“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review November 5, 2013 Presented by: David Staggs JD, CISSP Jericho Systems Corporation.

Slides:



Advertisements
Similar presentations
S&I Framework Testing HL7 V2 Lab Results Interface and RI Pilot Robert Snelick National Institute of Standards and Technology June 23 rd, 2011 Contact:
Advertisements

PDMP & HITI IG Development Workgroup Session August 14, 2014.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review September 17, 2013 Presented by: David Staggs and Michael Dufel Jericho Systems Corporation.
Cross Domain Patient Identity Management Eric Heflin Dir of Standards and Interoperability/Medicity.
Electronic Submission of Medical Documentation (esMD) Face to Face Informational Session Charter Discussion – 9:30am – 10:00am October 18, 2011.
Query Health Business Working Group Kick-Off September 8, 2011.
Cross Domain Patient Identity Management Eric Heflin Dir of Standards and Interoperability/Medicity.
Initial slides for Layered Service Architecture
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review June 18, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review July 9, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review July 16, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Configuration Management Issues in IHE Asuman Dogac, SRDC, METU, Turkey
1.View Description 2.Primary Presentation 3.Element Catalog Elements and Their Properties Relations and Their Properties Element Interfaces Element Behavior.
Electronic Submission of Medical Documentation (esMD) Electronic Determination of Coverage (eDoC) Home Health User Story January 28, 2015.
Cross-Enterprise User Assertion IHE Educational Workshop 2007 Cross-Enterprise User Assertion IHE Educational Workshop 2007 John F. Moehrke GE Healthcare.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review April 9, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
VA-SAMHSA DS4P Pilot – Phase 2 HIMSS13 Sprint 4 VA Activities Pilot Project Partnership VA SAMHSA Jericho Systems MITRE HIPAAT Data Segmentation for Privacy.
OpenPASS Open Privacy, Access and Security Services “Quis custodiet ipsos custodes?”
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review April 23, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Data Segmentation for Privacy Agenda All-hands Workgroup Meeting May 9, 2012.
Public Health Data Standards Consortium
“Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review April 16, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Dynamic Document Sharing Detailed Profile Proposal for 2010 presented to the IT Infrastructure Technical Committee Karen Witting November 10, 2009.
0 Connectathon 2009 Registration Bob Yencha Webinar | August 28, 2008 enabling healthcare interoperability.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review August 27, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Data Access Framework (DAF) IHE/S&I Framework Joint Work Group kickoff Meeting November 25 th, 2013.
Public Health Reporting Initiative Stage 3 Sprint: Implementation Guide Development Phone: x
EDOS Workgroup Update May 21, 2013 Laboratory Orders Interface Initiative.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review May 7, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review May 14, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Structured Data Capture (SDC) Pilots Template Insert the Name of Your Pilot / Organization Here MM/DD/YYYY.
Health eDecisions Use Case 2: CDS Guidance Service Strawman of Core Concepts Use Case 2 1.
Ongoing/Planned Activities for Week of 4/29 Final UCR Crosswalk due COB 4/30 Hold two working sessions to complete UCR Crosswalk on 4/30 Hold working session.
Security, Privacy Access openPASS Open Privacy, Access and Security Services Project Status Report July 1, 2008.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review May 21, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Query Health Distributed Population Queries Implementation Group Meeting October 11, 2011.
Data Segmentation for Privacy November 16 th, 2011.
Dynamic Data Brief Profile Proposal for 2009/10 presented to the IT Infrastructure Planning Committee Karen Witting September 30, 2009.
Data Access Framework All Hands Community Meeting 1 November 4, 2015.
The Patient Choice Project Project Kickoff December 14 th, 2015.
Ongoing/Planned Activities for Week of 4/22 Initial feedback on UCR Crosswalk due COB 4/23 Hold working session to continue filling out the UCR Crosswalk.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review June 25, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Data Provenance Community Meeting May 15 th, 2014.
Data Access Framework All Hands Community Meeting 1 November 18, 2015.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review June 4, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Ongoing/Planned Activities for Week of 4/29 Final UCR Crosswalk due COB 4/30 Hold two working sessions to complete UCR Crosswalk on 4/30 Hold working session.
Data Provenance Community Meeting July 17 th, 2014.
The Patient Choice Project Use Case Working Session January 8 th, 2016.
September, 2005What IHE Delivers 1 IT Infrastructure Planning Committee Karen Witting – Ready Computing XDS & XCA: On-Demand Documents.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review May 28, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
ESSRT In-Process Review September 10, Agenda 1.Work Completed Till Date 2.Scope of future activities and deliverables 2.
Data Access Framework All Hands Community Meeting April 9, 2014.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review August 13, 2013 Presented by: Michael Dufel and David Staggs Jericho Systems Corporation.
The Patient Choice Project Use Case Working Session February 12 th, 2016.
Public Health Data Standards Consortium
Data Access Framework All Hands Community Meeting April 16, 2014.
Longitudinal Coordination of Care LCP SWG Thursday, May 23, 2013.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review April 30, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Data Provenance All Hands Community Meeting February 19, 2015.
Cross Community Access Profile Karen Witting IBM Co-chair ITI technical committee.
“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review June 11, 2013 Presented by: David Staggs, JD, CISSP Jericho Systems Corporation.
Data Access Framework All Hands Community Meeting 1 April 20, 2016.
Data Access Framework All Hands Community Meeting April 16, 2014.
Case Study: HL7 Conformance in VA Imaging Mike Henderson Principal Consultant Eastern Informatics, Inc.
Query Health Operations Workgroup Standards & Interoperability (S&I) Framework October 13, :00am – 12:00pm ET.
Structured Data Capture (SDC) FHIR SDC Pilots Template
Presented by: Gregorio Canal (Arsenàl.IT) to ITI Technical Cmte
Basic Data Provenance April 22, 2019
US Core Data for Interoperability (USCDI): Data Provenance IG
Presentation transcript:

