Security policy development for healthcare information systems

被引:0
作者
Gritzalis, D [1 ]
Kokolakis, S [1 ]
机构
[1] Athens Univ Econ & Business, Dept Informat, Athens 10434, Greece
来源
ADVANCED HEALTH TELEMATICS AND TELEMEDICINE: THE MAGDEBURG EXPERT SUMMIT TEXTBOOK | 2003年 / 96卷
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper the issue of security policy development for health information systems is addressed. Security policy development involves the definition of the policy content, the analysis of the social, organisational, and technical contexts, as well as the organisation of the policy development process. We present the structure of security policies, analyse the characteristics of the HIS context, and analyse the different categories of methodologies, which can be used towards this end.
引用
收藏
页码:105 / 110
页数:6
相关论文
共 27 条
[1]  
Allaert F.A, 2002, SECURITY STANDARDS H
[2]  
Anderson R, 1996, BRIT MED J, V312, P109
[3]  
[Anonymous], 1996, SECURITY CLIN INFORM
[4]   Structures of responsibility and security of information systems [J].
Backhouse, J ;
Dhillon, G .
EUROPEAN JOURNAL OF INFORMATION SYSTEMS, 1996, 5 (01) :2-9
[5]  
*BSI, 2002, IT BAS PROT MAN
[6]  
*CCTA, 1996, CCTA RISK AN MAN MET
[7]  
CRESSONWOOD C, 1995, COMPUT SECUR, V14, P667
[8]  
CRESSONWOODS C, 1991, INFORMATION SECURITY
[9]   Current directions in IS security research: towards socio-organizational perspectives [J].
Dhillon, G ;
Backhouse, J .
INFORMATION SYSTEMS JOURNAL, 2001, 11 (02) :127-153
[10]  
HITCHINGS J, 1996, INFORMATION SYSTEMS