Hill Linda
Sharp Healthcare's Technical Assistance Center, USA.
J Healthc Inf Manag. 2006 Spring;20(2):116-22.
This case study of Sharp HealthCare takes an in depth look at how the organization has embedded security policies into its business process and automated workflow to ensure users are granted only the IT access that is necessary for them to perform their jobs and to ensure patient privacy Some of the most pressing audit and compliance concerns in healthcare organizations today revolve around the need to constantly review and give an account for users' IT access. The need for this at Sharp is exacerbated because of the high rate of change within the organization and the large percentage of non-employee staff such as traveling nurses moving throughout hospital departments on their rotations. By implementing a software solution to verify the accuracy of user access rights or automatically initiate appropriate corrective actions, Sharp is now able to extend the responsibility and accountability for compliance to the most appropriate resources.
本关于夏普医疗保健公司(Sharp HealthCare)的案例研究深入探讨了该组织如何将安全政策嵌入其业务流程和自动化工作流程,以确保仅授予用户执行工作所需的信息技术访问权限,并确保患者隐私。当今医疗保健组织中一些最紧迫的审计和合规问题围绕着持续审查和说明用户信息技术访问权限的必要性。由于该组织内部变化率高,且有很大比例的非员工人员,如巡回护士在医院各科室轮岗,夏普公司对这方面的需求更加迫切。通过实施一种软件解决方案来验证用户访问权限的准确性或自动启动适当的纠正措施,夏普现在能够将合规责任扩展到最合适的资源。