Implementation of ISO17799 and BS7799 in picture archiving and communication system: local experience in implementation of BS7799 standard

被引:10
|
作者
Tong, CKS [1 ]
Fung, KH [1 ]
Huang, HYH [1 ]
Chan, KK [1 ]
机构
[1] Pamela Youde Nethersole Eastern Hosp, Dept Med Phys, Chai Wan, Hong Kong, Peoples R China
来源
CARS 2003: COMPUTER ASSISTED RADIOLOGY AND SURGERY, PROCEEDINGS | 2003年 / 1256卷
关键词
BS7799; ISO17799; PACS; inforniation security; confidentiality; integrity; accessibility;
D O I
10.1016/S0531-5131(03)00518-1
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
In picture archiving and communication systems (PACS) [H.K. Huang, PACS: Basic Principles and Application, 1st ed., Wiley-Liss (1998); K.J. Dreyer, A. Mehta, J.H. Thrall, PACS: A Guide to the Digital Revolution, I st ed., Springer Verlag (200 1)], digital image data were stored and retrieved centrally. Clinicians and radiologists have the convenience of instant and simultaneous access to images and reports from multiple locations. In a filmless hospital [E.L. Siegel, R.M. Kolodner, Filmless Radiology, Reprint ed., Springer Verlag (2001)], with the availability of image servers, integrity of data and security of the system were the most important tasks during the design of a PACS. However, there is no single solution for the security of PACS. A comprehensive information security management system (ISMS) is required for the monitoring of the security of PACS. In this paper, the security of PACS is presented as a mechanism by which organization can manage and protect all information assets by ensuring data confidentiality, integrity and accessibility according to ISO17799 and BS7799 standards. Implementation of the ISMS involved system redesign, change of workflow, staff retraining, communication, social engineering and documentation control. (C) 2003 Elsevier Science B.V. and CARS. All rights reserved.
引用
收藏
页码:311 / 318
页数:8
相关论文
共 17 条