1-2 Journal: Security Measures
1-2 Journal: Security Measures
Heather A. Arsenault
Southern New Hampshire University
HIM-220 Healthcare Data Management
Sandra Masten, DHSc, RHIA, BCSC, LPN
Due Date 1/9/2022
GRADE: 35/35
1-2 Journal: Security Measures
1-2 Journal: Security Measures
Healthcare facilities need to protect their computer systems which contain confidential
patient health information as well as important facility information. There are many ways a
facility can do this including access controls, audit trails, and antivirus software.
Security Measure Choices
The first security measure I have identified is access controls, according to our textbook.
access controls are "a computer software program designed to prevent unauthorized use of an
information resource" (Sayles, 2018. Page 230). A facility makes specific policies and
procedures as to who can view, change, and create data in all areas of the system. Each user is
assigned a unique username that is linked to their role within the organization and limits their
access to only the areas of the system that are required of their role. Each user must create a
unique password that has to meet certain requirements which is usually a required minimum of
characters, uppercase and lowercase letters, and special characters. Passwords should also be
required to be changed at regular intervals to ensure the integrity of the system. Some
organizations utilize two-factor authentication which would require a password as well as
requiring a user to swipe an ID card, or another token, or enter a code that is sent through a
separate system, or some form of biometrics. A form of biometrics could be a fingerprint, iris
scan, palm print, voice recognition, etc. These measures help ensure that the correct user is
entering the system. Combining several system requirements; usernames, passwords, as well as
ID cards, biometrics, and other methods deter unauthorized access to the system and safeguard
the integrity of confidential patient data as well as other sensitive data.
Another important security measure is audit trails. Audit trails are the record of all system
login and outs, unsuccessful log-in attempts, queries, and other actions. It also records the
1-2 Journal: Security Measures
identity of the user along with timestamps of all activities. It also tracks what the user did and
saw while in the system. Audit trails are important for identifying potential security incidents.
Audits should be scheduled periodically, but can also be performed if a problem has been
suspected.
The last security measure I am identifying is antivirus software. A company can have all of these
security measures in place, but without good antivirus software, used along with a firewall, the
company's computer systems are at great risk. Antivirus software stops any potential viruses,
malware, trojans, bots, and other harmful things from entering the system and compromising the
security and integrity of the system.
Security Measure Rationale
Combining the three security measures above along with encryption and a firewall is very
important to safeguard patient data and sensitive business information. Using a system that
includes usernames, passwords, two-factor authentication, and other safeguards can