Transcript Document

Functional
Requirements and Considerations
for Roles Based Access Control
Lessons from CFHIS
CFHIS Description
A series of integrated applications that, combined, provide an
Electronic Health Record capability including:
•master patient index
•laboratory
•radiology
•pharmacy
•order entry and results reporting
•dental & medical charting
•clinical and executive decision support
Required technology, security architecture
Introduces CIHI Management Information System Guidelines
to the CFHS
Master Patient Index (MPI)
Phased Implementation
• Phase 1
• Test Bed Functionality
• Pilot Limited Capability
• Phase 2
• Rollout of Limited Capability
• Rollout Full Capability (less Medical
Clinical Notes)
• Test Bed, Pilot, Rollout of Deployed
Functionality
• Phase 3
• Medical Clinical Notes
• Order Entry
• Interfaces with Civilian Sector and Allies
• MIS Guidelines
Electronic Health Record
Chart Organization
Mental Health
Physiotherapy
Laboratory
Diagnostic Imaging
Pharmacy
Specialty Services
Scheduler
Primary Care
Privacy Issues or Concerns
CFHIS will:
• maintain confidentiality of health information
• utilize Government of Canada PKI based on
ENTRUST
• incorporate digital signature & encryption
• be capable of providing info on a need to know
basis by assigning roles
• be capable of monitoring access
Location Based Access Control
Level A
CF HSvcs HQ
Level B
Base Clinic
Level C
Level D
Functional
Sections
Functional
Sub-Sections
PCS
CTS
MH
Dental
Frequent User Position Titles
For CFHIS User Management Module
Manager
Health Records Practitioner
ISSO
Nurse Supervisor
Secretary
Base Surgeon
Physician
Nurse
Nurse Practitioner
Physician Assistant
Medical Technician
Nurse - Case Management
Clerk
Receptionist
Preventive Medicine Technician
Occupational Health&Safety Technician
Health Records Clerk
Medical Finance Clerk
Medical Transcriptionist
Pharmacist
Pharmacy Technician
Pathologist
Dental Detachment Commander
Dentist
Dentist - Specialist
Dental Hygienist
Dental Technician
Dental Receptionist
Physician Specialist
Specialty Technician
Radiologist
Diagnostic Imaging Technician
Physiotherapist
Physiotherapy Assistant
Laboratory Technician
Nurse - Immunization
Social Worker
Psychiatrist
Alcohol Drug Abuse Counselor
Chaplain
Psychologist
Local Administrator
National Administrator
Full Capability Functional Application Roles
Core App
Lab
DI
Dental
Pharm
BS
L1
R1
D1
P1
HP1
L2
R2
D2
P2
HP2
L3
R3
R8
P3
HP3
L4
R4
R9
P8
HP4
L8
R8
MH1
L9
R9
MH2
CS1
CS2
CS3
CS4
Local ISSO
Global
Admin
P9
CFHIS Experience
1. Complexity of task is greatly dependent on choice of
applications.
•
Identify types of users and their information needs
•
Definition of roles for the entire enterprise
•
Assignment of roles to clinic positions
•
Accommodating LBAC
2. Sharing of corporate systems has advantages and
disadvantages.
•
May save of money and effort
•
Control of information (nature and quality of data)
•
Infrastructure, support issues, security clearances