Research Paper: Giving Patients Access to Their Medical Records via the Internet: The PCASSO Experience

نویسندگان

  • Daniel R. Masys
  • Dixie B. Baker
  • Amy Butros
  • Kevin E. Cowles
چکیده

OBJECTIVE The Patient-Centered Access to Secure Systems Online (PCASSO) project is designed to apply state-of-the-art-security to the communication of clinical information over the Internet. DESIGN The authors report the legal and regulatory issues associated with deploying the system, and results of its use by providers and patients. Human subject protection concerns raised by the Institutional Review Board focused on three areas-unauthorized access to information by persons other than the patient; the effect of startling or poorly understood information; and the effect of patient access to records on the record-keeping behavior of providers. MEASUREMENTS Objective and subjective measures of security and usability were obtained. RESULTS During its initial deployment phase, the project enrolled 216 physicians and 41 patients; of these, 68 physicians and 26 patients used the system one or more times. The system performed as designed, with no unauthorized information access or intrusions detected. Providers rated the usability of the system low because of the complexity of the secure login and other security features and restrictions limiting their access to those patients with whom they had a professional relationship. In contrast, patients rated the usability and functionality of the system favorably. CONCLUSION High-assurance systems that serve both patients and providers will need to address differing expectations regarding security and ease of use.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Patient-Centered Access to Secure Systems Online (PCASSO): a secure approach to clinical data access via the World Wide Web

The Internet's World-Wide Web (WWW) provides an appealing medium for the communication of health related information due to its ease of use and growing popularity. But current technologies for communicating data between WWW clients and servers are systematically vulnerable to certain types of security threats. Prominent among these threats are "Trojan horse" programs running on client workstati...

متن کامل

PCASSO: Applying and Extending State-of-the-Art Security in the Healthcare Domain

As healthcare enters the age of technology and Internet access, new challenges emerge, particularly with respect to the protection of patient privacy and the protection of highly sensitive and life-critical information. By bringing state-of-the-art security technology to the healthcare domain, PCASSO is setting a new standard in healthcare protection and patient empowerment, as well as making s...

متن کامل

The patient clinical information system (PatCIS): technical solutions for and experience with giving patients access to their electronic medical records

As health records evolve into electronic form, increasing demand is being made to provide patients with access to them. We sought to study the character and impact of such access to determine how patients use such records, what cognitive effects it has on them, and how it affects their relationship with their health care providers. We created the Patient Clinical Information System (PatCIS) to ...

متن کامل

Investigating the Correlation of Access to the Internet/ Computer System and Information Literacy

Background: Formerly in societies, literacy only implied reading and writing skills. Gradually, the industrial 20th century turned into the information era of the 21st century. Accordingly, to survive in the present world, we need to have information literacy. Acquiring information technology (IT) is an indispensable part of literacy. The current research aims to investigate the correlation of ...

متن کامل

Assurance: the power behind PCASSO security

The need for security protection in Internet-based healthcare applications is generally acknowledged. Most healthcare applications that use the Internet have at least implemented some kind of encryption. Most applications also enforce user authentication and access control policies, and many audit user actions. However, most fall short on providing strong assurances that the security mechanisms...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • Journal of the American Medical Informatics Association : JAMIA

دوره 9 2  شماره 

صفحات  -

تاریخ انتشار 2002