|
|
FairWarning® Patient Privacy Framework for Breach Detection and Prevention
Request the Guides >>
The FairWarning® Patient Privacy Framework (FairWarning® Framework) is a series of three (3) practical documents intended to enable wide-scale patient privacy auditing, breach detection, remediation and breach prevention. These patient privacy safeguards are necessary to promote the uninterrupted growth of Electronic Health Records (EHRs) and satisfy a wide range of Federal, state and global healthcare patient privacy regulations.
The FairWarning® Framework is based on actual patient privacy breach detection and prevention deployments with healthcare providers representing 800 hospitals and 2,500 clinics across the United States, Canada, the United Kingdom and France. In the absence of any practical, detailed privacy-related data standards for the foreseeable future, the purpose of the FairWarning® Framework series of documents is to contribute much needed patient privacy knowledge to care providers, EHR and healthcare application vendors and systems integrators. FairWarning® believes this will assist in accelerating the privacy market and while it may increase competition, it will create an overall larger market which better serve the care providers facing wide-scale privacy related challenges.
Industry Perspectives
"Data definitions for EHR enterprise and departmental system audit logs will prove to be very useful to healthcare providers seeking to normalize and automate their response to HITECH's privacy auditing requirements surrounding protected health information (PHI) and consultants and vendors looking to assist them. The [FairWarning® Patient Privacy Framework] guides should increase their understanding of the sources and structure of the PHI." Barry Runyon, Research Vice President Healthcare Providers, Gartner, Inc.
“Southwest Washington Medical Center has seamlessly interfaced FairWarning® alerts into our ArcSight SIEM, allowing us to correlate breach threats across our service platform, networks and compliance program. You don’t know what you don’t know, until you have full-spectrum awareness across your service delivery suite. FairWarning® fills in the clinical application detail that is missing.” Christopher Paidhrin, Security Compliance Officer, Southwest Washington Medical Center
Part 1 in a series of 3: Patient Privacy Data Definition Guide
The first in the series provides details on the data requirements and definitions necessary to conduct minimum and advanced levels of patient privacy auditing. This document is intended for use and contribution by:
-
Healthcare providers and other organizations handling protected health information (PHI)
-
Electronic Health Record and application vendors
-
Healthcare systems integrators and service companies
Part 2 in a series of 3: Patient Privacy in Enterprise Security Data Definition Guide
The second part in the series provides details on the integration between privacy auditing and enterprise information security systems. The document is intended for use and contribution by:
-
Healthcare providers, business associates, and others handling protected health information (PHI)
-
Enterprise security vendors
Part 3 in a series of 3: Putting the FairWarning® Framework into Practice
The third part in the series provides details on implementation and best practices for the FairWarning® Framework.
|