In a typical healthcare organization, hundreds to thousands of medical and support staff need to access patient data to do their job. How do you effectively enforce access controls to hospital information systems without hampering medical care efficiency and effectiveness?
- Authentication: verify that the person is who they say they are and control how you want the person to authenticate based on who they are, where they are, and what systems they need to access.
- Authorization: control what systems, applications and data they can access and how/when.
- Audit: record all user access events and consolidate that information across diverse servers and applications.
Read this white paper for more details.