A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System
碩士 === 元培科技大學 === 數位創新管理研究所 === 102 === Information Center of the Department of Health in 2005, the announcement "Medical Information System Specification 2.0" as the medical institutions to build quasi-medical information system data, and the bill was passed HIPPA information security inf...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Online Access: | http://ndltd.ncl.edu.tw/handle/zj25jm |
id |
ndltd-TW-102YUST5620007 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-102YUST56200072018-04-27T04:28:54Z http://ndltd.ncl.edu.tw/handle/zj25jm A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System 整合ISO27001與ISO27799應用於醫療資訊系統之研究 HSIEH,Tsung-Han 謝宗翰 碩士 元培科技大學 數位創新管理研究所 102 Information Center of the Department of Health in 2005, the announcement "Medical Information System Specification 2.0" as the medical institutions to build quasi-medical information system data, and the bill was passed HIPPA information security infrastructure construction, however, the recent succession of international information security standards launch, and the National Health Insurance Bureau in response to e-government to promote, build NHI IC cards and electronic medical records exchange technology, supplemented by information security training hospital personnel seeds provide ISO 27001:2005 information Security management International standard authentication services. Therefore, this study, "Medical Information System Specification 2.0," based on the use of literature analysis as a research strategy of this study in the literature end use analysis compiled the ISO 27001 management to entry (133) and for the health care industry's special attributes especially developed ISO 27799:2008, integrated information systems used in medical, at 11 on the measures necessary technical or organizational; then use the proposed PDCA cycle processes and Professor Lin Yilong PLSE Model four dimensions, the establishment of medical institutions of medical information Systems security management Measures to Do List. After further modified Delphi method through expert questionnaires to obtain consistency of expert evaluation project to construct this study, "Medical Information Systems Security 3.0 specification draft version of" job evaluation sheet and import flow chart. Finally, through a case study of the hospital accreditation process conducted practical side to verify constructed in this study, "Medical Information Systems Security 3.0 specification draft version of ` job evaluation sheet and import flowchart its availability and effectiveness' of medical institutions to provide a line with Plan-Do-Check-Act the trend information security information security standard operating procedures to follow. For imported ISMS medical institutions, ISM can also be adapted to give a reference, and information security protection measures carried out a review of medical institutions to take this evaluation table for the early detection of information security gaps. Lin,I-Long 林宜隆 學位論文 ; thesis 133 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 元培科技大學 === 數位創新管理研究所 === 102 === Information Center of the Department of Health in 2005, the announcement "Medical Information System Specification 2.0" as the medical institutions to build quasi-medical information system data, and the bill was passed HIPPA information security infrastructure construction, however, the recent succession of international information security standards launch, and the National Health Insurance Bureau in response to e-government to promote, build NHI IC cards and electronic medical records exchange technology, supplemented by information security training hospital personnel seeds provide ISO 27001:2005 information Security management International standard authentication services.
Therefore, this study, "Medical Information System Specification 2.0," based on the use of literature analysis as a research strategy of this study in the literature end use analysis compiled the ISO 27001 management to entry (133) and for the health care industry's special attributes especially developed ISO 27799:2008, integrated information systems used in medical, at 11 on the measures necessary technical or organizational; then use the proposed PDCA cycle processes and Professor Lin Yilong PLSE Model four dimensions, the establishment of medical institutions of medical information Systems security management Measures to Do List. After further modified Delphi method through expert questionnaires to obtain consistency of expert evaluation project to construct this study, "Medical Information Systems Security 3.0 specification draft version of" job evaluation sheet and import flow chart.
Finally, through a case study of the hospital accreditation process conducted practical side to verify constructed in this study, "Medical Information Systems Security 3.0 specification draft version of ` job evaluation sheet and import flowchart its availability and effectiveness' of medical institutions to provide a line with Plan-Do-Check-Act the trend information security information security standard operating procedures to follow. For imported ISMS medical institutions, ISM can also be adapted to give a reference, and information security protection measures carried out a review of medical institutions to take this evaluation table for the early detection of information security gaps.
|
author2 |
Lin,I-Long |
author_facet |
Lin,I-Long HSIEH,Tsung-Han 謝宗翰 |
author |
HSIEH,Tsung-Han 謝宗翰 |
spellingShingle |
HSIEH,Tsung-Han 謝宗翰 A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System |
author_sort |
HSIEH,Tsung-Han |
title |
A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System |
title_short |
A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System |
title_full |
A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System |
title_fullStr |
A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System |
title_full_unstemmed |
A study on Integrating ISO27001 and ISO27799 to Apply Healthcare Information System |
title_sort |
study on integrating iso27001 and iso27799 to apply healthcare information system |
url |
http://ndltd.ncl.edu.tw/handle/zj25jm |
work_keys_str_mv |
AT hsiehtsunghan astudyonintegratingiso27001andiso27799toapplyhealthcareinformationsystem AT xièzōnghàn astudyonintegratingiso27001andiso27799toapplyhealthcareinformationsystem AT hsiehtsunghan zhěnghéiso27001yǔiso27799yīngyòngyúyīliáozīxùnxìtǒngzhīyánjiū AT xièzōnghàn zhěnghéiso27001yǔiso27799yīngyòngyúyīliáozīxùnxìtǒngzhīyánjiū AT hsiehtsunghan studyonintegratingiso27001andiso27799toapplyhealthcareinformationsystem AT xièzōnghàn studyonintegratingiso27001andiso27799toapplyhealthcareinformationsystem |
_version_ |
1718633600453181440 |