Skip to main content
Proceedings of the Annual Symposium on Computer Application in Medical Care logoLink to Proceedings of the Annual Symposium on Computer Application in Medical Care
. 1992:287–291.

Development of a model of information security requirements for enterprise-wide medical information systems.

G A Orr 1, B A Brantley Jr 1
PMCID: PMC2248069  PMID: 1482882

Abstract

Information security methods developed within the narrow frameworks of operating system design, specific database models, and military security methods all concentrate on representation of the objects of access control, rather than on the information needs of the subjects. This approach does not adequately support the needs of the varied users of medical information systems, who must have access to information in support of multiple organizational roles. A new conceptual approach to access control in medical settings based on user requirements is discussed.

Full text

PDF
287

Articles from Proceedings of the Annual Symposium on Computer Application in Medical Care are provided here courtesy of American Medical Informatics Association

RESOURCES