Articles from rubric: «Processing of the personal data»
-
2018 № itm One method decomposition for securing personal data in medical information systems
Ensuring the security of information in medical information systems is essential to protect patients and medical personnel from unlawful harmful effects on them when unauthorized access to information. We propose a method of de-identification on the basis of anonymization of personal data pseudonymisation in IIAs. The method of decomposition based on the division of personal data into parts and the storage of these parts in different repositories is studied. this data security is achieved due to the complexity of the process of matching data from different repositories, since the placement of personal data in different repositories is carried out in different ways. In addition to the initial anonymisation of personal data, has the possibility of geometrician anonymized data that requires additional processing. To improve the objectivity of the findings of the survey it is proposed to store in the archive of the information system the results of processing the data at all stages. It will allow to restore results at malicious penetration into MIS, to carry out additional processing with application of different methods, to compare results of different patients at different stages of processing
-
2016 № 6 Ensuring Information Security in Healthcare Organizations.
The article addresses issues of protection of personal data in medical organizations in accordance with the laws and regulations of the Russian Federation regulators, discussing topical information security threats that are specific to medical information systems. We propose the necessary actions to ensure information security, including secure information architecture model among healthcare organizations.
-
2015 № 1 Modeling of the system of information security management of medical organizations.
The article deals with modeling the system of information security management of the medical organization in accordance with the requirements of international standard ISO/IEC 27001:2005. Presents and describes the model of the system of information security management, its structure and stages of implementation in the medical organization.