|
|
Recent Experience
VA Health Information Security Division (HISD)
KRM has provided support for the HISD at Martinsburg West Virginia. The scope of this project is to establish and operate a world-class HISD that will develop, implement, and evaluate security solutions addressing health data and health information systems, including security standards, access control, and access to health data by external groups. The VA and other HISD user organizations will have a documented, repeatable, on-going process to measurably improve the security of their sensitive data, and HISD will demonstrate its value to its user community by:
Raising awareness of healthcare specific information systems, to include risks, vulnerabilities, and protection requirements for new and emerging technologies;
Examining and analyzing vulnerabilities and devising techniques for the cost-effective security and protection of private health information maintained on VHA sensitive systems;
Developing standards, metrics, tests, and validation programs to:
Promote, measure, and validate security in systems and services,
Provide system-specific role-based access to staff members, and
Establish minimum security requirements for healthcare systems;
Developing guidance to ensure security is included in the system planning, implementation, management, and operational phases of the system life cycle; and
Assisting VA in planning and implementing best security practices.
|
|