The NEHEN network reported a data breach due to unauthorized
access to the network. Ways that HIE can protect against
unauthorized access is using authentication, meaning the user would
have to log in with specific credentials defined by the organization. a
The common types of authentications include a username or id along
with a password or a pin number. a However, having a username and
password is just one layer of protection, to increase security adding a
two-factor authentication process is ideal. With a two-factor
authentication the user not only enters the username and password
they must also enter a generated pin to authenticate into the system
(oaches and waters, 2020). a This just adds an extra layer of protection
against unauthorized users. a
Maintaining a secure HIE is vital to the organization’s successes. If
patients feel that their privacy, confidentiality and security of their
information is in jeopardy they will be less likely to release their
information which can impact patient care or have life threatening
consequences (oaches and waters, 2020). a Healthcare organizations
must have strong policies and strategies in place to protect the
patient information of entrusted to them and if they fail to protect
that information the HIE could fail or must pay costly penalties.
The NEHEN network has an ethical and legal right to protect the
personal health information of its patients. a The HITECH-HIPPA
Omnibus privacy act sets rules that organizations must follow
regarding the privacy and security of PHI. This is where the breach
notification rule was established and sets the guidelines organizations
must follow when there is a breach. a The HITECH-HIPPA Omnibus
rule also sets tier levels for the type of breach and establishes
penalties that correlate to each tier level.
References:
Oachs, Pamela, K., and Watters, Amy, L. (2020). a Health Information
Management Concepts, Principles, and Practice. Sixth edition.