“ Jericho / UT Austin Pilot” Privacy with Dynamic Patient Review November 5, 2013 Presented by: David Staggs JD, CISSP Jericho Systems Corporation

211/5/2013 Agenda Administrative issues Pilot scope Pilot data flow Implementation guidance document –Previously discussed sections –Additional sections General discussion Pilot timeline Plan of action

311/5/2013 Pilot Administrivia This pilot is a community led pilot –Limited support provided by the ONC Johnathan Coleman (Security Risk Solutions) Zachary May (ESAC) Scott Weinstein (ONC Sponsor) In conjunction with DS4P bi-weekly return of an All Hands meeting Access to DS4P Wiki, teleconference, and calendar Meeting times: Tuesdays 11AM (ET) –Dial In: Access code: URL: d= d=

411/5/2013 Scope of the Pilot 1.Define the exchange of HL7 CDA-compliant PCD between a data custodian and a PCD repository that includes a report on the outcome of the request to the healthcare consumer (subject). 2.Additional goal: use identifiers to identify the subject/ PCD repository for use in reporting the outcome of the “secondary user” request use case to subject by subsequent EHR custodians. 3.Stretch goal: mask and/or redact the clinical document based on data segmentation and PCD choices retrieved from the PCD repository.

511/5/2013 Pilot Data Flow Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor   B ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at 

611/5/2013 J-UT Implementation Guidance PCD returned to the document custodian should be specific to the document custodian and the requestor PCD should be requested for each type of network exchange that could reveal PHI: ITI-55, ITI-38, and ITI-39 Data labels should be passed in the PCD request if they exist in the document being requested Document Custodian should return release decision as an ATNA audit message to the PCD repository PCD repository should allow edit of PCD and review of release decisions through standard interfaces docx/ /SIFramework_DS4P_UC_Jericho_4NOV2013.docx

711/5/2013 Previously Discussed IG Sections PCD should be dynamically filtered specifically for the document custodian and requestor (§2.2) PCD should be requested for each type of data exchange that could reveal PHI (§3.0) PCD request should include any data labels identified in the requested information (§2.3) Release decision should be returned to the PCD repository using an ATNA audit message (§2.4) PCD repository should be securely accessible to patients using standard interfaces PCD alternative representation should be XACML and should be lightweight (§2.6) PCD repository location and account information can be embedded in a CDA clinical document (§2.5)

811/5/2013 Additional Topics Added to the IG Introduction: creation of the pilot (§1.0) Use Case Scenario: implementation of user story 3 (§2.0) Architecture: The J-UT data flow (§2.1) IHE ITI-55 Transactions: diagram and data sets for patient discover request received at the gateway (§3.1) IHE ITI-38 Transactions: diagram and data sets for document list request received at the gateway (§3.2) IHE ITI-39 Transactions: diagram and data sets for document request received at the gateway (§3.3) Test Participants: List of members who played roles in the test scenario (§4) Summary of J-UT Implementation Guidance: Summary of the major guidance from the pilot (§5)

911/5/2013 General Discussion Implementation guidance document –Do we need more time to review? –Does the content need additions / deletions? Are there issues with the remaining artifacts? –Mapping / gap analysis of functionality to standards? –Test cases, test artifacts, and/or test video? Additional activities –More demonstrations and/or J-UT meetings? –Approval of the implementation guidance document? –Bringing the IG to standards organizations (profiles)?

