Vulnerability to Cyberattacks and Sociotechnical Solutions for Health Care Systems: Systematic Review

被引:3
|
作者
Ewoh, Pius [1 ]
Vartiainen, Tero [1 ]
机构
[1] Univ Vaasa, Sch Technol & Innovat, Informat Syst Sci, Wolffintie 32, Vaasa 65200, Finland
关键词
health care systems; cybersecurity; sociotechnical; medical device; secure systems development; training; ransomware; data breaches; protected health information; patient safety; DIGITAL HEALTH; CYBERSECURITY; SECURITY; DEVICES; DESIGN; ERA;
D O I
10.2196/46904
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Background: Health care organizations worldwide are faced with an increasing number of cyberattacks and threats to their critical infrastructure. These cyberattacks cause significant data breaches in digital health information systems, which threaten patient safety and privacy. Objective: From a sociotechnical perspective, this paper explores why digital health care systems are vulnerable to cyberattacks and provides sociotechnical solutions through a systematic literature review (SLR). Methods: An SLR using the PRISMA (Preferred Reporting Items for Systematic Reviews and Meta-Analyses) was conducted by searching 6 databases (PubMed, Web of Science, ScienceDirect, Scopus, Institute of Electrical and Electronics Engineers, and Springer) and a journal (Management Information Systems Quarterly) for articles published between 2012 and 2022 and indexed using the following keywords: "(cybersecurity OR cybercrime OR ransomware) AND (healthcare) OR (cybersecurity in healthcare)." Reports, review articles, and industry white papers that focused on cybersecurity and health care challenges and solutions were included. Only articles published in English were selected for the review. Results: In total, 5 themes were identified: human error, lack of investment, complex network-connected end-point devices, old legacy systems, and technology advancement (digitalization). We also found that knowledge applications for solving vulnerabilities in health care systems between 2012 to 2022 were inconsistent. Conclusions: This SLR provides a clear understanding of why health care systems are vulnerable to cyberattacks and proposes interventions from a new sociotechnical perspective. These solutions can serve as a guide for health care organizations in their efforts to prevent breaches and address vulnerabilities. To bridge the gap, we recommend that health care organizations, in partnership with educational institutions, develop and implement a cybersecurity curriculum for health care and intelligence information sharing through collaborations; training; awareness campaigns; and knowledge application areas such as secure design processes, phase-out of legacy systems, and improved investment. Additional studies are needed to create a sociotechnical framework that will support cybersecurity in health care systems and connect technology, people, and processes in an integrated manner.
引用
收藏
页数:30
相关论文
共 50 条
  • [21] A Systematic Literature Review on e-Mental Health Solutions to Assist Health Care Workers During COVID-19
    Drissi, Nidal
    Ouhbi, Sofia
    Marques, Goncalo
    de la Torre Diez, Isabel
    Ghogho, Mounir
    Janati Idrissi, Mohammed Abdou
    TELEMEDICINE AND E-HEALTH, 2021, 27 (06) : 594 - 602
  • [22] Patient safety in primary health care: a systematic review
    Marchon, Simone Grativol
    Mendes Junior, Walter Vieira
    CADERNOS DE SAUDE PUBLICA, 2014, 30 (09): : 1815 - 1835
  • [23] The Effect of Health Care Professional Disruptive Behavior on Patient Care: A Systematic Review
    Hicks, Sophia
    Stavropoulou, Charitini
    JOURNAL OF PATIENT SAFETY, 2022, 18 (02) : 138 - 143
  • [24] Cross-Disciplinary Care: A Systematic Review on Teamwork Processes in Health Care
    Dinh, Julie V.
    Traylor, Allison M.
    Kilcullen, Molly P.
    Perez, Joshua A.
    Schweissing, Ethan J.
    Venkatesh, Akshaya
    Salas, Eduardo
    SMALL GROUP RESEARCH, 2020, 51 (01) : 125 - 166
  • [25] The safety of health care for ethnic minority patients: a systematic review
    Ashfaq Chauhan
    Merrilyn Walton
    Elizabeth Manias
    Ramesh Lahiru Walpola
    Holly Seale
    Monika Latanik
    Desiree Leone
    Stephen Mears
    Reema Harrison
    International Journal for Equity in Health, 19
  • [26] Security and provenance for Internet of Health Things: A systematic literature review
    Bai, Baogang
    Nazir, Shah
    Bai, Yuhe
    Anees, Amir
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2021, 33 (05)
  • [27] Systematic Review of Health Information Exchange in Primary Care Practices
    Fontaine, Patricia
    Ross, Stephen E.
    Zink, Therese
    Schilling, Lisa M.
    JOURNAL OF THE AMERICAN BOARD OF FAMILY MEDICINE, 2010, 23 (05) : 655 - 670
  • [28] Leadership Training in Health Care Action Teams: A Systematic Review
    Rosenman, Elizabeth D.
    Shandro, Jamie R.
    Ilgen, Jonathan S.
    Harper, Amy L.
    Fernandez, Rosemarie
    ACADEMIC MEDICINE, 2014, 89 (09) : 1295 - 1306
  • [29] Breastfeeding skills training for health care professionals: A systematic review
    Mulcahy, Helen
    Philpott, Lloyd Frank
    O'Driscoll, Michelle
    Bradley, Roisin
    Leahy-Warren, Patricia
    HELIYON, 2022, 8 (11)
  • [30] A Systematic Review of Serious Games in Training Health Care Professionals
    Wang, Ryan
    DeMaria, Samuel, Jr.
    Goldberg, Andrew
    Katz, Daniel
    SIMULATION IN HEALTHCARE-JOURNAL OF THE SOCIETY FOR SIMULATION IN HEALTHCARE, 2016, 11 (01): : 41 - 51