Kennesaw State University
Compliance of Open Source EHR Applications with HIPAA and ONC Security and Privacy Requirements
Abstract
dc:description.abstract<p>Electronic Health Records (EHRs) are digital versions of paper-based patient's health information. EHR applications are increasingly being adopted in many countries. They have resulted in improved quality in healthcare, convenient access to histories of patient medication and clinic visits, easier follow up of patient treatment plans, and precise medical decision-making process. EHR applications are guided by measures of the Health Insurance Portability and Accountability Act (HIPAA) to ensure confidentiality, integrity, and availability. However, there have been reported breaches of Protected Health Identifier (PHI) data stored by EHR applications. In many reported breaches, improper use of EHRs has resulted in disclosure of patient’s PHI data. Inefficient application design threatens the integrity of EHRs, which leads to fraud and endangering patient's health. The goal of this paper is to identify HIPAA technical requirements, evaluate an open source EHR application (OpenEMR) for security vulnerabilities using an open-source scanner tool (RIPS), and map identified vulnerabilities to HIPAA technical requirements.</p>
Degree
thesis:*- Name thesis:degree_name
- Master of Science in Computer Science (MSCS)
- Level thesis:degree_level
- Thesis
- Discipline thesis:degree_discipline
- Computer Science
- Year dc:date.available
- 2019
Author and committee
dc:creator, dc:contributor.*- Authors dc:creator
-
- Farhadi, Maryam
- Haddad, Hisham
- Shahriar, Hossain
- Contributors dc:contributor
-
- Hisham Haddad
- Dan Lo
- Hossian Shahriar
Subjects
dc:subject × 6Identifiers
dc:identifier.*- Repository record dc:identifier
- https://digitalcommons.kennesaw.edu/cs_etd/23
- OAI identifier oai:identifier
- oai:digitalcommons.kennesaw.edu:cs_etd-1025