Analysis of Information Security Management Systems at 5 Domestic Hospitals with More than 500 Beds
نویسندگان
چکیده
OBJECTIVES The information security management systems (ISMS) of 5 hospitals with more than 500 beds were evaluated with regards to the level of information security, management, and physical and technical aspects so that we might make recommendations on information security and security countermeasures which meet both international standards and the needs of individual hospitals. METHODS The ISMS check-list derived from international/domestic standards was distributed to each hospital to complete and the staff of each hospital was interviewed. Information Security Indicator and Information Security Values were used to estimate the present security levels and evaluate the application of each hospital's current system. RESULTS With regard to the moderate clause of the ISMS, the hospitals were determined to be in compliance. The most vulnerable clause was asset management, in particular, information asset classification guidelines. The clauses of information security incident management and business continuity management were deemed necessary for the establishment of successful ISMS. CONCLUSIONS The level of current ISMS in the hospitals evaluated was determined to be insufficient. Establishment of adequate ISMS is necessary to ensure patient privacy and the safe use of medical records for various purposes. Implementation of ISMS which meet international standards with a long-term and comprehensive perspective is of prime importance. To reflect the requirements of the varied interests of medical staff, consumers, and institutions, the establishment of political support is essential to create suitable hospital ISMS.
منابع مشابه
Dynamic Network Data Envelopment Analysis Model Usage in Measuring and Ranking the Financial Performance of Social Security Hospitals Based on their Size
Background: Measuring the hospitals financial performance in the health care system is of great importance. This is because hospitals with good financial performance can maintain reliable systems and provide necessary resources to improve quality. The aim of this study was to measure, compare and rank the financial performance of social security hospitals based on their size using a dynamic net...
متن کاملIdentifying Information Security Risk Components in Military Hospitals in Iran
Background and Aim: Information systems are always at risk of information theft, information change, and interruptions in service delivery. Therefore, the present study was conducted to develop a model for identifying information security risk in military hospitals in Iran. Methods: This study was a qualitative content analysis conducted in military hospitals in Iran in 2019. The sample consist...
متن کاملسنجش کارایی فنی بیمارستانهای تامین اجتماعی
Background and Aim: Hospitals as one of the major institutions providing health care services within the health sector utilize a high percentage of the sector's key resources to respond to the needs of consumers. The aim of the present study was to identify factors affecting technical, scale and management efficiency of the Social Security Organization (SSO) hospitals during the period 2007-200...
متن کاملشاخص توسعه انسانی و سطح کارایی بیمارستانهای تامین اجتماعی
Introduction & Objective: Hospitals as one of the main institutions providing health care services play an important role in the health system and allocate a high percentage of health sector's budget to them. This study aimed to answer whether social security hospitals efficiency levels are the same for all provinces in Iran? And whether any relationship exists between the human development i...
متن کاملInvestigating the Level of Access to Hospital Medical Facilities Using the Geographical Information System (GIS) in Yazd, Iran, in 2019
Introduction: proper geographical access to hospital medical facilities will increase people’s visits to receive non-emergency services and no delay in providing emergency services. This research aimed to determine the level of access to hospital medical facilities with Geographical Information System in Yazd in 2019. Methods: This research is descriptive and applied. The required data for ana...
متن کامل