For Telehealth To Succeed, Privacy And Security Risks Must Be Identified And Addressed

For Telehealth To Succeed, Privacy And Security Risks Must Be Identified And Addressed
复制标题

DOI:
10.1377/hlthaff.2013.0997
复制
发表时间:
2014-02-01
期刊:
影响因子:
9.7
通讯作者:
McGraw, Deven
McGraw, Deven
中科院分区:
医学1区
文献类型:
--
作者:
Hall, Joseph L.;McGraw, Deven

文献摘要

被引文献

相似文献

如果不解决严重的隐私和安全风险,远程保健的成功可能会受到影响。例如,位于患者家中或与患者身体连接以检测安全问题或医疗紧急情况的传感器可能会无意中传输有关家庭活动的敏感信息。类似地,来自应用程序或医疗设备(例如胰岛素泵)的常规数据传输可以与第三方广告商共享。如果没有对远程医疗数据和系统的充分安全和隐私保护,提供者和患者将对远程医疗解决方案的使用缺乏信任。虽然已经制定了一些关于远程保健安全和隐私的联邦和州指导方针,但仍然存在许多差距。目前没有任何联邦机构有权制定隐私和安全要求,以涵盖远程医疗生态系统。本文探讨了远程医疗应用的隐私风险和安全威胁,并总结了技术控制和联邦法律充分解决这些风险的程度。我们主张为远程医疗建立一个全面的联邦监管框架,由一个单一的联邦实体,即联邦贸易委员会制定和执行,以加强信任并充分实现远程医疗的好处。
The success of telehealth could be undermined if serious privacy and security risks are not addressed. For example, sensors that are located in a patient's home or that interface with the patient's body to detect safety issues or medical emergencies may inadvertently transmit sensitive information about household activities. Similarly, routine data transmissions from an app or medical device, such as an insulin pump, may be shared with third-party advertisers. Without adequate security and privacy protections for underlying telehealth data and systems, providers and patients will lack trust in the use of telehealth solutions. Although some federal and state guidelines for telehealth security and privacy have been established, many gaps remain. No federal agency currently has authority to enact privacy and security requirements to cover the telehealth ecosystem. This article examines privacy risks and security threats to telehealth applications and summarizes the extent to which technical controls and federal law adequately address these risks. We argue for a comprehensive federal regulatory framework for telehealth, developed and enforced by a single federal entity, the Federal Trade Commission, to bolster trust and fully realize the benefits of telehealth.