标准编号:ISO 22600-1:2014
中文名称:保健信息学 特权管理和访问控制 第1部分:综述和政策管理
英文名称:Health informatics — Privilege management and access control — Part 1: Overview and policy management
发布日期:2014-10
标准范围
This multi-part International Standard defines principles and specifies services needed for managingprivileges and access control to data and/or functions.It focuses on communication and use of health information distributed across policy domain boundaries.This includes healthcare information sharing across unaffiliated providers of healthcare, healthcareorganizations, health insurance companies, their patients, staff members, and trading partners byboth individuals and application systems ranging from a local situation to a regional or even nationalsituation.It specifies the necessary component-based concepts and is intended to support their technicalimplementation. It will not specify the use of these concepts in particular clinical process pathways.This part of ISO 22600 proposes a template for the policy agreement. It enables the comparabledocumentation from all parties involved in the information exchange.This part of ISO 22600 excludes platform-specific and implementation details. It does not specifytechnical communication services and protocols which have been established in other standards. It alsoexcludes authentication techniques.