Abstract (EN):
Recommendations and regulations are available in healthcare to protect sensitive medical information. These regulations tend to be generic and orient attitudes within the medical practice and are usually not straightforward to be translated into practice. The main objective of this paper is to present the implementation of the Break the Glass (BTG) concept in a real healthcare setting in order to enforce the legislation for genetic information and evaluate the process of translating legislation into the healthcare practice. The user logs were analysed to assess if the BTG system was working as expected, providing genetic information confidentiality, as well as if the legislation was being enforced in a controlled and responsible manner. Results show that the process to translate legislation into practice could be faster and more efficient. User logs show that in terms of confidentiality the BTG features prevent more non authorised people from accessing genetic reports. We expect the tendency to be that only users who really need to access the reports will go through with the process of BTG. Enhancements to the system include the implementation of the access control management infrastructure within a more robust access control platform to perform the authentication and authorization processes.
Language:
English
Type (Professor's evaluation):
Scientific
Contact:
pedro_fa@med.up.pt; rcorreia@med.up.pt; lfa@ncc.up.pt; comissao.etica@hsjoao.min-saude.pt; amlaf@med.up.pt
No. of pages:
7