Threats to health information security

The purpose of this paper is to identify the threats that exist in Healthcare Information Systems (HIS). The study has been carried out in three different departments namely in Information Technology Department (ITD), Medical Record Department (MRD) and X-Ray Department in one of the leading governm...

Full description

Bibliographic Details
Main Authors: Samy, Ganthan Narayana, Ahmad, Rabiah, Ismail, Zuraini
Format: Article
Language:English
Published: Dynamic Publishers 2010
Subjects:
Online Access:http://eprints.utm.my/39156/1/vol5-issue2.html
_version_ 1796857769336242176
author Samy, Ganthan Narayana
Ahmad, Rabiah
Ismail, Zuraini
author_facet Samy, Ganthan Narayana
Ahmad, Rabiah
Ismail, Zuraini
author_sort Samy, Ganthan Narayana
collection ePrints
description The purpose of this paper is to identify the threats that exist in Healthcare Information Systems (HIS). The study has been carried out in three different departments namely in Information Technology Department (ITD), Medical Record Department (MRD) and X-Ray Department in one of the leading government supported hospital in Malaysia. The hospital was equipped with Total Hospital Information System (THIS) environment. The data were collected using in-depth structured interviews. The study identified 22 types of threats according to major threat categories based on ISO/IEC 27002 (ISO 27799:2008). The result shows the most critical threat for the THIS is the power failure. In addition acts of human error or failure threat also show high frequency of occurrence. The contribution of the paper will be categorization of threats in HIS and can be used to design and implement effective security systems and policies in healthcare setting.
first_indexed 2024-03-05T19:02:45Z
format Article
id utm.eprints-39156
institution Universiti Teknologi Malaysia - ePrints
language English
last_indexed 2024-03-05T19:02:45Z
publishDate 2010
publisher Dynamic Publishers
record_format dspace
spelling utm.eprints-391562017-02-15T01:59:43Z http://eprints.utm.my/39156/ Threats to health information security Samy, Ganthan Narayana Ahmad, Rabiah Ismail, Zuraini QA75 Electronic computers. Computer science The purpose of this paper is to identify the threats that exist in Healthcare Information Systems (HIS). The study has been carried out in three different departments namely in Information Technology Department (ITD), Medical Record Department (MRD) and X-Ray Department in one of the leading government supported hospital in Malaysia. The hospital was equipped with Total Hospital Information System (THIS) environment. The data were collected using in-depth structured interviews. The study identified 22 types of threats according to major threat categories based on ISO/IEC 27002 (ISO 27799:2008). The result shows the most critical threat for the THIS is the power failure. In addition acts of human error or failure threat also show high frequency of occurrence. The contribution of the paper will be categorization of threats in HIS and can be used to design and implement effective security systems and policies in healthcare setting. Dynamic Publishers 2010 Article PeerReviewed text/html en http://eprints.utm.my/39156/1/vol5-issue2.html Samy, Ganthan Narayana and Ahmad, Rabiah and Ismail, Zuraini (2010) Threats to health information security. Journal of Information Assurance and Security, 5 (2). pp. 1-6. ISSN 1554-1010
spellingShingle QA75 Electronic computers. Computer science
Samy, Ganthan Narayana
Ahmad, Rabiah
Ismail, Zuraini
Threats to health information security
title Threats to health information security
title_full Threats to health information security
title_fullStr Threats to health information security
title_full_unstemmed Threats to health information security
title_short Threats to health information security
title_sort threats to health information security
topic QA75 Electronic computers. Computer science
url http://eprints.utm.my/39156/1/vol5-issue2.html
work_keys_str_mv AT samyganthannarayana threatstohealthinformationsecurity
AT ahmadrabiah threatstohealthinformationsecurity
AT ismailzuraini threatstohealthinformationsecurity