Menu
0
Total price
0 €
PRICES include / exclude VAT
>UNE EN ISO 27789:2021 - Health informatics - Audit trails for electronic health records (ISO 27789:2021) (Endorsed by Asociación Española de Normalización in December of 2021.)
sklademVydáno: 2021-12-01
UNE EN ISO 27789:2021 - Health informatics - Audit trails for electronic health records (ISO 27789:2021) (Endorsed by Asociación Española de Normalización in December of 2021.)

UNE EN ISO 27789:2021

Health informatics - Audit trails for electronic health records (ISO 27789:2021) (Endorsed by Asociación Española de Normalización in December of 2021.)

Informática sanitaria. Auditorías de seguimiento de la historia clínica electrónica (ISO 27789:2021) (Ratificada por la Asociación Española de Normalización en diciembre de 2021.)

Format
Availability
Price and currency
Anglicky PDF
Immediate download
Printable
117.60 €
Anglicky Hardcopy
In stock
117.60 €
Označení normy:UNE EN ISO 27789:2021
Počet stran:59
Vydáno:2021-12-01
Status:Norma
DESCRIPTION

UNE EN ISO 27789:2021

This document specifies a common framework for audit trails for electronic health records (EHR), in terms of audit trigger events and audit data, to keep the complete set of personal health information auditable across information systems and domains. It is applicable to systems processing personal health information which, complying with ISO 27799, create a secure audit record each time a user accesses, creates, updates, or archives personal health information via the system. NOTE Such audit records at minimum uniquely identify the user, uniquely identify the subject of care, identify the function performed by the user (record creation, access, update, etc.), and record the date and time at which the function was performed. This document covers only actions performed on the EHR, which are governed by the access policy for the domain where the electronic health record resides. It does not deal with any personal health information from the electronic health record, other than identifiers, the audit record only containing links to EHR segments as defined by the governing access policy. It does not cover the specification and use of audit logs for system management and system security purposes, such as the detection of performance problems, application flaw, or support for a reconstruction of data, which are dealt with by general computer security standards such as ISO/IEC 15408[9]. Annex A gives examples of audit scenarios. Annex B gives an overview of audit log services.

Categories: