Stud Health Technol Inform. 2025 May 15;327:743-744. doi: 10.3233/SHTI250447.
ABSTRACT
The digitalization of healthcare requires robust information security and data protection measures. This work outlines a methodology for assessing these aspects using the Technical Guideline TR-03161-2 from the German Federal Office for Information Security (BSI). The approach involves comparing the current information security and data protection state of a healthcare web application against predefined requirements and identifying threats based on unmet criteria. Identified security deficits are quantified in economic cost terms through use of the Annualized Loss Expectancy (ALE) framework, providing a realistic assessment of the economic impact of information security and data protection risks.
PMID:40380556 | DOI:10.3233/SHTI250447
AI-Assisted Evidence Search
Share Evidence Blueprint
Search Google Scholar