Government  Health IT
TwitterFacebookLinkedIn
  • Home
  • Topics
    • Cloud Computing
    • Election 2012
    • Electronic Health Record
    • ePrescribing
    • Health Information Exchange (HIE)
    • Meaningful Use
    • Medicaid
    • Medicare
    • Military Health
    • Mobile/ Wireless
    • NHIN
    • Policy & Legislation
    • Population Health
    • Privacy and Security
    • Quality and Safety
    • Telehealth
    • Workforce Management
  • Issues
    • Sept/Oct 2011
    • July/August 2011
    • May/June 2011
    • March/April 2011
    • Jan/Feb 2011
    • Nov/Dec 2010
  • Webinars
    • Upcoming Webinars
    • On Demand Webinars
  • White Papers
  • Blog
  • Events
  • Jobs
  • RSS
  • Slideshows
  • Videos
  • Podcasts
  • Newsletters
  • Advertise
  • LOGIN
  • REGISTER
  • SUBSCRIBE
Home » News » Mobile/ Wireless | Privacy and Security
Receive News
By Email

  • del.icio.us
  • Digg
  • Facebook
  • Google
  • Reddit
  • StumbleUpon
  • RSS Icon
  

Tweet

Info security is critical when VA allows iPhone, iPad

July 28, 2011 | Mary Mosquera

Suggested Content

  • Unopened iPad stolen from VA as program launches
  • VA shifts tablet initiative into higher gear
  • VA will allow more mobile devices Oct. 1
  • Q&A: iBlueButton empowers patients to be the HIE
  • DHS lists top 5 mobile medical device security risks
  • VA tests iPhone EHR app for summer rollout
  • 3 tips for safeguarding against data breaches
  • VA expects to award MDM tool by Sept. 30
  • 13 ways to guard against mobile device risks

Related Resources

  • Ten Things to Ask Your SAAS Vendor Before Entering the Cloud
  • BYOD in Healthcare Organizations: Top 6 Risks & How to Avoid Them
  • Enabling Data as a Service in Healthcare
  • New World Order: Effectively Securing Healthcare Data Through Secure Information Exchanges
  • Securing Mobile Devices in the Business Environment

WASHINGTON – Once it allows employees and clinicians in its hospitals to start using iPhones and iPads on the job on Oct. 1, the biggest issue for the Department of Veterans Affairs (VA) is information security.

Employees will be able to view sensitive data, but be unable to download and store information on a mobile device unless it meets security requirements. The viewer tool is a capability that VA has utilized for other devices, such as employees’ home computers, said Roger Baker, VA CIO.

The two devices are the first of many, over the long term, that VA anticipates will be able to connect to its network and access veterans’ information. The government-acquired BlackBerry has been the sole smartphone or mobile device that VA has sanctioned on its network. 

Baker announced in June that VA would begin in October to allow the most popular mobile devices, but did not name them.

The Apple devices will be used primarily for administrative type of information, encrypted e-mail and for general access to the VA network and its electronic medical system.

Employees and medical staff who want to access VA’s network using an iPhone or iPad must first be authenticated at their facility as an official VA user. VA will apply mobile device management (MDM) software, which is available from a variety of vendors, to secure, manage and monitor mobile devices across service providers and organizations, before the Apple device can connect to the VA network to assure a secure environment.

“It’s not just about encryption but the device characteristics, its ability to keep various programs from interfering with one another and our ability to detect what’s occurring on the device so we are confident that the information is protected,” Baker said at a July 25 briefing with reporters.

VA is considering allowing applications to actually store information on the device – but must first verify that the encryption of the information and the security controls on the device are adequate.

The expectation, based on a pilot that is underway, is that the encryption being applied on the device will be adequate for the type of information that can be put on the device, even if it may not meet the federally required Federal Information Processing Standard (FIPS) 140-2 for encryption from the National Institute of Standards and Technology (NIST).

“I will accept the risk for the organization that that encryption is sufficiently strong, that it does not present an undue risk of information breach,” Baker said.

“We’ve got to make certain that the applications that we allow to run on the device are broad enough that we’re not going to be draconian in our requirements,” he said. On the other side, users are going to have to recognize that there are apps that could cause security issues. “If we haven’t checked it out, we’re going to have our primary concern be the security of any information on that device."

Over the long term, VA wants to let employees use devices that they have bought themselves. “But we will enforce the same security on the personally owned as government owned devices,” said Baker.

[See also: Cancer Institute, ONC open contest for cancer prevention apps.]

VA has 330,000 employees, clinicians, and other potential users for mobile devices. The department has bought as many as 30,000 BlackBerry smartphones. But VA privacy reports have shown that many employees are already using Apple devices and other electronic tools without authority.

“Do I want them to be used the way that I have defined so I feel there is a high degree of security? Or do I want the users to define how they are going to use them? As CIO, if I am the chief ‘no’ officer, then my users are going to figure out a way to have ‘yes’ be the answer," said Baker. Instead, these devices will be certified and will use encryption technologies that have been submitted for certification, he added.

Mary Mosquera
Senior Editor for Healthcare Finance News
Follow Mary on Twitter @GovHITreporter
Related Topics:
  • Online Only
  • Mobile/ Wireless
  • Privacy and Security
  • BlackBerry
  • iPads
  • Company Technology
  • Quotation
  • Cancer Institute
  • National Institute of Standards
  • cancer prevention
  • e-tools
  • Department of Veterans Affairs
  • encryption
  • encryption technologies
  • http://www.govhealthit.com/news/cancer-institute-onc-open-contest-cancer-prevention-apps&nbsp
  • http://www.govhealthit.com/news/va-will-allow-more-mobile-devices-oct-1
  • http://www.healthcareitnews.com/news/privacy-concerns-barrier-va-physicians-use-e-tools
  • iPhone
  • mobile device
  • mobile devices
  • Roger Baker
  • smart phone
  • smart phones
  • Smartphone
  • smartphones

Reader Comments (0)Login to Post a Comment

Most Popular

Latest Headlines
Most Popular
  • Deloitte: Docs underutilize various health technologies
  • Commentary: How data sharing between AHLTA and VistA is possible
  • NYeC PHR design winners to shape public portal
  • Why modernizing state IT infrastructures is crucial for HIX
  • First HIE launching in greater Philadelphia
  • 10 health reform benefits at risk in the election
  • Would Romney kill meaningful use?
  • CMS circulates final 2014 MU clinical quality measures
  • HIE is critical public utility in Sandy disaster
  • HIMSS: The intangibles of HIT employee retention
more news

WEBINARS AND WHITE PAPERS

  • WHITE PAPERS
    New World Order: Effectively Securing Healthcare Data Through Secure Information Exchanges
  • WHITE PAPERS
    Enterprise-class API Patterns for Cloud & Mobile
  • WHITE PAPERS
    When Evolution Drives Revolution: The Cloud as a Business Model
  • WHITE PAPERS
    The VNA Strategy: Balancing Workflow and Enterprise Imaging Management
  • WHITE PAPERS
    Key Benefits to a Secure & Elastic Private Cloud
More Resources
Syndicate content

HIMSS JOBMINE

  • Director of Clinical Applications - MidMichigan Health - Midland, MI
  • Information Services Director - Central Peninsula Hospital - Soldotna, AK
  • Director, Marketing and Business Development - Vermont Information Technology Leaders, Inc. - Burlington, VT
  • CIO - Bend Memorial Clinic - Bend, Oregon
  • Director of Clinical Transformation - Agnesian Healthcare - Fond du Lac, WI
more jobs
receive news by email

Marketplace

  • Home
  • Resource Central
  • Blog
  • Events
  • Jobs
  • Mobile Site
  • Advertise
  • RSS
  • About
  • Site map
  • Privacy Policy
Follow Government Health IT on TwitterLike Government Health IT on FacebookJoin Government Health IT on LinkedInRSS Subscriptions
BlogEvents
JobsMobile SiteMobile App
 
Healthcare IT NewsHealthcare Finance NewsHealthcare Payer NewsHIEWatch ICD10Watch mHIMSS PhysBizTech
©2013 MedTech Media Government Health IT is a publication of MedTech Media
Advertise About Us Privacy Policy