A risk analysis model to reduce computer security risks among healthcare organizations
Version 2 2024-06-16, 13:32Version 2 2024-06-16, 13:32
Version 1 2014-10-27, 16:25Version 1 2014-10-27, 16:25
journal contribution
posted on 2024-06-16, 13:32authored byM Warren
The paper describes the on-going development of a new computer-based security risk analysis methodology that may be used to determine the computer security requirements of medical computer systems. The methodology has been developed for use within healthcare, with particular emphasis placed upon protecting medical information systems. The paper goes on to describe some of the problems with existing automated risk analysis systems, and how the ODESSA system may overcome the majority of these problems. Examples of security scenarios are also presented.