BSI PD ISO/TR 11633-2:2021
$215.11
Health informatics. Information security management for remote maintenance of medical devices and medical information systems – Implementation of an information security management system (ISMS)
Published By | Publication Date | Number of Pages |
BSI | 2021 | 80 |
This document gives a guideline for implementation of an ISMS by showing practical examples of risk analysis on remote maintenance services (RMS) for information systems in healthcare facilities (HCFs) as provided by vendors of medical devices or health information systems in order to protect both sides’ information assets (primarily the information system itself and personal health data) in a safe and efficient (i.e. economical) manner.
This document consists of:
-
application of ISMS to RMS;
-
security management measures for RMS;
-
an example of the evaluation and effectiveness based on the “ controls” defined in the ISMS.
PDF Catalog
PDF Pages | PDF Title |
---|---|
2 | undefined |
6 | Foreword |
7 | Introduction |
9 | 1 Scope 2 Normative references 3 Terms and definitions 4 Application of ISMS to remote maintenance services 4.1 Overview |
11 | 4.2 Compliance scope 4.3 Security policy |
12 | 4.4 Assessing risks 4.5 Risks to be managed |
13 | 4.6 Identification of risks that are not described in this document 4.7 Treating risks |
14 | 5 Security management measures for remote maintenance services 6 Approving residual risks |
15 | 7 Security audit 7.1 Security audit of remote maintenance services 7.2 Recommendation of security audit by third parties |
16 | Annex A (informative) Example of risk assessment in remote maintenance services |
78 | Bibliography |