Healthcare Information Privacy and Security: Regulatory Compliance and Data Security in the Age of Electronic Health Records (醫療資訊隱私與安全:電子健康紀錄時代的法規遵循與數據安全)
Bernard Peter Robichau
相關主題
商品描述
Healthcare Information Privacy and Security: Regulatory Compliance and Data Security in the Age of Electronic Health Records outlines the new regulatory regime, and it also provides IT professionals with the processes and protocols, standards, and governance tools they need to maintain a secure and legal environment for data and records. It’s a concrete resource that will help you understand the issues affecting the law and regulatory compliance, privacy, and security in the enterprise.
As healthcare IT security expert Bernard Peter Robichau II shows, the success of a privacy and security initiative lies not just in proper planning but also in identifying who will own the implementation and maintain technologies and processes. From executive sponsors to system analysts and administrators, a properly designed security program requires that that the right people are assigned to the right tasks and have the tools they need. Robichau explains how to design and implement that program with an eye toward long-term success. Putting processes and systems in place is, of course, only the start. Robichau also shows how to manage your security program and maintain operational support including ongoing maintenance and policy updates. (Because regulations never sleep!)
This book will help you devise solutions that include:
- Identity and access management systems
- Proper application design
- Physical and environmental safeguards
- Systemwide and client-based security configurations
- Safeguards for patient data
- Training and auditing procedures
- Governance and policy administration
商品描述(中文翻譯)
醫療保健資訊科技目前是成長中的產業,對於隱私和安全的指導需求非常龐大。為什麼?隨著新的聯邦激勵措施和與HITECH法案、HIPAA相關的罰款實施,醫療機構和醫療系統正在以驚人的速度實施新的軟體。然而,隱私和安全的考量往往被忽視,這使得醫療組織面臨罰款和聲譽受損的風險。
《醫療資訊隱私與安全:電子健康紀錄時代的法規遵循與資料安全》概述了新的法規體系,並為IT專業人員提供了維護資料和紀錄安全及合法環境所需的流程、協議、標準和治理工具。這是一本具體的資源,將幫助您理解影響法律和法規遵循、隱私和安全的問題。
正如醫療IT安全專家Bernard Peter Robichau II所示,隱私和安全倡議的成功不僅在於適當的規劃,還在於確定誰將負責實施並維護技術和流程。從執行贊助者到系統分析師和管理員,設計良好的安全計畫要求將合適的人分配到合適的任務上,並提供他們所需的工具。Robichau解釋了如何設計和實施該計畫,以實現長期成功。建立流程和系統當然只是開始。Robichau還展示了如何管理您的安全計畫並維持操作支持,包括持續的維護和政策更新。(因為法規從不打盹!)
本書將幫助您制定包括以下內容的解決方案:
- 身份和存取管理系統
- 適當的應用程式設計
- 物理和環境保護措施
- 系統範圍和客戶端的安全配置
- 病人資料的保護措施
- 培訓和審核程序
- 治理和政策管理
《醫療資訊隱私與安全》是幫助您在醫療產業中維護隱私和安全過程的權威指南。它將幫助您保護健康資訊的安全,並確保您的組織—無論是地方診所還是大型醫院系統—都能遵守法律。