A tale of two standards: strengthening HIPAA security regulations using the PCI-DSS
Mark Gaynor,
Catherine Bass and
Bryan Duepner
Health Systems, 2015, vol. 4, issue 2, 111-123
Abstract:
This paper both illustrates the inadequacy of current Health Insurance Portability and Accountability Act (HIPAA) regulations in protecting health-care information and proposes a more cohesive strategy to protect such information based on the organizational model that undergirds the Payment Card Industry Data Security Standards (PCI-DSS). The evidence indicates that the industry consortium model used to develop the PCI-DSS works rapidly and effectively. The success of these standards suggests that their strengths provide a favorable base from which to develop a robust set of standards to enhance information security within health care. A national organization consisting of industry representatives that is devoted to creating a more comprehensive and less vague set of security standards is required to protect health-care information more effectively than is possible under the current HIPAA approach.
Date: 2015
References: Add references at CitEc
Citations: View citations in EconPapers (1)
Downloads: (external link)
http://hdl.handle.net/10.1057/hs.2014.17 (text/html)
Access to full text is restricted to subscribers.
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:taf:thssxx:v:4:y:2015:i:2:p:111-123
Ordering information: This journal article can be ordered from
http://www.tandfonline.com/pricing/journal/thss20
DOI: 10.1057/hs.2014.17
Access Statistics for this article
Health Systems is currently edited by Sally Brailsford
More articles in Health Systems from Taylor & Francis Journals
Bibliographic data for series maintained by Chris Longhurst ().