The information was available so long because the U of L doctor who set up the Web site thought the information was protected by a password and other precautions, Hebert said."It was just a mistake," Hebert said. "It was his understanding it was password protected." More
Discussions of Interoperability Exchange, Privacy, and Security in Healthcare by John Moehrke - CyberPrivacy. Topics: Health Information Exchange, Document Exchange XDS/XCA/MHD, mHealth, Meaningful Use, Direct, Patient Identity, Provider Directories, FHIR, Consent, Access Control, Audit Control, Accounting of Disclosures, Identity, Authorization, Authentication, Encryption, Digital Signatures, Transport/Media Security, De-Identification, Pseudonymization, Anonymization, and Blockchain.
Sunday, June 6, 2010
University of Louisville kidney patient data was available to public
This is a case of a Doctor believing that the tool he used protected the data. This seems to me a case where making something too easy results in failure. The fortunate thing is that it is unlikely anyone else noticed.
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment