A Framework for an Effective Information Security Awareness Program in Healthcare

Abstract

Electronic Health Record (EHR) is a valuable asset of every healthcare and it needs to be protected. Human errors are recognized as the major information security threats to EHR systems. Employees who interact with EHR systems should be trained about the risks and hazards related to information security. However, there are limited studies regarding the effectiveness of training programs. The aim of this paper is to propose a framework that provides guidelines for healthcare organizations to select an effective information security training delivery method. In addition, this paper proposes a guideline to develop information security content for awareness training programs. Lastly, this study attempts to implement the proposed framework in a selected healthcare for evaluation. Hence, a serious game is developed as a training method to deliver information security content for the selected healthcare. An effective training program raises employees’ awareness toward information security with a long-term impact. It helps to gradually change employees’ behavior over time by reducing their negligence towards secure utilization of healthcare EHR systems.

Authors and Affiliations

Arash Ghazvini, Zarina Shukur

Keywords

Related Articles

A Survey of Spam Detection Methods on Twitter

Twitter is one of the most popular social media platforms that has 313 million monthly active users which post 500 million tweets per day. This popularity attracts the attention of spammers who use Twitter for their mali...

Influence of Nitrogen-di-Oxide, Temperature and Relative Humidity on Surface Ozone Modeling Process Using Multigene Symbolic Regression Genetic Programming

Automatic monitoring, data collection, analysis and prediction of environmental changes is essential for all living things. Understanding future climate changes does not only helps in measuring the influence on people li...

Stable Haptic Rendering For Physics Engines Using Inter-Process Communication and Remote Virtual Coupling

Availability of physics engines has significantly reduced the effort required to develop interactive applications concerning the simulation of physical world. However, it becomes a problem when kinesthetic feedback is ne...

Reliable Network Traffic Collection for Network Characterization and User Behavior

This paper presents a reliable and complete traffic collection facility as a first and crucial step toward accurate traffic analysis for network characterization and user behavior. The key contribution is to produce an a...

Managing Open Educational Resources on the Web of Data

In the last few years, the international work on Massive Open On-line Courses (MOOCS) underlined new needs for open educational resources (OER) management within the context of the Web of Data. First, within MOOCs, all (...

Download PDF file
  • EP ID EP249134
  • DOI 10.14569/IJACSA.2017.080226
  • Views 102
  • Downloads 0

How To Cite

Arash Ghazvini, Zarina Shukur (2017). A Framework for an Effective Information Security Awareness Program in Healthcare. International Journal of Advanced Computer Science & Applications, 8(2), 193-205. https://www.europub.co.uk/articles/-A-249134