About CEN

The European Committee for Standardization is one of three European Standardization Organizations (together with CENELEC and ETSI) that have been officially recognized by the European Union and by the European Free Trade Association (EFTA) as being responsible for developing and defining voluntary standards at European level.

 - 

 
  •  

Project

Reference CEN/TR 15300:2006
Title Health informatics - Framework for formal modelling of healthcare security policies
Work Item Number 00251124
Abstract/Scope This CEN report specifies the starting point for working on some formalising tools that could be used by the healthcare actors to express, compare and validate local and/or network security policies. Defining and validating a correct security policy encompass different activities such as expressing correctly (i.e. without any ambiguity), formulating correctly (i.e. without any misinterpretation) and proving the correctness (i.e. without known failures or major lack) of the [to be formally modelled] security policy. This CEN report does NOT intend at all to specify a UNIQUE or UNIVERSAL formal model that need to be used by the European healthcare community: it only indicates, as a first working step, some ways that could be followed to help that healthcare community to correctly and fruitfully manipulate the security policy concept(s) and the formal modelling techniques. This CEN report does NOT intend to indicate an EXHAUSTIVE spectrum of all the published formal security policy models: it only gives a readable and understandable flavour of the most well-known formal models and also of the [maybe] most interesting ones from the healthcare activity and needs point of view. This CEN report is, in this very first version, divided in five parts: o Part #1 - Introduction to formal modelling: this clause summarises and justifies the following needs: i. need for policies, in general and for any context; ii. need for security policies, in any data processing context; iii. need for models (or modelling facilities) of security policies, in some generic system environments; iv. need for formal models (or formal modelling facilities) of security policies, in some sensitive areas; v. need for healthcare-oriented formal models of security policies, specialized to healthcare specificities. o Part #2 - Historical security policies and models: this clause explains and introduces the main objectives and concepts of the security policy modelling activity that seems to be of
Status
Published
Reference Document
date of Availability (DAV) 2006-10-11
ICS 35.240.80 - IT applications in health care technology
A-Deviation(s)  
Special National Condition(s)  

Legal

Directive(s)  
Mandate(s)  
Citation in OJEU  

Implementation Dates

date of Ratification (DOR) (1) 2005-12-05
date of Availability (DAV) (2) 2006-10-11
date of Announcement (DOA) (3)
date of Publication (DOP) (4)
date of Withdrawal (DOW) (5)

Relations

Supersedes  
Superseded by  
Normative reference (6)  
Sales Points

(1) Date of ratification (dor) date when the Technical Board notes the approval of an EN (and HD for CENELEC), from which time the standard may be said to be approved


(2) Date of availability (dav) date when the definitive text in the official language versions of an approved CEN/CENELEC publication is distributed by the Central Secretariat


(3) Date of announcement (doa) latest date by which the existence of an EN (and HD for CENELEC), a TS or a CWA has to be announced at national level


(4) Date of publication (dop) latest date by which an EN has to be implemented at national level by publication of an identical national standard or by endorsement


(5) Date of withdrawal (dow) latest date by which national standards conflicting with an EN (and HD for CENELEC) have to be withdrawn


(6) This list of normative references is purely indicative. The only official list of normative reference is the list of the published standard.


In the case of undated standard, a link to the last dated version is provided.


In the case of series, a link to each standard identified in the series is provided.


We also invite you to check (via the website) whether corrigenda and/or amendments shall be read in conjunction with the main standard.

 

Our use of cookies

We use necessary cookies to make our site work.

Necessary cookies enable core functionality such as security, network management, and accessibility. You may disable these by changing your browser settings, but this may affect how the website functions.

  翻译: