Skip to main navigation Skip to search Skip to main content

Security practices and regulatory compliance in the healthcare industry

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

This study examined the adoption of security practices, with the goal of identifying dominant configurations and their relationship to perceived compliance. We utilized survey data from 204 hospitals including adoption status of 17 security practices and perceived compliance levels on HITECH, HIPAA, Red Flags Rules, CMS, and State laws governing patient information security. Using cluster analysis and t-tests, we found that three clusters of security practices are significantly associated with different levels of perceived compliance. We demonstrated significant differences among non-technical practices rather than technical practices, and the highest levels of compliance are associated with hospitals that employed a balanced approach between technical and non-technical practices (or between one-time and cultural practices). Our results provide security practice benchmarks for healthcare administrators and can help policy makers in developing strategic and practical guidelines for practice adoption. © (2012) by the AIS/ICIS Administrative Office All rights reserved.
Original languageEnglish
Title of host publication18th Americas Conference on Information Systems 2012, AMCIS 2012
Pages2440-2449
Volume3
Publication statusPublished - 2012
Externally publishedYes
Event18th Americas Conference on Information Systems (AMCIS 2012) - Seattle, United States
Duration: 9 Aug 201212 Aug 2012
https://aisel.aisnet.org/amcis2012/
https://www.proceedings.com/17152.html

Publication series

Name
Volume3

Conference

Conference18th Americas Conference on Information Systems (AMCIS 2012)
PlaceUnited States
CitySeattle
Period9/08/1212/08/12
Internet address

Research Keywords

  • Compliance
  • Healthcare
  • Regulation
  • Security practices

Fingerprint

Dive into the research topics of 'Security practices and regulatory compliance in the healthcare industry'. Together they form a unique fingerprint.

Cite this