International Journal of Medical Informatics
Volume 79, Issue 4 , Pages 268-283 , April 2010

Grounding information security in healthcare

  • Ana Ferreira

      Affiliations

    • Computing Laboratory, University of Kent, CT2 7NF Canterbury, Kent, UK
    • Biostatistics and Medical Informatics Department, Faculty of Medicine, Al. Prof. Hernâni Monteiro, 4200-319 Porto, Portugal
    • CINTESIS – Center for research in health information Systems and technologies, Faculty of Medicine, Al. Prof. Hernâni Monteiro, 4200-319 Porto, Portugal
    • Corresponding Author InformationCorresponding author at: Computing Laboratory, University of Kent, CT2 7NF Canterbury, Kent, UK. Tel.: +44 1227 824180; fax: +44 1227 762811.
  • ,
  • Luis Antunes

      Affiliations

    • Instituto de Telecomunicações, Faculdade de Ciências da Universidade do Porto, 4169-007 Porto, Portugal
  • ,
  • David Chadwick

      Affiliations

    • Computing Laboratory, University of Kent, CT2 7NF Canterbury, Kent, UK
  • ,
  • Ricardo Correia

      Affiliations

    • Biostatistics and Medical Informatics Department, Faculty of Medicine, Al. Prof. Hernâni Monteiro, 4200-319 Porto, Portugal
    • CINTESIS – Center for research in health information Systems and technologies, Faculty of Medicine, Al. Prof. Hernâni Monteiro, 4200-319 Porto, Portugal

Received 7 July 2009 ,Revised 19 January 2010 ,Accepted 19 January 2010.

References 

  1. Gollman D. Computer Security. 1st ed.. John Wiley & Sons; 1999;
  2. Harris S. CISSP All-in-One Exam Guide. 2nd ed.. McGraw-Hill Osborne Media; 2003;
  3. C. Waegemann, EHR vs. CPR vs. EMR, Healthcare Informatics online, May 2003.
  4. Cruz-Correia R, Vieira-Marques P, Costa P, Ferreira A, Oliveira-Palhares E, Araújo F, et al. Integration of hospital data using agent technologies—a case study. AICommunications Special Issue of ECAI. 2005;18(3):191–200
  5. Sprague L. Electronic health records: How close? How far to go?. NHPF Issue Brief. 2004;29(September (800)):1–17
  6. Miller RH, Sim I. Physicians’ use of electronic medical records: barriers and solutions. Health Affairs (Millwood). 2004;23(March–April (2)):116–126
  7. M.Y. Becker, P. Sewell, Cassandra: flexible trust management, applied to electronic health records, 2004, pp. 139–154.
  8. A. Ferreira, R. Cruz-Correia, L. Antunes, D. Chadwick, Access control: how can it improve patients’ healthcare? Studies in Health Technology and Informatics, IOS Press 127 (2007) 65–76.
  9. Blobel B. Authorisation and access control for electronic health record systems. International Journal of Medical Informatics. 2004;73(March 31 (3)):251–257
  10. Strauss A. Qualitative Analysis for Social Scientists. Cambridge University Press; 1987;
  11. Marvasti AB. Qualitative Research in Sociology: an Introduction. London: Sage; 2004;
  12. Dey I. Grounded theory. The SAGE Handbook of Grounded Theory. Sage; 2007;
  13. Morgan DL. Practical Strategies for Combining Qualitative and Quantitative Methods: Applications to Health Research. Qualitative Health Research. 1998;8(2):362–376
  14. Morgan D. Focus groups. Annual Review of Sociology. 1996;22:129–152
  15. NVIVO 7, QSR International, Available at: http://www.qsrinternational.com/ (accessed on the 13th April 2009).
  16. Charmaz K. Constructing Grounded Theory: A Practical Guide through Qualitative Analysis. Sage Publications Ltd.; 2006;
  17. Ferreira A, Cruz-Correia R, Antunes L, Farinha P, Oliveira-Palhares E, Chadwick DW, et al. How to break access control in a controlled manner?. In: Proceedings of the 19th IEEE Symposium on Computer-Based Medical Systems. 2006;p. 847–851
  18. A. Ferreira, D. Chadwick, G. Zao, P. Farinha, R. Correia, R. Chilro, L. Antunes, How to securely break into RBAC: the BTG-RBAC model, Proceedings from 25th Annual Computer Security Applications Conference – ACSAC2009, 2009, pp. 23–31.
  19. A. Ferreira, A. Correia, A. Silva, A. Corte, A. Pinto, A. Saavedra, A.L. Pereira, A.F. Pereira, R. Cruz-Correia, L.F. Antunes, Why facilitate patient access to medical records, Studies in Health Technology and Informatics, IOS Press 127 (2007) 77–90.

PII: S1386-5056(10)00022-5

doi: 10.1016/j.ijmedinf.2010.01.009

International Journal of Medical Informatics
Volume 79, Issue 4 , Pages 268-283 , April 2010