Health informatics — Privilege management and access control — Part 1: Overview and policy management
健康信息学 - 特权管理和访问控制 - 第1部分:概述和政策管理
发布日期:
2014-09-22
ISO 22600定义了管理数据和/或功能的权限和访问控制所需的原则和服务。
它侧重于跨政策领域边界传播和使用卫生信息。这包括通过个人和应用系统(从本地情况到区域甚至国家情况)在非关联的医疗保健提供商、医疗保健组织、医疗保险公司、其患者、员工和贸易伙伴之间共享医疗保健信息。
它规定了必要的基于组件的概念,旨在支持它们的技术实现。它不会具体说明这些概念在特定临床过程路径中的使用。
ISO 22600-1:2014提出了政策协议的模板。它使参与信息交换的各方能够提供可比文件。
ISO 22600 defines principles and specifies services needed for managing privileges and access control to data and/or functions.
It focuses on communication and use of health information distributed across policy domain boundaries. This includes healthcare information sharing across unaffiliated providers of healthcare, healthcare organizations, health insurance companies, their patients, staff members, and trading partners by both individuals and application systems ranging from a local situation to a regional or even national situation.
It specifies the necessary component-based concepts and is intended to support their technical implementation. It will not specify the use of these concepts in particular clinical process pathways.
ISO 22600-1:2014 proposes a template for the policy agreement. It enables the comparable documentation from all parties involved in the information exchange.