mHealth & PHRs (Novem...
Nawanan Theera-Ampornpunt
Healthcare information technology
Healthcare information technologyHealthcare information technology
Healthcare information technology
Dr.Vijay Talla
Introduction to Routine Health Information System 際際滷s
Introduction to Routine Health Information System 際際滷sIntroduction to Routine Health Information System 際際滷s
Introduction to Routine Health Information System 際際滷s
Saide OER Africa
Electronic medical records
Electronic medical recordsElectronic medical records
Electronic medical records
Namita Batra
Powerpoint on electronic health record lab 1
Powerpoint on electronic health record lab 1Powerpoint on electronic health record lab 1
Powerpoint on electronic health record lab 1
nephrology193
BENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDS
BENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDSBENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDS
BENEFITS AND CHALLENGES TO THE ADOPTION OF ELECTRONIC MEDICAL RECORDS
UsmanYakubuMaaruf
Introduction to Health Informatics
Introduction to Health InformaticsIntroduction to Health Informatics
Introduction to Health Informatics
asm071149
Week 9 emr implementation final project
Week 9 emr implementation final projectWeek 9 emr implementation final project
Week 9 emr implementation final project
prdolfin

Similar to Health information system security (20)

Electronic Health Records
Electronic Health RecordsElectronic Health Records
Electronic Health Records
stjulians school
Medical Records Privacy Confidentiality And Security
Medical Records Privacy Confidentiality And SecurityMedical Records Privacy Confidentiality And Security
Medical Records Privacy Confidentiality And Security
Abbas Shojaee MD, CHDA
ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...
ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...
ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...
ICEGOV
Modernizing Patient Records
Modernizing Patient RecordsModernizing Patient Records
Modernizing Patient Records
Bob Larrivee
Ehr by jessica austin, shaun baker, victoria blankenship and kayla boro
Ehr by jessica austin, shaun baker, victoria blankenship and kayla boroEhr by jessica austin, shaun baker, victoria blankenship and kayla boro
Ehr by jessica austin, shaun baker, victoria blankenship and kayla boro
kayla_ann_30
Updated.docx
Updated.docxUpdated.docx
Updated.docx
write5
Implementing The Affordable Care Act Essay
Implementing The Affordable Care Act EssayImplementing The Affordable Care Act Essay
Implementing The Affordable Care Act Essay
Michelle Love
Medical Information Security
Medical Information SecurityMedical Information Security
Medical Information Security
CSCJournals
Ethical Implications Of Electronic Health Records
Ethical Implications Of Electronic Health RecordsEthical Implications Of Electronic Health Records
Ethical Implications Of Electronic Health Records
Leslie Lee
Babithas Notes on unit-2 Health/Nursing Informatics Technology
Babithas Notes on unit-2 Health/Nursing Informatics TechnologyBabithas Notes on unit-2 Health/Nursing Informatics Technology
Babithas Notes on unit-2 Health/Nursing Informatics Technology
Babitha Devu
Hca496.w1.a1.blog entry part i.docx
Hca496.w1.a1.blog entry   part i.docxHca496.w1.a1.blog entry   part i.docx
Hca496.w1.a1.blog entry part i.docx
Lynn Wedin
Ehr overview nip
Ehr overview nipEhr overview nip
Ehr overview nip
Arnulfo Jr Rosario
Running head MEDICAL TECHNOLOGY 1MEDICA.docx
Running head MEDICAL TECHNOLOGY                        1MEDICA.docxRunning head MEDICAL TECHNOLOGY                        1MEDICA.docx
Running head MEDICAL TECHNOLOGY 1MEDICA.docx
cowinhelen
NURS FPX 5005 Assessment 4 Patient Care Technology.pdf
NURS FPX 5005 Assessment 4 Patient Care Technology.pdfNURS FPX 5005 Assessment 4 Patient Care Technology.pdf
NURS FPX 5005 Assessment 4 Patient Care Technology.pdf
syedanoor1421
Computer use and patient record
Computer use and patient recordComputer use and patient record
Computer use and patient record
Patel Neha
Running head Information security threats 1Information secur.docx
Running head Information security threats 1Information secur.docxRunning head Information security threats 1Information secur.docx
