Suppr超能文献

电子医疗信息和患者隐私的安全:你需要知道的。

Security of electronic medical information and patient privacy: what you need to know.

机构信息

Department of Radiology, Harvard Medical School, Boston, Massachusetts; Department of Radiology, Brigham and Women's Hospital, Center for Evidence-Based Imaging, Boston, Massachusetts.

出版信息

J Am Coll Radiol. 2014 Dec;11(12 Pt B):1212-6. doi: 10.1016/j.jacr.2014.09.011. Epub 2014 Dec 1.

Abstract

The responsibility that physicians have to protect their patients from harm extends to protecting the privacy and confidentiality of patient health information including that contained within radiological images. The intent of HIPAA and subsequent HIPAA Privacy and Security Rules is to keep patients' private information confidential while allowing providers access to and maintaining the integrity of relevant information needed to provide care. Failure to comply with electronic protected health information (ePHI) regulations could result in financial or criminal penalties or both. Protected health information refers to anything that can reasonably be used to identify a patient (eg, name, age, date of birth, social security number, radiology examination accession number). The basic tools and techniques used to maintain medical information security and patient privacy described in this article include physical safeguards such as computer device isolation and data backup, technical safeguards such as firewalls and secure transmission modes, and administrative safeguards including documentation of security policies, training of staff, and audit tracking through system logs. Other important concepts related to privacy and security are explained, including user authentication, authorization, availability, confidentiality, data integrity, and nonrepudiation. Patient privacy and security of medical information are critical elements in today's electronic health care environment. Radiology has led the way in adopting digital systems to make possible the availability of medical information anywhere anytime, and in identifying and working to eliminate any risks to patients.

摘要

医生有责任保护患者免受伤害,这包括保护患者的隐私和机密性,包括放射影像中的信息。HIPAA 及其后续的 HIPAA 隐私和安全规则旨在在允许提供者访问和维护提供护理所需的相关信息的完整性的同时,保持患者的私人信息的机密性。未能遵守电子受保护的健康信息 (ePHI) 法规可能会导致财务或刑事处罚,甚至两者兼而有之。受保护的健康信息是指任何可以合理用于识别患者的信息(例如,姓名、年龄、出生日期、社会安全号码、放射学检查访问号码)。本文描述的用于维护医疗信息安全和患者隐私的基本工具和技术包括物理安全措施,如计算机设备隔离和数据备份、技术安全措施,如防火墙和安全传输模式,以及包括安全策略文件、员工培训和通过系统日志进行审核跟踪在内的管理安全措施。还解释了与隐私和安全相关的其他重要概念,包括用户身份验证、授权、可用性、机密性、数据完整性和不可否认性。在当今的电子医疗保健环境中,患者隐私和医疗信息安全是至关重要的因素。放射科在采用数字系统方面走在了前列,使得随时随地都能获取医疗信息成为可能,并确定并努力消除对患者的任何风险。

文献AI研究员

20分钟写一篇综述,助力文献阅读效率提升50倍。

立即体验

用中文搜PubMed

大模型驱动的PubMed中文搜索引擎

马上搜索

文档翻译

学术文献翻译模型,支持多种主流文档格式。

立即体验