This information is for reference purposes only. It was current when produced and may now be outdated. Archive material is no longer maintained, and some links may not work. Persons with disabilities having difficulty accessing this information should contact us at: https://digital.ahrq.gov/contact-us. Let us know the nature of the problem, the Web address of what you want, and your contact information.
Please go to digital.ahrq.gov for current information.

A security architecture for health information networks

Health information network security needs to balance exacting security controls with practicality, and ease of implementation in today's healthcare enterprise. Recent work on 'nationwide health information network' architectures has sought to share highly confidential data over insecure networks such as the Internet. Health information network architectures need to find the right balance between stringent security controls and ease of implementation. Using basic patterns of health network data flow and trust models to support secure communication between network nodes, we abstract network security requirements to a core set to enable secure inter-network data sharing. We propose a minimum set of security controls that can be implemented without needing major new technologies, but yet realize network security and privacy goals of confidentiality, integrity and availability. This framework combines a set of technology mechanisms with environmental controls, and is shown to be sufficient to counter commonly encountered network security threats adequately.

Author(s)
Kailar R, Muralidhar V
Journal
AMIA Annu Symp Proc
Publication Year
2007
Page Number
379-83
The information on this page is archived and provided for reference purposes only.