SciELO - Scientific Electronic Library Online

 
vol.21 número1The link between poverty and malnutrition: A South African perspective índice de autoresíndice de assuntospesquisa de artigos
Home Pagelista alfabética de periódicos  

Serviços Personalizados

Artigo

Indicadores

Links relacionados

  • Em processo de indexaçãoCitado por Google
  • Em processo de indexaçãoSimilares em Google

Compartilhar


Health SA Gesondheid (Online)

versão On-line ISSN 2071-9736
versão impressa ISSN 1025-9848

Resumo

MAHLAOLA, Tintswalo Brenda  e  VAN DYK, Barbara. Reasons for Picture Archiving and Communication System (PACS) data security breaches: Intentional versus non-intentional breaches. Health SA Gesondheid (Online) [online]. 2016, vol.21, n.1, pp.271-279. ISSN 2071-9736.  http://dx.doi.org/10.1016/j.hsag.2016.04.003.

BACKGROUND: The Picture Archiving and Communication System (PACS) has led to an increase in breached health records and violation of patient confidentiality. The South African constitution makes provision for human dignity and privacy, virtues which confidentiality seeks to preserve. Confidentiality thus constitutes a human right which is challenged by the use of technology. Humans, as managers of information technology, constitute the weakest link in safeguarding confidentiality. Nonetheless, it is argued that most security breaches are non-intentionally committed by well-meaning employees during routine activities. OBJECTIVE: The purpose of this article is to explore the nature of and reasons for confidentiality breaches by PACS users in a South African context. METHODS: A closed-ended questionnaire was used to collect quantitative data from 115 health professionals employed in a private hospital setting, including its radiology department and a second independent radiology department. The questionnaire sought to explore the attitudes of participants towards confidentiality breeches and reasons for such behaviour. RESULTS: Breach incidences were expressed as percentage compliance and classified according to the nature and reasons provided by Sarkar's breach classification. Cross tabulations indicated a statistical significance (p < 0.00) between the expected and observed confidentiality practices of participants and also the adequacy of training, system knowledge and policy awareness. CONCLUSION: Our study supports previous findings that, in the absence of guidelines, most security breaches were non-intentional acts committed due to ignorance. Of concern are incidents in which sensitive information was intentionally shared via social media.

Palavras-chave : Intentional breaches; Patient confidentiality violation; PACS; Unintentional breaches.

        · texto em Inglês     · Inglês ( pdf )

 

Creative Commons License Todo o conteúdo deste periódico, exceto onde está identificado, está licenciado sob uma Licença Creative Commons