Scott Van Heest IT Specialist, Data Analysis and Support Team, NPCR, CDC Denise Farmer CDC/NPCR Contractor Division of Cancer Prevention and Control National.

Slides:



Advertisements
Similar presentations
Instructions and Reporting Requirements Module 5 Electronic Reporting For Facilities March 2014 North Carolina Central Cancer Registry State Center for.
Advertisements

GALVESTON COUNTY, TX P-CARD TRAINING GALVESTON COUNTY.
Web Plus Overview Division of Cancer Prevention and Control National Center for Chronic Disease Prevention and Health Promotion CDC Registry Plus Training.
Your NEW Social Services Verification Tool
Username1 ********* To Sign In, enter your pre-assigned Key Customer User Name and Password in the appropriate fields and click ‘Sign In’. Welcome to the.
Password Reset Instructions PART 1 The following set-up tasks must be performed first in order to use the Automated Password Reset feature. 1.Log into.
Web Pricing User Manual
Procurement Card Training Strategic Account Management (SAM)
Constructing a Data Management System National Center for Immunization & Respiratory Diseases Influenza Division Regional Training Workshop on Influenza.
Updating User Information Password – use this field to change your own password Confirm Password – retype the new password for verification purposes To.
IHE Structured Data Capture (SDC) for use in Cancer Registries
Individual User Logins
Database Structure Basics National Center for Immunization & Respiratory Diseases Influenza Division Pam Kennedy Analyst, McKing Consulting Regional Training.
Presentation Title Presenter(s) Centers for Disease Control and Prevention AIDS Turning the Tide Together.
Database Security and Auditing: Protecting Data Integrity and Accessibility Chapter 3 Administration of Users.
Denise Luther Senior IT Consultant Practical Technology Enablement with Enterprise Integrator.
Harold H. Collins Information Technology Specialist Epi Info™ Language Translation Process Korean Public Health Surveillance Conference 1 April 2011 Epi.
Abstract Plus Abstract Plus Overview for Pacific Regional Central Cancer Registry Honolulu, Hawaii March 7, 2009 Software for Abstracting and Coding Cancer.
Harold H. Collins Information Technology Specialist Epi Info™ Language Translation Process Korean Public Health Surveillance Conference 1 April 2011 Epi.
Harold H. Collins Information Technology Specialist Epi Info™ Background Korean Public Health Surveillance Conference 30 March 2011 Epi Info™ Background.
Troubleshooting Windows Vista Security Chapter 4.
Chapter 13 Users, Groups Profiles and Policies. Learning Objectives Understand Windows XP Professional user accounts Understand the different types of.
1 OPOL Training (OrderPro Online) Prepared by Christina Van Metre Independent Educational Consultant CTO, Business Development Team © Training Version.
1. Chapter 25 Protecting and Preparing Documents.
WESS Application System PKI Login Registration Process.
BNR – Stroke: data entry and data management CAREC/PAHO Curacoa,15-16 November 2010 Gina Pitts, BNR-CVD Registrar Chronic Disease Research Centre, Jemmotts.
Using the Supplier Portal Updated September 12, 2011 Using the Supplier Portal.
Preliminary Considerations for Analyzing Physical Education Curricula Lesson 3 PECAT Physical Education Curriculum Analysis Tool National Center for Chronic.
Guide to MCSE , Second Edition, Enhanced1 The Windows XP Security Model User must logon with: Valid user ID Password User receives access token Access.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance Demonstration and Workshop Highlighting.
Amber Johnson U.S. Department of Education WVASFAA Fall 2015 Conference October 29, 2015 FSA ID: The FSA PIN Replacement.
Infection Prevention in US Outpatient Oncology Settings Alice Guh, MD. MPH National Center for Emerging and Zoonotic Infectious Diseases Division of Healthcare.
STDs in Persons Entering Corrections Facilities Sexually Transmitted Disease Surveillance 2009 Division of STD Prevention.
