Cyber part two and three

profileTop Rated1
cyber_security__part_3.docx

Running head: CYBER SECURITY 1

CYBER SECURITY 5

Cyber Security

Date

Institute

CYBER SECURITY

Introduction

Patient's privacy is a sensitive aspect in the healthcare delivery sector. A majority of the information concerns patient's health, and the information should only be accessed by the physician and the patient. Disclosing personal health information is degrading and also a violation of the patient’s rights. When a situation in a healthcare facility does not grant room for privacy, the physician needs to make amendments. This is for the purpose of improving privacy in terms of talking to the patient in private. Also, by making sure that all stored information in the computers is only for the eyes of the physician only. In this case, a physician is concerned about safeguarding patients’ information in a healthcare facility.

Privacy is paramount in such a situation, and the healthcare facility should start by partition the facility. This create consultation rooms from where any medical information should be discussed from. As a result, partitioning would eliminate any chances of the physician discussing health information with a patient in the waiting area thus exposing patient's information to the public that is against the medical ethics and professionalism. This also eliminates chances computerized information being visible to patients as they are being attended to. To eliminate impermissible uses of equipment containing patient information, every physician should be provided with personal username and login password. This shall act as an authorization note for those who are allowed to access the healthcare's computer system. Lack of a username and a login password means that there is no way that one can access any document or information stored in the system. The health facility should also improve on its organizational culture so as to review its professional ethics. A review would help in dealing with unlawful disclosure of patient information. This is because, according to the profession's ethics, there is the commendable manner through which health practitioners should apply when disclosing any information to the patient (Harman, & American Health Information Management Association, 2006).

Concerning security policies associated with private health information, I would advice the physician to make sure that the healthcare facility meets all the legislations, rule and regulations that govern the sector especially on data. For instance; according to HIPAA Security Standards require physicians to protect the security of patients' health information electronically. This is through the use of policies, procedures and mechanisms that help in the protection of patients' information's availability, integrity, and confidentiality. I would advice that, as a physician that he/she must put in place technical, physical and administrative safeguards. This help in the protection of electronic health information that the physician collects during their daily routines, maintains, uses, or even may transmit when need be. This mean that the physician would only grant access of health information to only relevant personnel's who cannot mishandle or disclose any personal health important to a person who is not involved in such information. Further, I would advice the physician to purchase and effectively make use of the AMA's toolkit. The toolkit is designed in a manner that it provides an easy to follow step-by-step procedure. This helps and boosts the understanding of the set rules and also helps in easy compliance of set requirements both professionally and ethically.

To avoid a repeat of in , the practice can ensure that medical facilities install security measures in their systems. For instance, installation of a system to the cloud first policy allows data consolidation meaning that it is easy to control healthcare information of a particular center from one point. Such data is also free from fragmentation and duplication thus making it more reliable. Luck of fragmentation and duplication situations in healthcare computing system eliminates chances of important personal health information from being tampered with or even hacked, and this is because any irregularities can be easily detected and rectified in time. Such policies also promote efficiency, accountability as well as improved service delivery to the patients. The practice should also ensure through a constant visit to healthcare facilities that only qualified and competent personnel are working as medical practitioners. This move would promote effectiveness in ethics and professionalism as a majority of these important issues are learned in the course and not while practicing. The practice should also ensure that all healthcare facilities are licensed and permitted by the law to operate in the healthcare sector (Information Resources Management Association, 2013).

In conclusion, the healthcare sector is an important and sensitive sector as it determines the physical and psychological well-being of human beings. However, the information that the sector holds concerning different individuals is sensitive and should only be disclosed to the owner of the information only. Making personal health information public is a violation of that patient's human rights. Physicians must strive to see to it that all healthcare ethics are observed including human rights, system security and rules and regulations that govern the healthcare sector. The practice should also ensure that only qualified and competent personnel serve in the sector so as to uphold the professions ethics and integrity (Harman, & American Health Information Management Association, 2006).

.

Reference

Harman, L. B., & American Health Information Management Association. (2006). Ethical challenges in the management of health information. Sudbury, Mass: Jones and Bartlett Publishers.

Information Resources Management Association. (2013). User-driven healthcare: Concepts, methodologies, tools, and applications. Hershey, PA: Medical Information Science Reference.