Health informatics. Information security management for remote maintenance of medical devices and medical information systems-Requirements and risk analysis
健康信息学 医疗设备和医疗信息系统远程维护的信息安全管理
This document focuses on remote maintenance services (RMS) for information systems in healthcare
facilities (HCFs) as provided by vendors of medical devices and health information systems.
This document specifies the risk assessment necessary to protect remote maintenance activities, taking
into consideration the special characteristics of the healthcare field such as patient safety, regulations
and privacy protections.
This document provides practical examples of risk analysis to protect both the HCF and RMS provider
information assets in a safe and efficient (i.e. economical) manner. These assets are primarily the
information system itself and personal health data held in the information system.Cross References:ISO/IEC 21547:2010ISO/IEC 21827:2008ISO/IEC 27001ISO/IEC 27002ISO/TS 13131:2014ISO/TR 11633-2ISO/IEC 31000:2018All current amendments available at time of purchase are included with the purchase of this document.