Poxvirus and Rabies Branch November 2011 Rabies Surveillance in the United States During 2010 Division of High-Consequence Pathogens and Pathology National.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance José Aponte Public Health Advisor Best Practices.
Online Safety & Compliance Electronic Reporting System (The OSCER System) Accessing the OSCER System for the First Time Critical Steps to Ensure Success.
Password Reset Instructions PART 1 The following set-up tasks must be performed first in order to use the Automated Password Reset feature. 1.Log into.
Page 1 of 42 To the ETS – Create Client Account & Maintenance Online Training Course Individual accounts (called a Client Account) are subsets of the Site.
Page 1 of 17 To the ETS – Password Reset Online Training Course Clients have the ability to automatically update passwords at any time through the automated.
José Aponte Public Health Advisor Module 5: Data Analysis 12 June 2012 Epi Info™ 7 Introductory Training Office of Surveillance, Epidemiology, and Laboratory.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance José Aponte Public Health Advisor Companion.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance José Aponte Public Health Advisor Entering.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance José Aponte Public Health Advisor Data Collection.
Staff Module and Summary of Changes 1. Icon Changes: Page 3 Signing In and Password/Pin Changes: Page 4 Logging Out: Page 8 Staff Module Changes: Page.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance José Aponte Public Health Advisor Adding.
José Aponte Public Health Advisor Module 3: Adding Intelligence to Forms 12 June 2012 Epi Info™ 7 Introductory Training Office of Surveillance, Epidemiology,
Passwords New Policies and You. New Password Policies Passwords Must Be Unique. (cannot be reused within 1 year) Minimum Password Length: 6 Maximum Password.
GPS ACCESS as-of June 2014 Note: (Your username will always be your Employee ID and your first password will also be your Employee ID)
Scott Van Heest IT Specialist NAACCR 2010, Quebec City, Canada June 24, 2010 Central Cancer Registry: Data Security The Reporting of Veterans Health Administration.
Business Objects XIr2 Windows NT Authentication Single Sign-on 18 August 2006.
Prototype Security New Feature: Send Mass & Activity Code.
Alfred Junior, MPH Lindsey Weiner, MPH Scott Fridkin, MD Division of Healthcare Quality Promotion CDC November 18, 2015 Notes From the Field: Antibiotic.
Center for Surveillance, Epidemiology, and Laboratory Services Division of Health Informatics and Surveillance 1 eSHARE Webinar: Message Validation, Processing,
"The findings and conclusions in this report are those of the author(s) and do not necessarily represent the official position of the Centers for Disease.
Abstract Plus Version 3.0: Efficient, Flexible Tools for Cancer Casefinding and Reabstracting Case Completeness and Data Quality Audits NAACCR Conference.
WESS Application System PKI Login Registration Process
Creating a new Central Data Exchange (CDX) Account (to access NetDMR)
Welcome! To the ETS – Create Client Account & Maintenance
Web Plus Version 2: Secure Web-based Functions For Death Certificate and Pathology Lab Follow-back Efforts Kathleen Thoburn, Sanjeev Baral (CDC/NPCR.
How To Create Cox New Account?
PE Determiner Portal Registration and Log on Workshop
Creating a new Central Data Exchange (CDX) Account (to access NetDMR)
WESS Application System PKI Login Registration Process
PE Determiner Portal Registration and Log on Workshop
TaxSlayer Multi-Factor Authentication
Sandy Jones, Public Health Advisor
Activating Your Account and Navigating Through TIDE
WESS Application System PKI Login Registration Process
WESS Application System PKI Login Registration Process
WESS Application System PKI Login Registration Process
Presentation transcript:

