Furnell S, Sanders P, Warren M
Network Research Group, School of Electronic, Communication and Electrical Engineering, University of Plymouth, United Kingdom.
Stud Health Technol Inform. 1997;43 Pt B:707-11.
This paper discusses the need to promote information security issues within modern healthcare establishments and the consequent need for appropriate training and awareness initiatives. Security is an area of extreme significance in healthcare information systems but, whilst the need is generally recognised, many personnel are not familiar with even basic concepts and procedures. As such, adequate promotion of security through training and awareness initiatives is viewed as a vital first step. The paper highlights a series of basic factors that healthcare establishments (HCEs) should consider in setting up a training and awareness framework. The discussion then examines a number of ways in which relevant information may be disseminated to staff, including security guidelines, training seminars and world-wide web based services. The paper is largely based upon work that is currently being conducted as part of the Health Telematics ISHTAR (Implementing Secure Healthcare Telematics Applications in euRope) project.
本文讨论了在现代医疗机构中促进信息安全问题的必要性,以及随之而来的对适当培训和提高认识举措的需求。安全是医疗信息系统中极为重要的一个领域,然而,尽管人们普遍认识到这一需求,但许多人员甚至对基本概念和程序都不熟悉。因此,通过培训和提高认识举措充分促进安全被视为至关重要的第一步。本文强调了医疗机构在建立培训和提高认识框架时应考虑的一系列基本因素。随后的讨论审视了向员工传播相关信息的多种方式,包括安全指南、培训研讨会和基于万维网的服务。本文主要基于目前作为欧洲健康远程信息处理ISHTAR(在欧洲实施安全医疗保健远程信息处理应用)项目一部分所开展的工作。