@ShahidNShah
It’s funny that most of my time during a review or evaluation of web based healthcare IT systems when I bring up the issue of security the salesperson almost always says “yes, we use SSL.”
There’s a great of deal of growth in EMRs, EHRs, and other healthcare applications that will be web hosted over a WAN like the Internet or via a VPN. One thing that all IT community members and architects should be very clear about in our world is that SSL (encryption) is not the same thing as application security. You can have the best encryption in the world and still have a healthcare application full of holes that allows sensitive medical data to be released without your knowledge.
SSL encryption is great for making sure that data transfer is safe and that passwords and other sensitive health information is not passed in clear text over the wire. However, application security is much more than encryption and when choosing and installing modern applications ask the vendors about the following major security threats:
Your application vendor should be able to speak to the following major security issues. Ask them to elaborate on all of them and if anything sounds fishy, probe further.
Just remember, security is more than just “using SSL”.
Shahid Shah is an internationally recognized enterprise software guru that specializes in digital health with an emphasis on e-health, EHR/EMR, big data, iOT, data interoperability, med device connectivity, and bioinformatics.
Connecting innovation decision makers to authoritative information, institutions, people and insights.
Medigy accurately delivers healthcare and technology information, news and insight from around the world.
Medigy surfaces the world's best crowdsourced health tech offerings with social interactions and peer reviews.
© 2025 Netspective Media LLC. All Rights Reserved.
Built on Mar 12, 2025 at 5:07am