Vulnerability to Cyberattacks and Sociotechnical Solutions for Health Care Systems: Systematic Review

被引:3
|
作者
Ewoh, Pius [1 ]
Vartiainen, Tero [1 ]
机构
[1] Univ Vaasa, Sch Technol & Innovat, Informat Syst Sci, Wolffintie 32, Vaasa 65200, Finland
关键词
health care systems; cybersecurity; sociotechnical; medical device; secure systems development; training; ransomware; data breaches; protected health information; patient safety; DIGITAL HEALTH; CYBERSECURITY; SECURITY; DEVICES; DESIGN; ERA;
D O I
10.2196/46904
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Background: Health care organizations worldwide are faced with an increasing number of cyberattacks and threats to their critical infrastructure. These cyberattacks cause significant data breaches in digital health information systems, which threaten patient safety and privacy. Objective: From a sociotechnical perspective, this paper explores why digital health care systems are vulnerable to cyberattacks and provides sociotechnical solutions through a systematic literature review (SLR). Methods: An SLR using the PRISMA (Preferred Reporting Items for Systematic Reviews and Meta-Analyses) was conducted by searching 6 databases (PubMed, Web of Science, ScienceDirect, Scopus, Institute of Electrical and Electronics Engineers, and Springer) and a journal (Management Information Systems Quarterly) for articles published between 2012 and 2022 and indexed using the following keywords: "(cybersecurity OR cybercrime OR ransomware) AND (healthcare) OR (cybersecurity in healthcare)." Reports, review articles, and industry white papers that focused on cybersecurity and health care challenges and solutions were included. Only articles published in English were selected for the review. Results: In total, 5 themes were identified: human error, lack of investment, complex network-connected end-point devices, old legacy systems, and technology advancement (digitalization). We also found that knowledge applications for solving vulnerabilities in health care systems between 2012 to 2022 were inconsistent. Conclusions: This SLR provides a clear understanding of why health care systems are vulnerable to cyberattacks and proposes interventions from a new sociotechnical perspective. These solutions can serve as a guide for health care organizations in their efforts to prevent breaches and address vulnerabilities. To bridge the gap, we recommend that health care organizations, in partnership with educational institutions, develop and implement a cybersecurity curriculum for health care and intelligence information sharing through collaborations; training; awareness campaigns; and knowledge application areas such as secure design processes, phase-out of legacy systems, and improved investment. Additional studies are needed to create a sociotechnical framework that will support cybersecurity in health care systems and connect technology, people, and processes in an integrated manner.
引用
收藏
页数:30
相关论文
共 50 条
  • [41] Clinical care review systems in healthcare: a systematic review
    Walker L.E.
    Nestler D.M.
    Laack T.A.
    Clements C.M.
    Erwin P.J.
    Scanlan-Hanson L.
    Bellolio M.F.
    International Journal of Emergency Medicine, 2018, 11 (1)
  • [42] Interruptions in the wild: Development of a sociotechnical systems model of interruptions in the emergency department through a systematic review
    Werner, Nicole E.
    Holden, Richard J.
    APPLIED ERGONOMICS, 2015, 51 : 244 - 254
  • [43] Implementing cloud ERP solutions: a review of sociotechnical concerns
    Sorheller, Vegard Uri
    Hovik, Emeli Jorgensen
    Hustad, Eli
    Vassilakopoulou, Polyxeni
    CENTERIS 2018 - INTERNATIONAL CONFERENCE ON ENTERPRISE INFORMATION SYSTEMS / PROJMAN 2018 - INTERNATIONAL CONFERENCE ON PROJECT MANAGEMENT / HCIST 2018 - INTERNATIONAL CONFERENCE ON HEALTH AND SOCIAL CARE INFORMATION SYSTEMS AND TECHNOLOGIES, CENTERI, 2018, 138 : 470 - 477
  • [44] Decarbonizing the iron and steel industry: A systematic review of sociotechnical systems, technological innovations, and policy options
    Kim, Jinsoo
    Sovacool, Benjamin K.
    Bazilian, Morgan
    Griffiths, Steve
    Lee, Junghwan
    Yang, Minyoung
    Lee, Jordy
    ENERGY RESEARCH & SOCIAL SCIENCE, 2022, 89
  • [45] Decarbonizing the oil refining industry: A systematic review of sociotechnical systems, technological innovations, and policy options
    Griffiths, Steve
    Sovacool, Benjamin K.
    Kim, Jinsoo
    Bazilian, Morgan
    Uratani, Joao M.
    ENERGY RESEARCH & SOCIAL SCIENCE, 2022, 89
  • [46] Decarbonizing the food and beverages industry: A critical and systematic review of developments, sociotechnical systems and policy options
    Sovacool, Benjamin K.
    Bazilian, Morgan
    Griffiths, Steve
    Kim, Jinsoo
    Foley, Aoife
    Rooney, David
    RENEWABLE & SUSTAINABLE ENERGY REVIEWS, 2021, 143 (143):
  • [47] SOCIOTECHNICAL SYSTEMS USING AN INDUSTRIAL TESTED TECHNOLOGY TO DESIGN QUALITY ASSURANCE STANDARDS IN HEALTH-CARE SYSTEMS
    GLOR, BAK
    BARKO, WF
    MILITARY MEDICINE, 1982, 147 (04) : 313 - 317
  • [48] Is franchising in health care valuable? A systematic review
    Nijmeijer, Karlijn J.
    Fabbricotti, Isabelle N.
    Huijsman, Robbert
    HEALTH POLICY AND PLANNING, 2014, 29 (02) : 164 - 176
  • [49] A Systematic Review of Health Care Efficiency Measures
    Hussey, Peter S.
    de Vries, Han
    Romley, John
    Wang, Margaret C.
    Chen, Susan S.
    Shekelle, Paul G.
    McGlynn, Elizabeth A.
    HEALTH SERVICES RESEARCH, 2009, 44 (03) : 784 - 805
  • [50] Technologies in Health Care Domain: A Systematic Review
    Gupta, Sonam
    Goel, Lipika
    Agarwal, Abhay Kumar
    INTERNATIONAL JOURNAL OF E-COLLABORATION, 2020, 16 (01) : 33 - 44