Scott Van Heest IT Specialist, Data Analysis and Support Team, NPCR, CDC Denise Farmer CDC/NPCR Contractor Division of Cancer Prevention and Control National Center for Chronic Disease Prevention and Health Promotion NAACCR 2010 Annual Conference Quebec City, Canada June 24, 2010 ABSTRACT PLUS VERSION 3: Security Standards Upheld

Background  NPCR program standards require registries to have data security procedures in place to ensure cancer registry data are available only to those who need to use it for legitimate purposes  Controlling access to data helps ensure patient privacy and data confidentiality  Abstract Plus version 3, has improved software features to uphold security standards

Abstract Plus Purpose  Summarize the medical record into an electronic report of cancer diagnosis and treatment by abstractors and other individuals or groups who work with cancer data  Conduct casefinding, reabstracting (blind or un- blinded), and recoding audits of reporting facilities and central registry coding staff  CDC provides support and consultation to state central registries for their state-specific customization and distribution of the Registry Plus software

Abstract Plus Functions  Used to abstract, code, and audit cancer cases using standard data items and codes  Supports abstraction and auditing of all data items in national standard data sets, including all text fields and state-specific data items  Entered abstracts are validated by customizable edits, allowing for interactive error correction while abstracting  Customized by central registries for distribution to and use by hospitals and other reporting sources  Also used for special projects and start-up registries

Security Features  Options to configure security policies  Form-based authentication, and Challenge Questions for individual users  User passwords stored and encrypted using a one-way hash method  Microsoft Access encrypted databases  Microsoft SQL Server database option  Role-based access

Results: Application Preferences  Security Policies  Security Challenge Questions  Password Expiration, Re-use, and Password Expression (restrictions) options  Database options

Security Policies Options for challenge question setup and use Options for password expiration, re-use and password restrictions

Security Questions  Security Challenge Questions can be added or removed from current list of questions Add or remove challenge questions to be presented to the user

Password Expression Test custom password restrictions  Customized password restrictions can be set via regular expression, or the default expression can be used Use default Edit

Database Options SQL Server options

MS Access Encrypted Databases  Password protected access outside application  User passwords encrypted in database  Common database access needs met through menu selections  Support available for database customization

MS SQL Server Database Option  Requires SQL Server database management for abstract database  Allows multi-user abstract database access, with record locking  Requires database connection string for setup  SQL Server offers inherent security features  Login same as MS Access option  Database option included in title bar

Role-based Access  Facility Abstractors (login access):  Add, edit, delete, print, and export abstracts  Auditors (additional password required) – perform all Facility Abstractor functions, plus:  Perform casefinding, reabstracting, and recoding audits  Administrators (additional password required) - perform all Facility Abstractor and Auditor functions, plus:  Set application preferences  Manage abstracting and auditing display types, and set up audit databases  Manage user accounts and passwords  Maintain Administrator/Auditor passwords

Form-based Authentication  Login requires valid username and password  First-time access to application requires setup of user account  Initial login requires setup of user’s password with challenge security questions  Forgotten password can be reset by user with valid answers to challenge questions  Password can be managed by user or administrator  User allowed to change password (must know old password)

Creating User Account on Initial Access  Enter User Name, User ID, and Initials  Click Add  Click Close User ID User NameUser ID

Initial Log In  Enter User ID form new user account  Enter default, initial access password (Welcome1)  Update default password to new secure, user-specified password User ID Welcome1 Enter and confirm new password

Define User’s Security Questions  Prompted to select and answer required number of questions  Each selected question must be different  Verification of answers used to reset forgotten password Select questions and answers

Routine Log In  User ID and Password required  Password is case sensitive  Click Forgot Password to reset password using security questions to verify user  Click Change Password to change existing, known password Password User ID

Conclusions Abstract Plus version 3:  Provides user-friendly, flexible options for meeting changing security standards  Preserves the confidentiality, integrity, and availability of cancer registry data

For more information please contact Centers for Disease Control and Prevention 1600 Clifton Road NE, Atlanta, GA Telephone, CDC-INFO ( )/TTY: Web: Thank You! Denise Farmer, Joe Rogers, Sherrie Stein, Kathleen K. Thoburn, National Center for Chronic Disease Prevention and Health Promotion Division of Cancer Prevention and Control The findings and conclusions in this report are those of the authors and do not necessarily represent the official position of the Centers for Disease Control and Prevention.