IDEAS home Printed from https://ideas.repec.org/a/jle/joujos/jos2612.html

Analysis of personal health data breaches: prioritization with BWM approach

Author

Listed:
  • Emre Yilmaz

    (Istanbul Medipol University / Turkiye)

Abstract

The aim of this study is to identify the factors that cause personal health data breaches, prioritize these factors with the BWM (Best Worst Method) approach, and propose solutions to improve health data security in line with the priorities obtained. As a result of the literature review, 8 criteria were identified for the evaluation of personal health data breaches: data leakage, human errors, malware, security level (encryption), cyber-attacks, unauthorized access, privilege abuse and inappropriate data destruction policies. The criteria were analyzed using the BMW method, a multi-criteria decision-making approach. The evaluation was conducted by 6 different experts with at least 7 years of academic or professional experience in the fields of health management and health law. According to the findings of the analysis; the most important (best) criterion causing personal health data breaches was determined as “Cyber Attacks†with a weight score of 16.95%. This is followed by “Data Leaks†(16.77%), “Privilege Abuse†(15.10%) and “Malicious Software†(15.07%). “Inappropriate Data Destruction Policies†was identified as the least important (worst) criterion with a weight of 5.01%. As a result, multifaceted strategies need to be developed for preventing health data breaches and effective data security management. Methods such as advanced security measures, regular security audits and network segmentation are recommended against cyber-attacks. Patient identity; privacy can be protected by using a number of methods such as anonymization, clustering of data sets or blurring technique instead of real patient identity. To mitigate the effects of privilege abuse, methods such as role-based access control, monitoring of user activities and regular access audits should be implemented.

Suggested Citation

Handle: RePEc:jle:joujos:jos2612
DOI: 10.47243/jos.2612
as

Download full text from publisher

To our knowledge, this item is not available for download. To find whether it is available, there are three options:
1. Check below whether another version of this item is available online.
2. Check on the provider's web page whether it is in fact available.
3. Perform a
for a similarly titled item that would be available.

More about this item

Keywords

;
;
;
;
;

Statistics

Access and download statistics

Corrections

All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:jle:joujos:jos2612. See general information about how to correct material in RePEc.

If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

We have no bibliographic references for this item. You can help adding them by using this form .

If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Mehmet Sahin (email available below). General contact details of provider: https://journals.gen.tr/index.php/jos .

Please note that corrections may take a couple of weeks to filter through the various RePEc services.

IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.