Privacy and security of patient data in the pathology laboratory.
Privacy and security of patient data in the pathology laboratory.
复制标题
DOI:
10.4103/2153-3539.108542
复制
发表时间:
2013
影响因子:
--
通讯作者:
Pantanowitz L
中科院分区:
文献类型:
--
作者:
Cucoranu IC;Parwani AV;West AJ;Romero-Lauro G;Nauman K;Carter AB;Balis UJ;Tuthill MJ;Pantanowitz L
Data protection and security are critical components of routine pathology practice because laboratories are legally required to securely store and transmit electronic patient data. With increasing connectivity of information systems, laboratory work-stations, and instruments themselves to the Internet, the demand to continuously protect and secure laboratory information can become a daunting task. This review addresses informatics security issues in the pathology laboratory related to passwords, biometric devices, data encryption, internet security, virtual private networks, firewalls, anti-viral software, and emergency security situations, as well as the potential impact that newer technologies such as mobile devices have on the privacy and security of electronic protected health information (ePHI). In the United States, the Health Insurance Portability and Accountability Act (HIPAA) govern the privacy and protection of medical information and health records. The HIPAA security standards final rule mandate administrative, physical, and technical safeguards to ensure the confidentiality, integrity, and security of ePHI. Importantly, security failures often lead to privacy breaches, invoking the HIPAA privacy rule as well. Therefore, this review also highlights key aspects of HIPAA and its impact on the pathology laboratory in the United States.