首页> 外文期刊>Journal of Digital Imaging >Creating an IHE ATNA-Based Audit Repository
【24h】

Creating an IHE ATNA-Based Audit Repository

机译:创建基于IHE ATNA的审核存储库

获取原文
获取原文并翻译 | 示例
           

摘要

Compliance with the Health Insurance Portability and Accountability Act (HIPAA) requires gathering audit information from picture archiving and communications systems (PACS) regarding evidence trails of human interactions. Until recently, most PACS users have had limited access to auditing information. Access required resources to handle manual inspection of audit logs, and access to proprietary databases was not always available. Some vendors now produce eXtensible Markup Language (XML) audit logs based on certain events occurring in PACS. However, it is up to the user to convert this information into an easily mined data repository supporting compliance and quality control. This process can be handled in multiple ways, which could mean different audit mechanisms depending on the PACS (or other hospital system) used. It is apparent that an organized method of dealing with audit information is needed. This help may be provided within the Integrating the Healthcare Environment (IHE) framework. The IHE initiative defines a set of profiles, actors, and transactions that create common scenarios for particular workflow processes. The Integration Profiles depict security as a fundamental requirement of the framework. Specifically, the Audit Trail and Node Authentication (ATNA) profile defines standards based mechanisms for securely transmitting and storing audit records in a central repository. The data structure defined by the profile provides a number of record types that capture different audit events. A general feasibility study for storing currently available PACS audit information following the profile is defined, and steps to an automated solution are discussed.
机译:遵守《健康保险携带和责任法案》(HIPAA)要求从图片存档和通信系统(PACS)收集有关人际互动证据线索的审核信息。直到最近,大多数PACS用户对审计信息的访问仍受到限制。访问所需的资源来处理审核日志的手动检查,并且访问专有数据库并不总是可用。现在,一些供应商根据PACS中发生的某些事件来生成可扩展标记语言(XML)审核日志。但是,由用户决定是否将此信息转换为易于挖掘的数据存储库,以支持合规性和质量控制。该过程可以以多种方式处理,这可能意味着不同的审核机制,具体取决于所使用的PACS(或其他医院系统)。显然,需要一种处理审计信息的有组织的方法。可以在集成医疗环境(IHE)框架内提供此帮助。 IHE计划定义了一组概要文件,参与者和事务,这些概要文件为特定的工作流程创建了通用方案。集成配置文件将安全性描述为框架的基本要求。具体来说,审核跟踪和节点身份验证(ATNA)配置文件定义了基于标准的机制,用于在中央存储库中安全地传输和存储审核记录。概要文件定义的数据结构提供了许多记录类型,这些记录类型捕获了不同的审核事件。定义了用于在配置文件之后存储当前可用的PACS审核信息的一般可行性研究,并讨论了自动解决方案的步骤。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号