Two. Scenario Description
Two. Scenario Description
Type of Organization
The organization under discussion is a healthcare provider (clinic or small hospital) that operates through its management of the patient's medical records.
The importance of having an organized and dependable system to ensure proper record keeping, to create an efficient working environment and to enhance the quality of care for patients cannot be overstated. Any mistake will have a detrimental effect on the outcomes of patients.
Critical Information Assets
Critical Information Assets
Examples of the critical information assets include patient personal identifying information (e.g. name, age, address), medical history, diagnosed medical conditions, clinical laboratory test results and treatment records.
Critical information assets must be well guarded since unauthorized access, loss, or modification may result in violations of confidentiality and data privacy laws. Any unauthorized access to these assets may also lead to inappropriate medical decisions being made by healthcare professionals using these records.