Literature DB >> 23305810

Security and privacy in electronic health records: a systematic literature review.

José Luis Fernández-Alemán1, Inmaculada Carrión Señor, Pedro Ángel Oliver Lozoya, Ambrosio Toval.   

Abstract

OBJECTIVE: To report the results of a systematic literature review concerning the security and privacy of electronic health record (EHR) systems. DATA SOURCES: Original articles written in English found in MEDLINE, ACM Digital Library, Wiley InterScience, IEEE Digital Library, Science@Direct, MetaPress, ERIC, CINAHL and Trip Database. STUDY SELECTION: Only those articles dealing with the security and privacy of EHR systems. DATA EXTRACTION: The extraction of 775 articles using a predefined search string, the outcome of which was reviewed by three authors and checked by a fourth.
RESULTS: A total of 49 articles were selected, of which 26 used standards or regulations related to the privacy and security of EHR data. The most widely used regulations are the Health Insurance Portability and Accountability Act (HIPAA) and the European Data Protection Directive 95/46/EC. We found 23 articles that used symmetric key and/or asymmetric key schemes and 13 articles that employed the pseudo anonymity technique in EHR systems. A total of 11 articles propose the use of a digital signature scheme based on PKI (Public Key Infrastructure) and 13 articles propose a login/password (seven of them combined with a digital certificate or PIN) for authentication. The preferred access control model appears to be Role-Based Access Control (RBAC), since it is used in 27 studies. Ten of these studies discuss who should define the EHR systems' roles. Eleven studies discuss who should provide access to EHR data: patients or health entities. Sixteen of the articles reviewed indicate that it is necessary to override defined access policies in the case of an emergency. In 25 articles an audit-log of the system is produced. Only four studies mention that system users and/or health staff should be trained in security and privacy.
CONCLUSIONS: Recent years have witnessed the design of standards and the promulgation of directives concerning security and privacy in EHR systems. However, more work should be done to adopt these regulations and to deploy secure EHR systems.
Copyright © 2013 Elsevier Inc. All rights reserved.

Entities:  

Mesh:

Year:  2013        PMID: 23305810     DOI: 10.1016/j.jbi.2012.12.003

Source DB:  PubMed          Journal:  J Biomed Inform        ISSN: 1532-0464            Impact factor:   6.317


  61 in total

Review 1.  A Systematic Investigation on Barriers and Critical Success Factors for Clinical Information Systems in Integrated Care Settings.

Authors:  A Hoerbst; M Schweitzer
Journal:  Yearb Med Inform       Date:  2015-08-13

Review 2.  A Systematic Literature Review of Agents Applied in Healthcare.

Authors:  David Isern; Antonio Moreno
Journal:  J Med Syst       Date:  2015-11-21       Impact factor: 4.460

3.  Free Web-based personal health records: an analysis of functionality.

Authors:  José Luis Fernández-Alemán; Carlos Luis Seva-Llor; Ambrosio Toval; Sofia Ouhbi; Luis Fernández-Luque
Journal:  J Med Syst       Date:  2013-11-13       Impact factor: 4.460

4.  Electronic medical records: friends or foes?

Authors:  Michael D Ries
Journal:  Clin Orthop Relat Res       Date:  2013-11-07       Impact factor: 4.176

5.  Free blood donation mobile applications.

Authors:  Sofia Ouhbi; José Luis Fernández-Alemán; Ambrosio Toval; Ali Idri; José Rivera Pozo
Journal:  J Med Syst       Date:  2015-03-03       Impact factor: 4.460

6.  Transparent Medical Data Systems.

Authors:  Dayana Spagnuelo; Gabriele Lenzini
Journal:  J Med Syst       Date:  2016-11-16       Impact factor: 4.460

7.  Evaluating the Privacy Policies of Mobile Personal Health Records for Pregnancy Monitoring.

Authors:  Mariam Bachiri; Ali Idri; José Luis Fernández-Alemán; Ambrosio Toval
Journal:  J Med Syst       Date:  2018-06-29       Impact factor: 4.460

8.  Secure Cloud-Based EHR System Using Attribute-Based Cryptosystem and Blockchain.

Authors:  Hao Wang; Yujiao Song
Journal:  J Med Syst       Date:  2018-07-05       Impact factor: 4.460

9.  Evaluation of Commercial Next-Generation Sequencing Bioinformatics Software Solutions.

Authors:  Rama R Gullapalli
Journal:  J Mol Diagn       Date:  2019-11-18       Impact factor: 5.568

Review 10.  The basics of data, big data, and machine learning in clinical practice.

Authors:  David Soriano-Valdez; Ingris Pelaez-Ballestas; Amaranta Manrique de Lara; Alfonso Gastelum-Strozzi
Journal:  Clin Rheumatol       Date:  2020-06-05       Impact factor: 2.980

View more

北京卡尤迪生物科技股份有限公司 © 2022-2023.