Controlling the dissemination and disclosure of healthcare events
نویسنده
چکیده
Information is central to healthcare: for proper care, information must be shared. Modern healthcare is highly collaborative, involving interactions between users from a range of institutions, including primary and secondary care providers, researchers, government and private organisations. Each has specific data requirements relating to the service they provide, and must be informed of relevant information as it occurs. Personal health information is highly sensitive. Those who collect/hold data as part of the care process are responsible for protecting its confidentiality, in line with patient consent, codes of practice and legislation. Ideally, one should receive only that information necessary for the tasks they perform—on a need-to-know basis. Healthcare requires mechanisms to strictly control information dissemination.Many solutions fail to account for the scale and heterogeneity of the environment. Centrally managed data services impede the local autonomy of health institutions, impacting security by diminishing accountability and increasing the risks/impacts of incorrect disclosures. Direct, synchronous (request-response) communication requires an enumeration of every potential information source/sink. This is impractical when considering health services at a national level. Healthcare presents a data-driven environment highly amenable to an event-based infrastructure, which can inform, update and alert relevant parties of incidents as they occur. Event-based data dissemination paradigms, while efficient and scalable, generally lack the rigorous access control mechanisms required for health infrastructure. This dissertation describes how publish/subscribe, an asynchronous, push-based, manyto-many middleware communication paradigm, is extended to include mechanisms for actively controlling information disclosure. We present Interaction Control: a data-control layer above a publish/subscribe service allowing the definition of context-aware policy rules to authorise information channels, transform information and restrict data propagation according to the circumstances. As dissemination policy is defined at the broker-level and enforced by the middleware, client compliance is ensured. Although policy enforcement involves extra processing, we show that in some cases the control mechanisms can actually improve performance over a general publish/subscribe implementation. We build Interaction Control mechanisms into integrated database-brokers to provide a rich representation of state; while facilitating audit, which is essential for accountability. Healthcare requires the sharing of sensitive information across federated domains of administrative control. Interaction Control provides the means for balancing the competing concerns of information sharing and protection. It enables those responsible for information to meet their data management obligations, through specification of fine-grained disclosure policy. To Amar, Charlene, Richelle and Jessica
منابع مشابه
Nurses' Perceptions Regarding Disclosure of Patient Safety Incidents in selected educational and medical centers of Iran University of Medical Sciences, 2020
Background and Aim: Patient safety is one of the most essential components of health care systems and is one of the most important pillars of quality in these organizations. Combining patient safety strategies with patient care processes will reduce the occurrence of incidents and reduce the likelihood of injury. Healthcare providers can improve a patient's safety status by interacting with pat...
متن کاملDisclosure of patient safety incidents: a comprehensive review.
PURPOSE Adverse events are increasingly recognized as a source of harm to patients. When such harm occurs, problems arise in communicating the situation to patients and their families. We reviewed the literature on disclosure across individual and international boundaries, including patients', healthcare professionals' and other stakeholders' perspectives in order to ascertain how the needs of ...
متن کاملdomestic and international regulations and standards for risk disclosure in banks
Reporting by stakeholder groups, especially shareholders, has always been a demand And reporting and disclosure for the banking network is important. In Iran, banks require disclosing and reporting information and financial and economic events, but there are many international rules and standards for this disclosure. In addition, domestic regulations and requirements are also unclear due to the...
متن کاملارائه مدل کنترل خطاهای پزشکی در بیمارستانهای دانشگاه علوم پزشکی تهران
Background and Aim: Healthcare processes have caused many dangers to patients, and the increase of medical errors is one of the most important consequences of such processes. The present research is conducted to reduce medical errors through presenting a model to control them. Materials and Methods: In this mixed (quantitative-qualitative) research, a conceptual model was assembled. Then ...
متن کاملSunshine Policies and Murky Shadows in Europe: Disclosure of Pharmaceutical Industry Payments to Health Professionals in Nine European Countries
Relationships between health professionals and pharmaceutical manufacturers can unduly influence clinical practice. These relationships are the focus of global transparency efforts, including in Europe. We conducted a descriptive content analysis of the transparency provisions implemented by February 2017 in nine European Union (EU) countries concerning payments to health professionals, with du...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2010