Antonio Eduardo de Albuquerque-Junior, E. D. Santos
{"title":"A percepção da importância de Controles de segurança da informação em hospitais públicos brasileiros","authors":"Antonio Eduardo de Albuquerque-Junior, E. D. Santos","doi":"10.3395/RECIIS.V7I2.454","DOIUrl":null,"url":null,"abstract":"Public hospitals must adopt information security for their activities because they are dependent on the information technology (IT) infrastructure and must protect information due to legal regulations and the importance of such information. This is necessary because public hospitals manage sensitive information, which is important for their operation, and patient privacy should be ensured. The NBR ISO/IEC 27002:2005 standard proposes 133 controls to protect information for different organizations; but we must identify the controls that are important for public hospital activities and information. This study was aimed at discerning the perceived importance of information security controls for public hospital managers as well as IT and information security professionals given such institutions’ activities.","PeriodicalId":88995,"journal":{"name":"Revista electronica de comunicacao, informacao & inovacao em saude : RECIIS","volume":"7 1","pages":"1001"},"PeriodicalIF":0.0000,"publicationDate":"2013-06-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Revista electronica de comunicacao, informacao & inovacao em saude : RECIIS","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.3395/RECIIS.V7I2.454","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
Abstract
Public hospitals must adopt information security for their activities because they are dependent on the information technology (IT) infrastructure and must protect information due to legal regulations and the importance of such information. This is necessary because public hospitals manage sensitive information, which is important for their operation, and patient privacy should be ensured. The NBR ISO/IEC 27002:2005 standard proposes 133 controls to protect information for different organizations; but we must identify the controls that are important for public hospital activities and information. This study was aimed at discerning the perceived importance of information security controls for public hospital managers as well as IT and information security professionals given such institutions’ activities.