Be-Health as a driving force of electronic cooperation in the Belgian health care sector, based on the experience in the social sector Frank Robben General.

Slides:



Advertisements
Similar presentations
1 Proposal for a Regulation on Electronic identification and trust services for electronic transactions in the internal market (COM( final) {SWD(2012)
Advertisements

© fedict All rights reserved Legal aspects Belgian electronic identity card Samoera Jacobs – November 2008.
The World Internet Security Company ID Management in e-Health February 2007.
E-ID and identity management aspects in the Belgian social sector Frank Robben General Manager Crossroads Bank for Social Security General Manager SmalS-MvM.
The eHealth platform as a secure and efficient data transfer tool in the health sector Frank Robben General manager eHealth platform Sint-Pieterssteenweg.
EGovernment Vision, Policies and Implementations in Austria Prof. Dr. Reinhard Posch CHIEF INFORMATION OFFICER.
EHealth for quality & continuity of care and patient
Workshop on registered electronic mail policies and implementations (ETT 57074) Ankara, –
Security and Interoperability Danny De Cock January 16th, 2012 Moldova Slides: godot.be/slidesgodot.be/slides.
Identity Management Based on P3P Authors: Oliver Berthold and Marit Kohntopp P3P = Platform for Privacy Preferences Project.
Interoperability in the Belgian social sector Frank Robben General manager Crossroads Bank for Social Security CEO Smals Sint-Pieterssteenweg 375 B-1040.
Crossroads Bank for Social Security & eHealth platform How federal institutions support Belgian social and health care sector.
E-government in the Belgian social sector coordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social.
A vision on electronic cooperation in the Belgian health care sector, based on the experience in the social sector, and the role of the Be-Health platform.
Conditions for an effective and efficient E-government Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal Public.
EUropean Best Information through Regional Outcomes in Diabetes Privacy and Disease Registries Technical Aspects Peter Beck JOANNEUM RESEARCH, Austria.
Designing and Implementing Secure ID Management Systems: BELGIUM’s Experience Washington - September 27 th, 2010 Frank LEYMAN © fedict All rights.
The Crossroads Bank for Social Security, a model for the health care sector ? Frank Robben General manager Crossroads Bank for Social Security Sint-Pieterssteenweg.
Creating a Secured and Trusted Information Sphere in Different Markets Giuseppe Contino.
E-Government Security and necessary Infrastructures Dimitrios Lekkas Dept. of Systems and Products Design Engineering University of the Aegean
A Primer on Healthcare Information Exchange John D. Halamka MD CIO, Harvard Medical School and Beth Israel Deaconess Medical Center.
Delivery module pharmacist Billing Medication history Statistical data (IFEB) Product database (APB) Scientific database (DELPHI ) Scientific database.
Know Your Client Information System 1. Central KYC Organization (CKO) Introduction  Presently, a t the time of opening of new client account, capital.
E-government in the Belgian social security sector: a successful combination of back- office integration and an e-portal solution Crossroads Bank for Social.
The new Belgian legal framework for eHealth Frank Robben General manager eHealth-platform Sint-Pieterssteenweg 375 B-1040 Brussels
X-Road (X-tee) A platform-independent secure standard interface between databases and information systems to connect databases and information systems.
National Smartcard Project Work Package 8 – Security Issues Report.
“NATIONAL CHAMBER OF PRIVATE BAILIFF OFFICERS ” in the new era of the online execution SIAIP INTRODUCTION 16 th of December 2014.
1st MODINIS workshop Identity management in eGovernment Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal Public.
Strategic importance of identity and access management (IAM) The case of the Belgian social and health sector Frank Robben General manager Crossroads Bank.
Information security and privacy protection aspects of electronic information management in the Belgian social sector Frank Robben General manager Crossroads.
Integrated Electronic User and Access Management in the Belgian Public, Social and Health Care Sector Frank Robben General manager Crossroads Bank for.
