BS EN ISO 22600-1:2014
$167.15
Health informatics. Privilege management and access control – Overview and policy management
Published By | Publication Date | Number of Pages |
BSI | 2014 | 38 |
This multi-part International Standard defines principles and specifies services needed for managing privileges and access control to data and/or functions.
It focuses on communication and use of health information distributed across policy domain boundaries. This includes healthcare information sharing across unaffiliated providers of healthcare, healthcare organizations, health insurance companies, their patients, staff members, and trading partners by both individuals and application systems ranging from a local situation to a regional or even national situation.
It specifies the necessary component-based concepts and is intended to support their technical implementation. It will not specify the use of these concepts in particular clinical process pathways.
This part of ISO 22600 proposes a template for the policy agreement. It enables the comparable documentation from all parties involved in the information exchange.
This part of ISO 22600 excludes platform-specific and implementation details. It does not specify technical communication services and protocols which have been established in other standards. It also excludes authentication techniques.
PDF Catalog
PDF Pages | PDF Title |
---|---|
4 | Foreword |
6 | Foreword |
7 | Introduction |
9 | Section sec_1 Section sec_2 Section sec_3 Section sec_3.1 1 Scope 2 Normative references 3 Terms and definitions |
10 | Section sec_3.2 Section sec_3.3 Section sec_3.4 Section sec_3.5 Section sec_3.6 Section sec_3.7 Section sec_3.8 Section sec_3.9 |
11 | Section sec_3.10 Section sec_3.11 Section sec_3.12 Section sec_3.13 Section sec_3.14 Section sec_3.15 Section sec_3.16 Section sec_3.17 Section sec_3.18 Section sec_3.19 Section sec_3.20 |
12 | Section sec_3.21 Section sec_3.22 Section sec_3.23 Section sec_3.24 Section sec_4 Section sec_5 Section sec_5.1 Section sec_5.2 Section sec_5.2.1 4 Abbreviated terms 5 Goal and structure of privilege management and access control 5.1 Goal of privilege management and access control 5.2 Structure of privilege management and access control |
13 | Section sec_5.2.2 Section sec_5.2.3 Section sec_5.2.3.1 |
14 | Section sec_5.2.3.2 Section sec_5.2.4 Section sec_5.2.5 Section sec_5.2.6 |
15 | Section sec_5.2.7 Section sec_5.2.8 |
17 | Figure fig_1 Section sec_6 Section sec_6.1 6 Policy agreement 6.1 Overview |
18 | Section sec_6.2 Section sec_6.3 Section sec_6.4 Section sec_6.5 Section sec_6.6 6.2 Identification 6.3 Patient consent 6.4 Patient privacy 6.5 Information identification 6.6 Information location |
19 | Section sec_6.7 Section sec_6.8 Section sec_6.9 Section sec_6.10 Section sec_6.11 Section sec_6.12 Section sec_6.13 6.7 Information integrity 6.8 Security 6.9 Authorization 6.10 Role structures 6.11 Assignment and attestation authorities 6.12 Delegation rights 6.13 Validity time |
20 | Section sec_6.14 Section sec_6.15 Section sec_6.16 Section sec_6.17 Section sec_6.18 Section sec_6.19 Section sec_6.20 6.14 Authentication of users/roles 6.15 Access 6.16 Policy agreement validity period 6.17 Ethics 6.18 Secure audit trail 6.19 Audit check 6.20 Risk analysis |
21 | Section sec_6.21 Section sec_6.22 Section sec_7 6.21 Continuity and disaster management 6.22 Future system developments 7 Documentation |
22 | Annex sec_A Annex sec_A.1 Annex sec_A.2 Annex sec_A.3 Annex A (informative) Example of a documentation template |
24 | Annex sec_A.4 Annex sec_A.4.1 |
25 | Annex sec_A.4.2 |
26 | Annex sec_A.4.3 |
27 | Annex sec_A.4.4 |
29 | Annex sec_B Annex sec_B.1 Annex sec_B.2 Annex sec_B.2.1 Annex sec_B.2.2 Annex sec_B.2.3 Annex sec_B.2.4 Annex B (informative) Example of an information exchange policy agreement |
30 | Annex sec_B.2.5 Annex sec_B.2.6 Annex sec_B.2.7 |
31 | Annex sec_B.3 Annex sec_B.3.1 Annex sec_B.3.1.1 Annex sec_B.3.1.2 Annex sec_B.3.1.3 Annex sec_B.3.2 Annex sec_B.3.2.1 Annex sec_B.3.2.2 Annex sec_B.3.2.3 Annex sec_B.3.2.4 Annex sec_B.3.2.5 Annex sec_B.3.3 Annex sec_B.3.3.1 |
32 | Annex sec_B.3.3.2 Annex sec_B.3.3.3 Annex sec_B.3.3.4 Annex sec_B.3.4 Annex sec_B.3.4.1 Annex sec_B.3.4.2 Annex sec_B.3.4.3 Annex sec_B.3.5 Annex sec_B.3.6 Annex sec_B.3.6.1 Annex sec_B.3.6.2 Annex sec_B.3.7 Annex sec_B.3.7.1 Annex sec_B.3.7.2 Annex sec_B.3.7.3 Annex sec_B.3.8 Annex sec_B.3.8.1 |
33 | Annex sec_B.3.8.2 Annex sec_B.3.9 Annex sec_B.3.9.1 Annex sec_B.3.9.2 Annex sec_B.3.10 Annex sec_B.3.10.1 Annex sec_B.3.10.2 Annex sec_B.3.11 Annex sec_B.3.11.1 Annex sec_B.3.11.2 Annex sec_B.3.11.3 Annex sec_B.3.12 Annex sec_B.3.12.1 Annex sec_B.3.12.2 Annex sec_B.3.13 |
34 | Annex sec_B.3.14 Annex sec_B.3.14.1 Annex sec_B.3.14.2 Annex sec_B.3.14.3 Annex sec_B.3.14.4 Annex sec_B.3.15 Annex sec_B.3.16 Annex sec_B.3.17 Annex sec_B.3.17.1 Annex sec_B.3.17.2 Annex sec_B.3.17.3 Annex sec_B.3.17.4 Annex sec_B.3.17.5 |
35 | Reference ref_1 Reference ref_2 Reference ref_3 Reference ref_4 Reference ref_5 Reference ref_6 Reference ref_7 Reference ref_8 Reference ref_9 Reference ref_10 Reference ref_11 Reference ref_12 Reference ref_13 Reference ref_14 Bibliography |