THREATS AND CHALLENGES TO THE CYBERSECURITY SYSTEM OF HEALTHCARE INFORMATION SYSTEMS AND REGISTRIES
DOI:
https://doi.org/10.31470/2786-6246-2023-6-113-121Keywords:
cybersecurity, cyber defense, cyber attack, healthcare, information systems and registriesAbstract
The article reveals the key threats and challenges to the cybersecurity system of information systems and registries in the healthcare sector. The author examines the features of the e-Health Concept and finds out that in terms of the cybersecurity system, it provides for the informatization of healthcare institutions, approval of the conceptual and reference base of digital competencies of healthcare professionals, development of information culture and digital competence, cybersecurity and cyberhygiene of medical staff and patients. The ways to ensure the quality, safety and accessibility of eHealth in the area of cybersecurity are highlighted. The features of the Loan Agreement dated 22.12.22 №9468-UA between the Ministry of Health of Ukraine and the World Bank under the project «Strengthening the Health System and Saving Lives» are analyzed, which provides for the development of the main modules of the eHealth system, including registration of healthcare professionals, patient data portal, eHealth modules for disability and rehabilitation groups, improvement of cybersecurity of health-related data, integration of digital health systems. It is found that the full-scale invasion of the enemy on the territory of Ukraine has brought new threats and challenges related to the need to increase the level of cybersecurity of information systems and registries and the development of eHealth in general. The key threats and challenges associated with the impact of the war on the healthcare cybersecurity system are noted. The main tasks of the working group in the context of the development and implementation of the Concept of Strategic Directions for the Development of Cybersecurity in the Field of Electronic Healthcare are revealed. Technical and organizational measures to ensure an adequate level of cybersecurity in the healthcare sector are presented.
References
Trofymenko, O. & Dubovyi, Ya. &Lohinova, N. & Prokop, Yu. & Zadereiko, O. (2021). Pytannia kiberbezpeky medychnykh kompiuternykh system [Issues of cyber security of medical computer systems]. Zakhyst informatsii – Protection of information, 23(1), 30-39 [in Ukrainian].
Volynets, I. (2019). Kiberzlochynnist u sferi okhorony zdorovia: realnist, shcho potrebuie zakhystu [Cybercrime in the sphere of health care: a reality that needs protection]. Teoriia i praktyka intelektualnoi vlasnosti – Theory and practice of intellectual property, 3, 113-122 [in Ukrainian].
Strielkina, A.A. & Uzun, D.D. (2017). Zabezpechennia kiberbezpeky medychnykh system: vyklyky i rishennia v konteksti Internetu rechei [Ensuring cybersecurity of medical systems: challenges and solutions in the context of the Internet of Things]. Radioelektronni i kompiuterni systemy Radioelectronic and computer systems, 1, 44-50 [in Ukrainian].
Koval, B. & Koval, L. & Poida, S. (2023). Navchannia maibutnikh likariv osnovam mediahramotnosti ta kiberbezpeky [Teaching future doctors the basics of media literacy and cyber security]. Perspektyvy ta innovatsii nauky – Perspectives and innovations of science, 8(26), 171-183 [in Ukrainian].
Pro skhvalennia Kontseptsii rozvytku elektronnoi okhorony zdorovia: Rozporiadzhennia Kabinetu Ministriv Ukrainy [On the approval of the Concept of the development of electronic health care: Decree of the Cabinet of Ministers of Ukraine]. zakon.rada.gov.ua. Retrieved from https://zakon.rada.gov.ua/laws/show/1671-2020-%D1%80#Text [in Ukrainian].
Uhoda pro pozyku (Proekt «Zmitsnennia systemy okhorony zdorovia ta zberezhennia zhyttia» (Heal Ukraine)) mizh Ukrainoiu ta Mizhnarodnym bankom rekonstruktsii ta rozvytku: Ukraina, MBRR; Uhoda, Mizhnarodnyi dokument, Opys vid 22.12.2022 [Loan Agreement (Project "Strengthening the Health Care and Life Saving System" (Heal Ukraine)) between Ukraine and the International Bank for Reconstruction and Development: Ukraine, IBRD; Agreement, International document, Description dated 12.22.2022]. zakon.rada.gov.ua. https://zakon.rada.gov.ua/laws/show/996_002-22#Text [in Ukrainian].
Pro utvorennia Robochoi hrupy z pytan rozrobky ta realizatsii Kontseptsii stratehichnykh napriamiv rozvytku kiberbezpeky u sferi elektronnoi okhorony zdorovia: MOZ Ukrainy; Nakaz, Sklad kolehialnoho orhanu, Polozhennia vid 15.06.2022 № 1034 [On the formation of the Working Group on the development and implementation of the Concept of strategic directions for the development of cyber security in the field of electronic health care: Ministry of Health of Ukraine; Order, Composition of the collegial body, Regulation dated 15.06.2022 № 1034]. zakon.rada.gov.ua. Retrieved from https://zakon.rada.gov.ua/rada/show/v1034282-22#Text [in Ukrainian].
Pro zatverdzhennia Protokolu kryzovykh komunikatsii pid chas reahuvannia na kiberataky ta kiberintsydenty: Nakaz MOZ Ukrainy vid 06.12.2023 № 2076 [On the approval of the Crisis Communications Protocol when responding to cyber attacks and cyber incidents: Order of the Ministry of Health of Ukraine dated 06.12.2023 № 2076]. moz.gov.ua. Retrieved from https://moz.gov.ua/article/ministry-mandates/nakaz-moz-ukraini-vid-06122023--2076-pro-zatverdzhennja-protokolu-krizovih-komunikacij-pid-chas-reaguvannja-na-kiberataki-ta-kiberincidenti [in Ukrainian].
Rozrobleno rekomendatsii shchodo kiberzakhystu zakladiv okhorony zdorovia. Ministerstvo okhorony zdorovia Ukrainy [Recommendations for cyber protection of health care facilities have been developed. Ministry of Health of Ukraine]. moz.gov.ua. Retrieved from https://moz.gov.ua/article/news/rozrobleno-rekomendacii-schodo-kiberzahistu-zakladiv-ohoroni-zdorov%e2%80%99ja [in Ukrainian].