Execution of a self-directed risk assessment methodology to address HIPAA data security requirements

被引:1
|
作者
Coleman, J [1 ]
机构
[1] Adv Technol Inst, N Charleston, SC 29418 USA
关键词
FHPAA; privacy; security; OCTAVE; DOD; information assurance; risk assessment; risk management;
D O I
10.1117/12.480653
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper analyzes the method and training of a self directed risk assessment methodology entitled OCTAVE(sm) (Operationally Critical Threat Asset and Vulnerability Evaluation) at over 170 DOD medical treatment facilities. It focuses specifically on how OCTAVE built interdisciplinary, inter-hierarchical consensus and enhanced local capabilities to perform Health Information Assurance. The Risk Assessment Methodology was developed by the Software Engineering Institute at Carnegie Mellon University as part of the Defense Health Information Assurance Program (DHIAP). The basis for its success is the combination of analysis of organizational practices and technological vulnerabilities. Together, these areas address the core implications behind the HIPAA Security Rule and can be used to develop Organizational Protection Strategies and Technological Mitigation Plans. A key component of OCTAVE is the interdisciplinary composition of the analysis team (Patient Administration, IT staff and Clinician). It is this unique composition of analysis team members, along with organizational and technical analysis of business practices, assets and threats, which enables facilities to create sound and effective security policies. The Risk Assessment is conducted in-house, and therefore the process, results and knowledge remain within the organization, helping to build consensus in an environment of differing organizational and disciplinary perspectives on Health Information Assurance.
引用
收藏
页码:224 / 231
页数:8
相关论文
共 50 条
  • [21] Theory is needed to improve education, assessment and policy in self-directed learning
    Mazmanian, Paul
    Feldman, Moshe
    MEDICAL EDUCATION, 2011, 45 (04) : 324 - 326
  • [22] Choose Your own Adventure: Self-Directed Adult Learning and Assessment
    Rick, Holly
    Phlypo, Karla
    PROCEEDINGS OF THE 18TH EUROPEAN CONFERENCE ON E-LEARNING (ECEL 2019), 2019, : 680 - 683
  • [23] Self and Peer Assessment of Pediatricians, Psychiatrists and Medicine Specialists: Implications for Self-Directed Learning
    Claudio Violato
    Jocelyn Lockyer
    Advances in Health Sciences Education, 2006, 11 : 235 - 244
  • [24] Self and peer assessment of pediatricians, psychiatrists and medicine specialists: Implications for self-directed learning
    Violato, Claudio
    Lockyer, Jocelyn
    ADVANCES IN HEALTH SCIENCES EDUCATION, 2006, 11 (03) : 235 - 244
  • [25] Interactive Atlas of Histology A Tool for Self-Directed Learning, Practice, and Self-Assessment
    Goubran, Emile Z.
    Vinjamury, Sivarama P.
    JOURNAL OF CHIROPRACTIC EDUCATION, 2007, 21 (01): : 12 - 18
  • [26] Does self-directed learning address gaps in nursing student knowledge of Alzheimer's disease?
    Love, Tamara
    Wiese, Lisa Ann Kirk
    Duncan, Vanessa
    Bertrand, Herlie
    EDUCATIONAL GERONTOLOGY, 2023, 49 (08) : 673 - 686
  • [27] A Quantitative Methodology for Cloud Security Risk Assessment
    Basu, Srijita
    Sengupta, Anirban
    Mazumdar, Chandan
    CLOSER: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, 2017, : 92 - 103
  • [28] Enabling risk and ensuring safety: self-directed support and personal budgets
    Carr, Sarah
    JOURNAL OF ADULT PROTECTION, 2011, 13 (03): : 122 - 136
  • [29] Designing Nudges for Self-directed Learning in a Data-rich Environment
    Gatare, Kinnari
    Prasad, Prajish
    Kothiyal, Aditi
    Sarkar, Pratiti
    Raina, Ashutosh
    Majumdar, Rwitajit
    29TH INTERNATIONAL CONFERENCE ON COMPUTERS IN EDUCATION (ICCE 2021), VOL II, 2021, : 553 - 562
  • [30] Participative assessment practices and its contribution to the development of self-directed learning skills
    Lubbe, Anitia
    Mentz, Elsa
    SELF-DIRECTED LEARNING FOR THE 21ST CENTURY: IMPLICATIONS FOR HIGHER EDUCATION, 2019, 1 : 341 - 368