Strategic use of ICT in the Belgian social sector.
How can I trust the rest of Europe ? Requirements and a possible organisation with regard to epSOS and eHealth Frank Robben General manager eHealth platform.
Be-Health as a driving force of electronic cooperation in the Belgian health care sector, based on the experience in the social sector Frank Robben General.
Electronic information exchange within the Belgian social sector coordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads.
The possible support of the Crossroads Bank for Social Security (CBSS) and the eHealth platform to a Belgian Longitudinal Health Information System Frank.
EGovernment in the Belgian social sector, co-ordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social.
Electronic identity management for eGovernment Conceptual framework and objectives Frank Robben General manager Crossroads Bank for Social Security Strategic.
Integrated services delivery based on eGovernment Frank Robben General manager Crossroads Bank for Social Security & eHealth-platform Sint-Pieterssteenweg.
E-government in the Belgian social sector, co-ordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social.
Integrated information management in the Belgian social sector Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal.
Service oriented E-government in the Belgian social sector Frank Robben General manager SmalS-MvM General manager Crossroads Bank for Social Security
Frank Robben General Manager CBSS and eHealth platform CEO Smals Sint-Pieterssteenweg 375 B-1040 Brussels Website CBSS:
Copyright © 2009 by The McGraw-Hill Companies, Inc. All Rights Reserved. McGraw-Hill Chapter 6 The Privacy and Security of Electronic Health Information.
1 ELECTRONIC PRESCRIBING AND APPLICATION OF NEW TECHNOLOGIES IN THE SPANISH PHARMACY Carmen Peña López Secretary General. General Spanish Council of Pharmacists.
Some identification needs related to workers’ mobility eGovernment – eIDM ad hoc group meeting 4-5 May 2006 CBSS Crossroads Bank for Social Security Frank.
EHealth-platform: state of affairs and
1 European eGovernment Awards 2007 European eGovernment Awards 2007 Workshop for Finalists July, Brussels LIMOSA Belgium Reference project number.
A vision on electronic cooperation in the Belgian health care sector, based on the experience in the social sector, and the role of the Be-Health platform.
The eHealth platform: objectives, operating principles and status questions Frank Robben General manager eHealth platform Sint-Pieterssteenweg 375 B-1040.
Is Service Oriented Architecture delivering its promise ? The case of the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank.
How the eHealth platform can be of use for eLifeSciences Frank Robben General Manager eHealth platform Sint-Pieterssteenweg 375 B-1040 Brussels
The pillars of E-government Frank Robben General manager Crossroads Bank for Social Security Strategic advisor Federal Public Service for ICT Sint-Pieterssteenweg.
Back office integration for better E-government services Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social Security.
Interconnecting Autonomous Medical Domains Gritzalis, S.Gritzalis, S. ; Belsis, P. ; Katsikas, S.K. ; Univ. of the Aegean, Samos Belsis, P.Katsikas, S.K.
E-government in the Belgian social sector, co-ordinated by the Crossroads Bank for Social Security Frank Robben General manager Crossroads Bank for Social.
LEARNING AREA 1 : INFORMATION AND COMMUNICATION TECHNOLOGY PRIVACY AUTHENTICATION VERIFICATION.
A model for electronic data exchange in the public sector Kruispuntbank van de Sociale Zekerheid Banque Carrefour de la Sécurité sociale KSZ-BCSS Frank.
Training for developers of X-Road interfaces
Luc Maes Program manager eHealth platform Sint-Pieterssteenweg 375
Efficient and secure transborder exchange of patient data
ESign Aashutosh.
Paperless & Cashless Poland Program overview
The e-Health landscape in 2019 in Belgium: Strategy and actions
Public Sector Institutional Reform Project
Public private partnership concerning user and access management (UAM): the vision of the federal
Dashboard eHealth services: actual mockup
A practice testimony on the implementation of information security and data protection at the Crossroads Bank for Social Security and the eHealth platform.
Towards a frictionless social security
Presentation transcript:

Be-Health as a driving force of electronic cooperation in the Belgian health care sector, based on the experience in the social sector Frank Robben General manager Crossroads Bank for Social Security CEO Smals Sint-Pieterssteenweg 375 B-1040 Brussels Website CBSS: Personal website:

2 Frank Robben4th December 2007 Structure of the presentation objectives building blocks Be-Health platform existing validated authentic sources and value added services critical success factors

3 Frank Robben4th December 2007 Objectives what ? –to optimize the quality and the continuity of health care delivery –to optimize patient safety –to avoid unnecessary bureaucracy for all actors in the health care sector –to support policymaking in health care how ? –through a well organized electronic information exchange between all actors in the health care sector –with the necessary guarantees for information security and privacy protection

4 Frank Robben4th December 2007 Building blocks a platform for secure electronic exchange of information about patients, provided care and the results of the provided care, and for the exchange of electronic care prescriptions between all relevant actors in the health care sector –network –basic services –exchange standards –access channels for the users –no central storage of information !!! an institution, managed by representatives of the several actors in the health care sector that –manages the exchange platform –organizes electronic information exchange between the actors in the health care sector

5 Frank Robben4th December 2007 Building blocks a Sectoral Committee of the Privacy Commission regulating (electronic) exchange of personal health data in cases not regulated by law a standardized content, format and methods for the exchange of electronic care prescriptions a minimal content of health care files that can be exchanged electronically gradually, a permanent, decentralized availability and accessibility of the minimal electronically communicable content of health care files an appropriate legal framework

6 Frank Robben4th December 2007 Be-Health platform Patients and care providers Platform with basic services Be- Health VASVASVAS Suppliers Users Portal BeHealth Portal BeHealth PortaHealth SVA AVS Portal RIZIV Portal RIZIV SVA AVS MyCareNet SVA AVS Portal SS Portal SS SVA AVS FPS-SS SVA AVS VASVASVAS

7 Frank Robben4th December 2007 Be-Health platform basic service –a service that has been developed and made available by Be- Health and that can be used by the supplier of an added value service added value service (AVS) –a service put at the disposal of the patients and/or the health care providers –the entity that develops and offers an added value service can use the basic services offered by Be-Health for this purpose validated authentic source (VAS) –a database containing information used by Be-Health –the administrator of the database is responsible for the availability and (the organization of) the quality of the information made available

8 Frank Robben4th December 2007 Platform with basic services use of the existing network infrastructure (internet, social security extranet, FedMAN,...) with end-to-end encryption of the information (concept of virtual private network (VPN)) basic services –integrated user and access management –logging –orchestration of electronic processes –reference directory –coding and anonymizing –time stamping –portal environment including a content management system and a search engine ( –personal electronic mailbox for each health care provider

9 Frank Robben4th December 2007 User and access management authentication of the identity: according to the required security level –electronic identity card –user number, password and citizen token –user number and password verification of statuses and mandates : access to validated authentic sources authorization to use an added value service: management by service supplier elaborated on the basis of a generic policy enforcement model

10 Frank Robben4th December 2007 Policy Enforcement Model User Policy Enforcement (PEP) Application Policy Decision (PDP) Action on application Decision request Decision reply Action on application PERMITTED Policy Information (PIP) Information request/ reply Policy Administration (PAP) Policy retrieval Authentic source Policy Information (PIP) Information request/ reply Policy repository Action on application DENIED Manager Policy management Authentic source

11 Frank Robben4th December 2007 APPLICATIONS AuthorisationAuthen- tication PEP Role Mapper USER PAP ‘’Kephas’’ Role Mapper DB PDP Role Provider PIP Attribute Provider Role Provider DB UMAF PIP Attribute Provider DB XYZ WebApp XYZ APPLICATIONS AuthorisationAuthen- tication PEP Role Mapper USER WebApp XYZ PIP Attribute Provider PAP ‘’Kephas’’ Role Mapper DB PDP Role Provider Role Provider DB Management VAS PIP Attribute Provider DB XYZ PIP Attribute Provider DB Gerechts- deurwaar- ders PIP Attribute Provider DB Mandaten Be-Health APPLICATIONS AuthorisationAuthen- tication PEP Role Mapper USER PAP ‘’Kephas’’ Provider DB Mandaten Social sector (CBSS) Non social FPS (Fedict) Management VAS DB XYZ Architecture

12 Frank Robben4th December 2007 Existing validated authentic sources register of health care providers –administrator: FPS Public Health –contains information about the diploma and the specialization of a health care provider identified through his social security identification number (SSIN) database with recognitions of the National Institute for Sickness and Invalidity Insurance (RIZIV) –administrator : RIZIV –contains information about the RIZIV recognition of health care providers identified through their SSIN database with persons authorized to act on behalf of a health care institution –administrator : NOSS (division user management for companies) –contains information about which persons, identified through their SSIN, are authorized to use which applications on behalf of a health care institution

