Threats to health information security
The purpose of this paper is to identify the threats that exist in Healthcare Information Systems (HIS). The study has been carried out in three different departments namely in Information Technology Department (ITD), Medical Record Department (MRD) and X-Ray Department in one of the leading governm...
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Dynamic Publishers
2010
|
Subjects: | |
Online Access: | http://eprints.utm.my/39156/1/vol5-issue2.html |
_version_ | 1796857769336242176 |
---|---|
author | Samy, Ganthan Narayana Ahmad, Rabiah Ismail, Zuraini |
author_facet | Samy, Ganthan Narayana Ahmad, Rabiah Ismail, Zuraini |
author_sort | Samy, Ganthan Narayana |
collection | ePrints |
description | The purpose of this paper is to identify the threats that exist in Healthcare Information Systems (HIS). The study has been carried out in three different departments namely in Information Technology Department (ITD), Medical Record Department (MRD) and X-Ray Department in one of the leading government supported hospital in Malaysia. The hospital was equipped with Total Hospital Information System (THIS) environment. The data were collected using in-depth structured interviews. The study identified 22 types of threats according to major threat categories based on ISO/IEC 27002 (ISO 27799:2008). The result shows the most critical threat for the THIS is the power failure. In addition acts of human error or failure threat also show high frequency of occurrence. The contribution of the paper will be categorization of threats in HIS and can be used to design and implement effective security systems and policies in healthcare setting. |
first_indexed | 2024-03-05T19:02:45Z |
format | Article |
id | utm.eprints-39156 |
institution | Universiti Teknologi Malaysia - ePrints |
language | English |
last_indexed | 2024-03-05T19:02:45Z |
publishDate | 2010 |
publisher | Dynamic Publishers |
record_format | dspace |
spelling | utm.eprints-391562017-02-15T01:59:43Z http://eprints.utm.my/39156/ Threats to health information security Samy, Ganthan Narayana Ahmad, Rabiah Ismail, Zuraini QA75 Electronic computers. Computer science The purpose of this paper is to identify the threats that exist in Healthcare Information Systems (HIS). The study has been carried out in three different departments namely in Information Technology Department (ITD), Medical Record Department (MRD) and X-Ray Department in one of the leading government supported hospital in Malaysia. The hospital was equipped with Total Hospital Information System (THIS) environment. The data were collected using in-depth structured interviews. The study identified 22 types of threats according to major threat categories based on ISO/IEC 27002 (ISO 27799:2008). The result shows the most critical threat for the THIS is the power failure. In addition acts of human error or failure threat also show high frequency of occurrence. The contribution of the paper will be categorization of threats in HIS and can be used to design and implement effective security systems and policies in healthcare setting. Dynamic Publishers 2010 Article PeerReviewed text/html en http://eprints.utm.my/39156/1/vol5-issue2.html Samy, Ganthan Narayana and Ahmad, Rabiah and Ismail, Zuraini (2010) Threats to health information security. Journal of Information Assurance and Security, 5 (2). pp. 1-6. ISSN 1554-1010 |
spellingShingle | QA75 Electronic computers. Computer science Samy, Ganthan Narayana Ahmad, Rabiah Ismail, Zuraini Threats to health information security |
title | Threats to health information security
|
title_full | Threats to health information security
|
title_fullStr | Threats to health information security
|
title_full_unstemmed | Threats to health information security
|
title_short | Threats to health information security
|
title_sort | threats to health information security |
topic | QA75 Electronic computers. Computer science |
url | http://eprints.utm.my/39156/1/vol5-issue2.html |
work_keys_str_mv | AT samyganthannarayana threatstohealthinformationsecurity AT ahmadrabiah threatstohealthinformationsecurity AT ismailzuraini threatstohealthinformationsecurity |