Vulnerability to Cyberattacks and Sociotechnical Solutions for Health Care Systems: Systematic Review

被引:3
|
作者
Ewoh, Pius [1 ]
Vartiainen, Tero [1 ]
机构
[1] Univ Vaasa, Sch Technol & Innovat, Informat Syst Sci, Wolffintie 32, Vaasa 65200, Finland
关键词
health care systems; cybersecurity; sociotechnical; medical device; secure systems development; training; ransomware; data breaches; protected health information; patient safety; DIGITAL HEALTH; CYBERSECURITY; SECURITY; DEVICES; DESIGN; ERA;
D O I
10.2196/46904
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Background: Health care organizations worldwide are faced with an increasing number of cyberattacks and threats to their critical infrastructure. These cyberattacks cause significant data breaches in digital health information systems, which threaten patient safety and privacy. Objective: From a sociotechnical perspective, this paper explores why digital health care systems are vulnerable to cyberattacks and provides sociotechnical solutions through a systematic literature review (SLR). Methods: An SLR using the PRISMA (Preferred Reporting Items for Systematic Reviews and Meta-Analyses) was conducted by searching 6 databases (PubMed, Web of Science, ScienceDirect, Scopus, Institute of Electrical and Electronics Engineers, and Springer) and a journal (Management Information Systems Quarterly) for articles published between 2012 and 2022 and indexed using the following keywords: "(cybersecurity OR cybercrime OR ransomware) AND (healthcare) OR (cybersecurity in healthcare)." Reports, review articles, and industry white papers that focused on cybersecurity and health care challenges and solutions were included. Only articles published in English were selected for the review. Results: In total, 5 themes were identified: human error, lack of investment, complex network-connected end-point devices, old legacy systems, and technology advancement (digitalization). We also found that knowledge applications for solving vulnerabilities in health care systems between 2012 to 2022 were inconsistent. Conclusions: This SLR provides a clear understanding of why health care systems are vulnerable to cyberattacks and proposes interventions from a new sociotechnical perspective. These solutions can serve as a guide for health care organizations in their efforts to prevent breaches and address vulnerabilities. To bridge the gap, we recommend that health care organizations, in partnership with educational institutions, develop and implement a cybersecurity curriculum for health care and intelligence information sharing through collaborations; training; awareness campaigns; and knowledge application areas such as secure design processes, phase-out of legacy systems, and improved investment. Additional studies are needed to create a sociotechnical framework that will support cybersecurity in health care systems and connect technology, people, and processes in an integrated manner.
引用
收藏
页数:30
相关论文
共 50 条
  • [41] A systematic analysis of failures in protecting personal health data: A scoping review
    Pool, Javad
    Akhlaghpour, Saeed
    Fatehi, Farhad
    Burton-Jones, Andrew
    INTERNATIONAL JOURNAL OF INFORMATION MANAGEMENT, 2024, 74
  • [42] Design and implementation of clinical decision support systems in mental health helpline Services: A systematic review
    Gu, Yueming
    Andargoli, Amirhossein Eslami
    Mackelprang, Jessica L.
    Meyer, Denny
    INTERNATIONAL JOURNAL OF MEDICAL INFORMATICS, 2024, 186
  • [43] The Influence of Wearables on Health Care Outcomes in Chronic Disease: Systematic Review
    Mattison, Graeme
    Canfell, Oliver
    Forrester, Doug
    Dobbins, Chelsea
    Smith, Daniel
    Toyras, Juha
    Sullivan, Clair
    JOURNAL OF MEDICAL INTERNET RESEARCH, 2022, 24 (07)
  • [44] Digital health use in latent tuberculosis infection care: A systematic review
    Wong, Yen Jun
    Ng, Khuen Yen
    Lee, Shaun Wen Huey
    INTERNATIONAL JOURNAL OF MEDICAL INFORMATICS, 2022, 159
  • [45] A systematic literature review of the use of formal methods in medical software systems
    Bonfanti, Silvia
    Gargantini, Angelo
    Mashkoor, Atif
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2018, 30 (05)
  • [46] In Situ Simulation in Continuing Education for the Health Care Professions: A Systematic Review
    Rosen, Michael A.
    Hunt, Elizabeth A.
    Pronovost, Peter J.
    Federowicz, Molly A.
    Weaver, Sallie J.
    JOURNAL OF CONTINUING EDUCATION IN THE HEALTH PROFESSIONS, 2012, 32 (04) : 243 - 254
  • [47] Blue care: a systematic review of blue space interventions for health and wellbeing
    Britton, Easkey
    Kindermann, Gesche
    Domegan, Christine
    Carlin, Caitriona
    HEALTH PROMOTION INTERNATIONAL, 2020, 35 (01) : 50 - 69
  • [48] Coping strategies in health care providers as second victims: A systematic review
    Kappes, Maria
    Romero-Garcia, Marta
    Delgado-Hito, Pilar
    INTERNATIONAL NURSING REVIEW, 2021, 68 (04) : 471 - 481
  • [49] Evaluating the Effectiveness of Mobile Health in Breast Cancer Care: A Systematic Review
    Flaucher, Madeleine
    Zakreuskaya, Anastasiya
    Nissen, Michael
    Mocker, Alexander
    Fasching, Peter A.
    Beckmann, Matthias W.
    Eskofier, Bjoern M.
    Leutheuser, Heike
    ONCOLOGIST, 2023, 28 (10) : e847 - e858
  • [50] Oral Health Care in Patients with Spinal Cord Injury: A Systematic Review
    Alfaqeeh, Aljoharah Ahmad
    Assery, Mansour K.
    Ingle, Navin Anand
    ANNALS OF MEDICAL AND HEALTH SCIENCES RESEARCH, 2020, 10 (05) : 1122 - 1128