ASTM-E2085 2000
$44.96
E2085-00a Standard Guide on Security Framework for Healthcare Information (Withdrawn 2009)
Published By | Publication Date | Number of Pages |
ASTM | 2000 | 11 |
ASTM E2085-00a
Withdrawn Standard: Standard Guide on Security Framework for Healthcare Information (Withdrawn 2009)
ASTM E2085
Scope
1.1 This guide covers a framework for the protection of healthcare information. It addresses both storage and transmission of information. It describes existing standards used for information security which can be used in many cases, and describes which (healthcare-specific) standards are needed to complete the framework. Appropriate background information on security (and particularly cryptography) is included. The framework is designed to accommodate a very large (national or international), distributed user base, spread across many organizations, and it therefore recommends the use of certain (scaleable) technologies over others.
1.2 Electronic information exchange and sharing of data in has been the backbone of industries such as financial institutions for several years. Cost cutting measures and a real need for sharing of information are driving healthcare services toward increased use of computer-based information systems. One of the requirements for the ability to share and exchange healthcare information is that the information be protected.
1.3 Selection of standards was performed using the following criteria, which are described in more detail in 4.2.
1.3.1 Security requirements are defined in this framework, and (in some cases) in additional ASTM guidelines.
1.3.2 ASTM standard specifications are used to define protocols and message formats in support of interoperability.
1.3.3 Existing standards will be reused or extended whenever possible.
1.3.4 This framework does not address policy issues. ASTM Subcommittee E31.17 is writing standards that address these issues.
Keywords
access control; application security; communications security; cryptography; interoperability; key management; key recovery; local security; security framework; subnetwork security
ICS Code
ICS Number Code 35.240.80 (IT applications in health care technology)
DOI: 10.1520/E2085-00A
PDF Catalog
PDF Pages | PDF Title |
---|---|
1 | Scope Referenced Documents |
2 | Terminology |
3 | Significance and Use |
4 | Security Overview |
5 | TABLE 1 |
6 | Communications Security |
8 | Local Security |
9 | Cryptographic Algorithms and Mechanisms |
10 | Security Management Existing Standards TABLE 2 |
11 | Keywords |