{"id":349771,"date":"2024-10-20T00:38:35","date_gmt":"2024-10-20T00:38:35","guid":{"rendered":"https:\/\/pdfstandards.shop\/product\/uncategorized\/bsi-pd-cen-iso-ts-144412013\/"},"modified":"2024-10-26T00:21:52","modified_gmt":"2024-10-26T00:21:52","slug":"bsi-pd-cen-iso-ts-144412013","status":"publish","type":"product","link":"https:\/\/pdfstandards.shop\/product\/publishers\/bsi\/bsi-pd-cen-iso-ts-144412013\/","title":{"rendered":"BSI PD CEN ISO\/TS 14441:2013"},"content":{"rendered":"

This Technical Specification examines electronic patient record systems at the clinical point of care that are also interoperable with EHRs. Hardware and process controls are out of the scope. This Technical Specification addresses their security and privacy protections by providing a set of security and privacy requirements, along with guidelines and best practice for conformity assessment.<\/p>\n

ISO\/IEC 15408 (all parts) defines \u201ctargets of evaluation\u201d for security evaluation of IT products. This Technical Specification includes a cross-mapping of 82 security and privacy requirements against the Common Criteria categories in ISO\/IEC 15408 (all parts). The point-of-service (POS) clinical software is typically part of a larger system, for example, running on top of an operating system, so it must work in concert with other components to provide proper security and privacy. While a Protection Profile (PP) includes requirements for component security functions to support system security services, it does not specify protocols or standards for conformity assessment, and does not address privacy requirements.<\/p>\n

This Technical Specification focuses on two main topics:<\/p>\n