13 Frank Robben4th December 2007 Existing added value services third party billing Medic-e: entering the evaluation of disabled persons electronically into the information system of the FPS Social Security input into and consultation of the cancer register Medattest: on-line ordering of care prescription forms support of electronic care prescription in hospitals electronic registration of birth

14 Frank Robben4th December 2007 Third party billing supplier: National College of Sickness Funds users: nurses, their groupings and representatives functionality: send the third party billings electronically to the sickness funds basic services used –identification and authentication of the identity of the user (eID or user number-password-citizen token) –verification of the status of nurse with RIZIV recognition –verification of the mandate –electronic mailbox (publication of documents) –logging

15 Frank Robben4th December 2007 Medic-e supplier: FPS Social Security users: medical doctors who evaluate disabled persons functionality: enter the evaluation of the disabled persons electronically into the information system of the FPS Social Security basic services used –identification and authentication of the identity of the user (eID or user number-password-citizen token) –verification of the status of medical doctor with RIZIV recognition –electronic mailbox (publication of documents) –logging

16 Frank Robben4th December 2007 Input in cancer register supplier: Cancer Register users: oncologists in health care institutions and labs functionality: electronic input of information into the cancer register and access to the registered information basic services used –identification and authentication of the identity of the user (eID) –verification of the status of medical doctor with RIZIV recognition –electronic mailbox (publication of documents) –logging

17 Frank Robben4th December 2007 Medattest supplier: RIZIV users: medical doctors, dentists, physiotherapists, nurses, speech therapists, orthopedists, health care institutions and their mandataries functionality: on-line ordering of care prescription forms basic services used : –identification and authentication of the identity of the user (eID or user number-password-citizen token) –verification of the status of users –verification of the mandate –logging

18 Frank Robben4th December 2007 Electronic care prescription in health care institutions analysis of required functionalities –functionalities before a prescription can be processed authentication of the identity of the person who writes the prescription verification of the status of the person who writes the prescription system to ensure that the prescription cannot be modified unnoticeably after applying the methods to guarantee the integrity and the electronic time stamping authentication of the identity, verification of the status of the person who has written the prescription, guaranteeing the integrity and electronic date for each individual prescription the time necessary for authenticating the identity, verifying the status and guaranteeing the integrity must not exceed ¼ of a second per prescription a person that writes prescriptions must be able to switch between prescription places without overhead local validation that the prescription has not been modified after applying the methods to guarantee the integrity and the electronic time stamping

19 Frank Robben4th December 2007 Electronic care prescription in health care institutions analysis of required functionalities –functionalities during the processing of the prescription the electronic time stamping must be requested immediately after applying the method to guarantee the integrity and must be placed within 30 seconds after the request –organizational requirements velocity of replacing an authentication tool when useless traceability of who has done which processing at which moment for the creation of a prescription (must be kept during a certain period) traceability of the content and of the exact date and time of each request and processing of a request to revoke an authentication tool –point of special interest avoid that care institutions have to work with different systems for the authentication of the identity, the verification of the status, the guarantee of the integrity of documents, electronic time stamping, … for different types of processes

20 Frank Robben4th December 2007 Electronic care prescription in health care institutions possible solution –the authentication of the identity and the verification of the status are performed on the local level using at least a user-id, a password [and something one possesses], on condition that each person that writes prescriptions signs a document that stipulates that he is responsible for everything that is authenticated in terms of identity and status through his user id, his password [and the possessed element] –the prescriptions are hashed –the hashing results (not the content of the prescription itself !) receive an electronic time stamp from Be-Health –clear organizational rules concerning the management of user- id’s, passwords [and the possessed elements], based on the results of Elodis, are incorporated in an royal decree in implementation of article 21 of the royal decree n° 78 –a regulation is being elaborated that indicates under which conditions postscriptions are possible

21 Frank Robben4th December 2007 Critical success factors cooperation between all actors in the health care sector, based on a division of tasks rather than on a centralization of tasks trust of all stakeholders in the preservation of the necessary autonomy and the security of the system firstly the development of the exchange platform and the creation of the necessary institutions (management organization for exchange platform, Sectoral Committee,...) and then further elaboration of processes between these institutions quick wins in combination with a long term vision legal framework

22 Frank Robben4th December 2007 More information portal Be-Health – website Crossroads Bank for Social Security – personal website Frank Robben –

you ! Any questions ?