IT risk management for medical devices in hospital IT networks: a catalogue of measures and indicators

被引:3
作者
Richter, Stefan [1 ]
Ammenwerth, Elske [1 ]
机构
[1] UMIT TIROL Private Univ Hlth Sci & Hlth Technol, Inst Med Informat, Hall In Tirol, Austria
关键词
Medical Informatics; BMJ Health Informatics; Health Information Management; PATIENT SAFETY; HEALTH-CARE; CYBERSECURITY;
D O I
10.1136/bmjhci-2022-100639
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
ObjectivesConnecting medical devices to hospital IT networks can create threats that must be covered by IT risk management. In practice, implementing such risk management is not trivial because the IEC 80001-1, as the existing state-of-the-art, do not describe sufficiently concrete implementation measures or evaluation indicators. The aim of the present work was to develop and evaluate a catalogue of measures and indicators to help hospitals implement and evaluate risk management in accordance with IEC 80001-1.MethodsWe conducted a Delphi study with 22 experts. In the first round, we performed interviews to identify implementation measures and evaluation indicators using qualitative content analysis. In the second round, a quantitative experts' survey confirmed the results of the first survey round and identified relationships between the measures and indicators. Based on these results, we then developed a catalogue containing the identified measures and indicators. Finally, we performed a case study to verify the practicability of this catalogue.ResultsWe developed and verified a catalogue of 49 measures and 18 indicators to help hospitals implement and evaluate risk management following IEC 80001-1. The case study confirmed the practicability of the catalogue.DiscussionCompared with IEC 80001-1, our catalogue goes into further detail to offer hospitals a stepwise implementation and evaluation approach. However, the catalogue must be tested in further case studies and evaluated in terms of generalisation.ConclusionsThe catalogue will enable hospitals to overcome recent difficulties in implementing and evaluating IT risk management for medical devices according to IEC 80001-1.
引用
收藏
页数:9
相关论文
共 50 条
[41]   The Learning Objective Catalogue for Patient Safety in Undergraduate Medical Education - A Position Statement of the Committee for Patient Safety and Error Management of the German Association for Medical Education [J].
Kiesewetter, Jan ;
Gutmann, Johanna ;
Drossard, Sabine ;
Salas, David Gurrea ;
Prodinger, Wolfgang ;
Mc Dermott, Fiona ;
Urban, Bert ;
Staender, Sven ;
Baschnegger, Heiko ;
Hoffmann, Gordon ;
Huebsch, Grit ;
Scholz, Christoph ;
Meier, Anke ;
Wegscheider, Mirko ;
Hoffmann, Nicolas ;
Ohlenbusch-Harke, Theda ;
Keil, Stephanie ;
Schirlo, Christian ;
Kuehne-Eversmann, Lisa ;
Heitzmann, Nicole ;
Busemann, Alexandra ;
Koechel, Ansgar ;
Manser, Tanja ;
Welbergen, Lena ;
Kiesewetter, Isabel .
GMS JOURNAL FOR MEDICAL EDUCATION, 2016, 33 (01)
[42]   Systematic implementation of clinical risk management in a large university hospital: the impact of risk managers [J].
Sendlhofer, Gerald ;
Brunner, Gernot ;
Tax, Christa ;
Falzberger, Gebhard ;
Smolle, Josef ;
Leitgeb, Karina ;
Kober, Brigitte ;
Kamolz, Lars Peter .
WIENER KLINISCHE WOCHENSCHRIFT, 2015, 127 (1-2) :1-11
[43]   Electronic medical records and risk management in hospitals of Saudi Arabia [J].
Al-Barnawi, Abdullah ;
He, Ying ;
Maglaras, Leandros A. ;
Janicke, Helge .
INFORMATICS FOR HEALTH & SOCIAL CARE, 2019, 44 (02) :189-203
[44]   Medical waste management and environmental assessment in the Rio University Hospital, Western Greece [J].
Zamparas, M. ;
Kapsalis, V. C. ;
Kyriakopoulos, G. L. ;
Aravossis, K. G. ;
Kanteraki, A. E. ;
Vantarakis, A. ;
Kalavrouziotis, I. K. .
SUSTAINABLE CHEMISTRY AND PHARMACY, 2019, 13
[45]   Development of an Online Incident-reporting System for Management of Medical Risks at Hospital [J].
Kanda, Hirohito .
YAKUGAKU ZASSHI-JOURNAL OF THE PHARMACEUTICAL SOCIETY OF JAPAN, 2011, 131 (09) :1353-1359
[46]   Rare adverse medical events in VA inpatient care: Reliability limits to using patient safety indicators as performance measures [J].
West, Alan N. ;
Weeks, William B. ;
Bagian, James P. .
HEALTH SERVICES RESEARCH, 2008, 43 (01) :249-266
[47]   Assessing risk by analogy: a case study of us medical device risk management policy [J].
White, Shelley K. ;
Walters, Abigail N. .
HEALTH RISK & SOCIETY, 2018, 20 (7-8) :358-378
[48]   Advancing quality management in the medical devices industry: strategies for effective ISO 13485 implementation [J].
Pacheco, Diego Augusto de Jesus ;
Bonato, Samuel Vinicius ;
Linck, William .
INTERNATIONAL JOURNAL FOR QUALITY IN HEALTH CARE, 2025, 37 (01)
[49]   How to calculate the life cycle of high-risk medical devices for patient safety [J].
Seo, Gihong ;
Park, Sewon ;
Lee, Munjae .
FRONTIERS IN PUBLIC HEALTH, 2022, 10
[50]   A Cyber-Security Risk Assessment Methodology for Medical Imaging Devices: the Radiologists’ Perspective [J].
Tom Mahler ;
Erez Shalom ;
Arnon Makori ;
Yuval Elovici ;
Yuval Shahar .
Journal of Digital Imaging, 2022, 35 :666-677