Development of an E-Healthcare Information Security Risk Assessment Method

被引:8
|
作者
Wei, June [1 ,2 ]
Lin, Binshan [3 ,4 ]
Loho-Noya, Meiga [1 ]
机构
[1] Univ W Florida, Coll Business, Pensacola, FL 32514 USA
[2] Univ W Florida, Dept Management & Management Informat Syst, Pensacola, FL 32514 USA
[3] Louisiana State Univ, Coll Business Adm, Dept Management Mkt, Shreveport, LA 71105 USA
[4] Louisiana State Univ, BellSouth Corp Prof, Sch Business, Shreveport, LA 71105 USA
关键词
Database; E-Healthcare; Medical Records; Pattern Analysis; Security Risk Assessment; DETERMINANTS; ADOPTION;
D O I
10.4018/jdm.2013010103
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper developed a method to assess information security risks in e-healthcare. Specifically, it first developed a static E-Healthcare Information Security Risk (EHISR) model to present thirty-three security risk factors by identifying information security threats and their sources in e-healthcare. Second, a dynamic E-Healthcare Information Flow (EHIF) model was developed to logically link these information risk factors in the EHISR model. Pattern analysis showed that information security risks could be classified into two levels, and versatility analysis showed that the overall security risks for eight information flows were close with a range from 55% to 86%. Third, one quantifiable approach based on a relative-weighted assessment model was developed to demonstrate how to assess the information security risks in e-healthcare. This quantitative security risk measurement establishes a reference point for assessing e-healthcare security risks and assists managers in selecting a reliable information flow infrastructure with a lower security risk level.
引用
收藏
页码:36 / 57
页数:22
相关论文
共 50 条
  • [21] Regulation of the innovations in e-healthcare
    Fagon, Jean-Yves
    M S-MEDECINE SCIENCES, 2018, 34 : 36 - 36
  • [22] E-Healthcare Maturity in Taiwan
    Liu, Chung-Feng
    Hwang, Hsin-Ginn
    Chang, Hui-Chuan
    TELEMEDICINE AND E-HEALTH, 2011, 17 (07) : 569 - 573
  • [23] E-healthcare delivery solution
    Mukhopadhyay, Priyata
    Roy, Himadri Sekhar
    Mukherjee, Nandini
    2019 11TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2019, : 630 - 635
  • [24] Emerging Technologies for e-Healthcare
    Cheng, Yu
    IEEE NETWORK, 2012, 26 (05): : 2 - 4
  • [25] Development of an intelligent e-healthcare system for the domestic care industry
    Wong, Bennie
    Ho, G. T. S.
    Tsui, Eric
    INDUSTRIAL MANAGEMENT & DATA SYSTEMS, 2017, 117 (07) : 1426 - 1445
  • [26] Information Security Risk Assessment in Healthcare: the Experience of an Italian Paediatric Hospital
    Bava, Michele
    Cacciari, Domenico
    Sossa, Edoardo
    Zotti, Daniel
    Zangrando, Riccardo
    2009 1ST INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE, COMMUNICATION SYSTEMS AND NETWORKS(CICSYN 2009), 2009, : 321 - +
  • [27] Assessment Model and Method Research of Information Security Risk
    Lu Zhen
    Xiong Zhen
    Tu Keqin
    FRONTIERS OF MANUFACTURING AND DESIGN SCIENCE IV, PTS 1-5, 2014, 496-500 : 2170 - +
  • [28] INFORMATION SECURITY RISK ASSESSMENT - THE DEVELOPMENT OF THE STANDARD APPROACHES
    Wawrzyniak, Dariusz
    5TH INTERNATIONAL SCIENTIFIC CONFERENCE BUSINESS AND MANAGEMENT' 2008, 2008, : 495 - 500
  • [29] An Improved Risk Assessment Method for SCADA Information Security
    Markovic-Petrovic, J. D.
    Stojanovic, M. D.
    ELEKTRONIKA IR ELEKTROTECHNIKA, 2014, 20 (07) : 69 - 72
  • [30] Information security risk assessment using the AHP method
    Zaburko, J.
    Szulzyk-Cieplak, J.
    IV INTERNATIONAL CONFERENCE OF COMPUTATIONAL METHODS IN ENGINEERING SCIENCE (CMES'19), 2019, 710