Running head Information security threats 1Information secur.docx
wlynn1
Electronic Health Record Essay
Electronic Health Record EssayElectronic Health Record Essay
Electronic Health Record Essay
Paper Writer Service Terre Haute
Confidentiality Of Health Information Essays
Confidentiality Of Health Information EssaysConfidentiality Of Health Information Essays
Confidentiality Of Health Information Essays
Jessica Tanner
NURS FPX 5005 Assessment 4 Patient Care Technology.docx
NURS FPX 5005 Assessment 4 Patient Care Technology.docxNURS FPX 5005 Assessment 4 Patient Care Technology.docx
NURS FPX 5005 Assessment 4 Patient Care Technology.docx
ryanhiggs59
The Electronic Health Record
The Electronic Health RecordThe Electronic Health Record
The Electronic Health Record
Christy Hunt
Electronic Health Records
Electronic Health RecordsElectronic Health Records
Electronic Health Records
stjulians school
Medical Records Privacy Confidentiality And Security
Medical Records Privacy Confidentiality And SecurityMedical Records Privacy Confidentiality And Security
Medical Records Privacy Confidentiality And Security
Abbas Shojaee MD, CHDA
ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...
ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...
ICEGOV2009 - Tutorial 4 - E-Health Standards in Practice: Challenges and Oppo...
ICEGOV
Modernizing Patient Records
Modernizing Patient RecordsModernizing Patient Records
Modernizing Patient Records
Bob Larrivee
Ehr by jessica austin, shaun baker, victoria blankenship and kayla boro
Ehr by jessica austin, shaun baker, victoria blankenship and kayla boroEhr by jessica austin, shaun baker, victoria blankenship and kayla boro
Ehr by jessica austin, shaun baker, victoria blankenship and kayla boro
kayla_ann_30
Updated.docx
Updated.docxUpdated.docx
Updated.docx
write5
Implementing The Affordable Care Act Essay
Implementing The Affordable Care Act EssayImplementing The Affordable Care Act Essay
Implementing The Affordable Care Act Essay
Michelle Love
Medical Information Security
Medical Information SecurityMedical Information Security
Medical Information Security
CSCJournals
Ethical Implications Of Electronic Health Records
Ethical Implications Of Electronic Health RecordsEthical Implications Of Electronic Health Records
Ethical Implications Of Electronic Health Records
Leslie Lee
Babithas Notes on unit-2 Health/Nursing Informatics Technology
Babithas Notes on unit-2 Health/Nursing Informatics TechnologyBabithas Notes on unit-2 Health/Nursing Informatics Technology
Babithas Notes on unit-2 Health/Nursing Informatics Technology
Babitha Devu
Hca496.w1.a1.blog entry part i.docx
Hca496.w1.a1.blog entry   part i.docxHca496.w1.a1.blog entry   part i.docx
Hca496.w1.a1.blog entry part i.docx
Lynn Wedin
Running head MEDICAL TECHNOLOGY 1MEDICA.docx
Running head MEDICAL TECHNOLOGY                        1MEDICA.docxRunning head MEDICAL TECHNOLOGY                        1MEDICA.docx
Running head MEDICAL TECHNOLOGY 1MEDICA.docx
cowinhelen
NURS FPX 5005 Assessment 4 Patient Care Technology.pdf
NURS FPX 5005 Assessment 4 Patient Care Technology.pdfNURS FPX 5005 Assessment 4 Patient Care Technology.pdf
NURS FPX 5005 Assessment 4 Patient Care Technology.pdf
syedanoor1421
Computer use and patient record
Computer use and patient recordComputer use and patient record
Computer use and patient record
Patel Neha
Running head Information security threats 1Information secur.docx
Running head Information security threats 1Information secur.docxRunning head Information security threats 1Information secur.docx
Running head Information security threats 1Information secur.docx
wlynn1
Confidentiality Of Health Information Essays
Confidentiality Of Health Information EssaysConfidentiality Of Health Information Essays
Confidentiality Of Health Information Essays
Jessica Tanner
NURS FPX 5005 Assessment 4 Patient Care Technology.docx
NURS FPX 5005 Assessment 4 Patient Care Technology.docxNURS FPX 5005 Assessment 4 Patient Care Technology.docx
NURS FPX 5005 Assessment 4 Patient Care Technology.docx
ryanhiggs59
The Electronic Health Record
The Electronic Health RecordThe Electronic Health Record
The Electronic Health Record
Christy Hunt

Health information system security

