Por motivos de mantenimiento se ha deshabilitado el inicio de sesión temporalmente. Rogamos disculpen las molestias.
Ponencia
A Practical Experience Applying Security Audit Techniques in an Industrial e-Health System Which Uses an Open Source ERP
Autor/es | Gómez, Julián
Olivero González, Miguel Ángel García García, Julián Alberto Escalona Cuaresma, María José |
Departamento | Universidad de Sevilla. Departamento de Lenguajes y Sistemas Informáticos |
Fecha de publicación | 2021 |
Fecha de depósito | 2022-07-11 |
Publicado en |
|
ISBN/ISSN | 978-989-758-536-4 2184-3252 |
Resumen | Healthcare institutions is an ever-innovative field, in which modernization is moving forward taking giant
steps. This modernization, so called “digitization”, brings up some concerns that should be carefully consid ered. ... Healthcare institutions is an ever-innovative field, in which modernization is moving forward taking giant steps. This modernization, so called “digitization”, brings up some concerns that should be carefully consid ered. Currently, the most sensible concerning in this field is the management of Electronic Health Record and patients’ data privacy. Health-related data in healthcare systems are under strict regulations, such as the EU’s General Data Protection Regulation (GDPR), whose non-compliance imposes huge penalties and fines. Cy bersecurity in healthcare plays an important role at protecting these sensitive data, which are highly valuable for criminals. Security experts follow already existing security frameworks to orchestrate the security assess ment process, so that the auditing process is as complete and as organized as possible. This study extends the lifecycle of a security assessment framework and conducts an exploitation and vulnerabilities’ analysis on an actual industrial scenario. The results of this security audit shows that even if the system is heavily fortified, there can be still some vulnerabilities. |
Agencias financiadoras | Ministerio de Ciencia, Innovación y Universidades (MICINN). España Junta de Andalucía |
Identificador del proyecto | PID2019-105455GB-C31
US-1251532 |
Cita | Gómez, J., Olivero González, M.Á., García García, J.A. y Escalona Cuaresma, M.J. (2021). A Practical Experience Applying Security Audit Techniques in an Industrial e-Health System Which Uses an Open Source ERP. En WEBIST 2021: 17th International Conference on Web Information Systems and Technologies (482-489), Celebración Virtual: SciTePress. |
Ficheros | Tamaño | Formato | Ver | Descripción |
---|---|---|---|---|
107145.pdf | 397.7Kb | [PDF] | Ver/ | |