1011/5/2013 Pilot Timeline General Timeline, conditioned on agreement of stakeholders

11 Plan of Action Upon agreement of the participants the POA is: Identify the elements available from previous DS4P pilots Scope level of effort, decide on extended scenario Determine first draft of functional requirements Review standards available for returning information on requests Determine any gaps or extensions required in standards Stand up information holders and requestors Create XDS.b repository holding PCD Identify remaining pieces, create test procedures Document and update IG with results of our experience 11/5/2013

1211/5/2013 Backup Slides

DS4P Standards Material Location of DS4P Standards Inventory: Location of DS4P Standards Mapping Issues: xlsx/ /Copy%20of%20DataMappingsIssues% xlsx General Standards Source List: %20Analysis.xlsx/ /General%20SI%20Framework%20Standards%20A nalysis.xlsx Standards Crosswalk Analysis monizationhttp://wiki.siframework.org/Data+Segmentation+for+Privacy+Standards+and+Har monization (at bottom of page, exportable) Implementation Guidance 20Guidance_consensus_v1_0_4.pdf/ /Data%20Segmentation%20Impl ementation%20Guidance_consensus_v1_0_4.pdf 11/5/201313

1411/5/2013 DS4P References Use Case: ases ases Implementation Guide: nsensus nsensus Pilots Wiki Page: +Pilots+Sub-Workgroup +Pilots+Sub-Workgroup

Test Cases 11/5/ Consent To Patient Discovery : No Consent 2.Consent To Document Query : No Consent 3.Consent To Document Retrieve : No Consent 4.Consent To Patient Discovery : 1 st Requestor (1 st ) 5.Consent To Document Query : 1 st To PC - Allow 6.Consent To Document Query with POU 1 st to PC – Deny 7.Consent To Document Retrieve : 1 st to PC - Allow 8.Consent To Patient Discovery : 2 nd Requestor (2 nd ) 9.Consent To Document Query : 2 nd To PC - Deny 10.Consent To Document Retrieve : 2 nd To PC – Deny 11.Consent To Document Query : 2 nd to SC - Deny 12.Consent To Document Retrieve : 2 nd to SC - Deny 13.Consent To Document Retrieve : With Segmentation

Test Cases (Visual Representation) 11/5/ ScenarioPCDITI-55ITI-38ITI-39 1 st Requestor → PCY45/67 2 nd Requestor → PCY nd Requestor → SCY st Requestor → PCN123 Clinical Data SegmentationY13 PC = Primary Custodian SC = Secondary Custodian Test Document available for review (since 9/16/2013) at: Video of the test will be available shortly.

Test Participants Participants in the September 20, 2013 DS4P Pilot Execution Script: 11/5/ ParticipantActing AsStory RoleHome Community Id UT-AustinSecondary Custodian Research University2.2 UT-AustinFirst RequestorResearch University2.2 ConemaughSecond RequestorMarketing Network5.5 Jericho SystemsPrimary CustodianFirst Network1.1 Jericho SystemsPatient Consent Repository 1.1 Edmond Scientific Secure Labeling Service First Network infrastructure piece

1811/5/2013 Pilot Data Flow Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor   B ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at 

1911/5/2013 Pilot Data Flow Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor Clinical exchange #  Clinical exchange #  B ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at  Fetch PCD Send audit

2011/5/2013 Pilot Data Flow (1) Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor  ,  = Clinical data A,B = PCD data = audit record

2111/5/2013 Pilot Data Flow (2) Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor  ,  = Clinical data A,B = PCD data = audit record

2211/5/2013 Pilot Data Flow (3) Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor  B ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at 

2311/5/2013 Pilot Data Flow (4) Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor  ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at 

2411/5/2013 Pilot Data Flow (5) Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at 

2511/5/2013 Pilot Data Flow (updated) Custodian of Data being Provided at  Patient PCD Repository 2 nd Requestor 1 st Requestor   B ,  = Clinical data A,B = PCD data = audit record And Subsequent Custodian of Data being Provided at 