  • 1. Health Information System Security Kristin Clark MHA 616 Prince Ordu April 16, 2012
  • 2. Introduction Health management information systems (HMIS) are the accumulation of paper and electronic patient data As more data is stored electronically the need for security and confidentiality of patient information is increased Use of electronic health records is increasing Provide a complete patient history Ensuring the privacy and security of electronic health information is a key challenge for organizations that collect, store, and exchange such information. (Dimitropoulos and Rinzk, 2009, p. 428)
  • 3. Electronic Health Records EHR are a system that will allow doctors and nurses to access data, and give clarifications to clinicians performing follow up care, to whom a patients previous treatment or medical information is often needed. (Tan, 2010, p. 120)
  • 4. Electronic Health Records Advantages Provides a complete patient history Increased patient safety Reduce medical errors Improved quality of care Reduces costs Decreases number of repeat testing Decrease fraud Disadvantages Privacy/confidentiality concerns Cost to implement EHR systems Lack of standardization
  • 5. HIPAA Health Insurance Portability and Accountability Act (HIPAA) Passed in 1996 Designed to protect the freedom, security, privacy, and confidentiality of patients medical records Protects personal records, diagnosis, treatments, progress, recommendations, radiology images, and lab results
  • 6. Patient Privacy/Confidentiality Concerns EHRs use of wireless networks require increased security Anti-virus software Firewalls Passwords Security codes Intrusion detections systems Intrusion prevention systems Requires a back up system for power outages or disaster recovery
  • 7. Ways To Increase Security Educate those with access to HMIS about HIPAA Only use patient data for healthcare purposes Keep from those with malicious intent Privacy Rule Consumer control- have the right to release information Setting boundaries- ensure health information is used for healthcare purposes only Accountability- Responsible for actions Public responsibility- only release information for emergency circumstances Security- release information for public and national health
  • 8. Ways To Increase Security Privacy screens on computers Blur and black outs Only the individual entering information can see the screen Encryption Scrambles text so a key is needed to decipher the text Authentication Fingerprints Palm scans Retinal scans Voice recognition
  • 9. HMIS Security Systems In Place Duke University Medical Center and Health System Implementation of single sign on system Allows access to multiple systems simultaneously St. Vincents Hospital and Healthcare Center Implemented biometric authentication Implemented a single sign on system
  • 10. Issues With Security Methods Authentication Issues Protective clothing such as gloves, masks, and goggles are often used which can hinder access to scanning Dirt and blood can decrease biometric scanner reliability It is not fail proof Smart cards/Passwords Cards can be lost Passwords can be forgotten or hacked
  • 11. Conclusion Electronic health records are on the rise Has both advantages and disadvantages Compliance with HIPAA is necessary for HMIS to protect patient confidentiality Many ways to increase security Educations Anti-virus, firewalls, passwords Authentication
  • 12. References Dimitropoulos.L, Rizk. S. (2009). A state-based approach to privacy and security for interoperable health information exchange. Health Affairs. 28(2). 428-434. Retrieved from proQuest database. Harrisoin, P. J., Samanujan. S. (2011). Electronic medical records: great idea or great threat to privacy? The Review of Business Information Systems. 15(1). 1-7. Retrieved from proQuest database. Hewitt, B., McLeod, A. (2011). Modeling security in acceptance of electronic health record systems. Journal Of Information Privacy & Security. 7(3). 23-45. Retrieved from proQuest database. Nataraj. S. (2011). Security concerns in e-prescribing. The Review of Business Information Systems. 15(1). 15-18. Retrieved from proQuest database. Tan, J. K. H. (2010). Adaptive Health Management Information Systems (3rd ed.). Sudbury: Jones and Bartlett.