#CONNECT2013 Connecting for Good Loews Coronado Bay Resort, San Diego, California David C. Kibbe, MD MBA President and CEO, DirectTrust David C. Kibbe,

Slides:



Advertisements
Similar presentations
Georgia Department of Community Health
Advertisements

The Direct Project In A Box Vaibhav Bhandari (Engineer, Microsoft) Ali Emami (Engineer, Microsoft)
National HIT Agenda and HIE John W. Loonsk, M.D. Director of Interoperability and Standards Office of the National Coordinator Department of Health.
NISTs Role in Securing Health Information AMA-IEEE Medical Technology Conference on Individualized Healthcare Kevin Stine, Information Security Specialist.
Page 1 Copyright © 2010 Data Access Technologies, Inc. Model Driven Solutions May 2009 Cory Casanave Architecture of Services SOA for E-Government Conference.
© ITU Telecommunication Development Bureau (BDT) – E-Strategy Unit.. Page - 1 Seminar on Standardization and ICT Development for the Information.
Interoperable EHRs Proposed Vision for HIE in Southern Illinois Stakeholder Meeting April 23, 2009 Nick Bonvino Executive Consultant Connect SI *NB Consulting,
Experiences with Massive PKI Deployment and Usage Daniel Kouřil, Michal Procházka Masaryk University & CESNET Security and Protection of Information 2009.
Direct in Tennessee Russell B. Leftwich MD Office of eHealth Initiatives, State of Tennessee.
MEDITECH … Direct Messaging John Valutkevich Michael Henricksen
ONE® Mail Training Presentation North York General Hospital North York General Hospital.
ARRA Meaningful Use Update Mount Auburn Hospital Information Systems Update March 2011.
MU Town Hall Meeting MiHIN Direct Presentation Copyright 2013 Michigan Health Information Network 1 December 17, 2013.
California Trust Framework Pilot Request for Funding Informational Webinar 24 June 2013.
Christopher Carr Director of Informatics, RSNA
Provider Directory Strategies John D. Halamka MD March 21, 2011.
ELTSS Alignment to Nationwide Interoperability Roadmap DRAFT: For Stakeholder Consideration in response to public comment.
Electronic Submission of Medical Documentation (esMD) Face to Face Informational Session esMD Requirements, Priorities and Potential Workgroups – 2:00pm.
Florida’s Health Information Exchange and Electronic Health Record Incentive Program CHIPRA Part C Meeting January 18 and 24, 2012 Carolyn Turner and Pam.
Connecticut Ave NW, Washington, DC Understanding Patient Engagement in Stage 2 MU: Direct, HIPAA, VDT, and Patient Engagement.
1101 Connecticut Ave NW, Washington, DC :00 pm EST, January 9, (626)
Connecticut Ave NW, Washington, DC Direct Exchange from Provider to Patient/Consumer ….and Back! David C. Kibbe, MD MBA.
Direct Implementation Perspective 0 Mark Bamberg, Vice President Research & Development MEDfx.
Connecticut Ave NW, Washington, DC September 30, 2014 David C. Kibbe, MD MBA President and CEO, DirectTrust Luis Maas, MD.
Direct Project Scalable Trust and Trust Bundles. 12/06/10 Overview What is Scalable Trust State of Trust Trust Issues Trust Solutions Trust Bundle Demo.
Massachusetts: Transforming the Healthcare Economy John D. Halamka MD CIO, Harvard Medical School and Beth Israel Deaconess Medical Center.
Supporting Meaningful Use Stage 2 Transition of Care Requirements
Centers for Disease Control and Prevention Office of the Associate Director for Communication Electronic Health Records/Meaningful Use and Public Health.
A Primer on Healthcare Information Exchange John D. Halamka MD CIO, Harvard Medical School and Beth Israel Deaconess Medical Center.
NextGen Interoperability – Leading the Charge Presenter – David Venier DISCLAIMER: The views and opinions expressed in this presentation are those of the.
Understanding and Leveraging MU2 Optional Transports Paul M. Tuten, PhD Senior Consultant, ONC Leader, Implementation Geographies Workgroup, Direct Project.
Lecture slides prepared for “Business Data Communications”, 7/e, by William Stallings and Tom Case, Chapter 8 “TCP/IP”.
Meaningful Use Personal Pace Education Module: Transitions of Care.
Electronic Submission of Medical Documentation (esMD) Face to Face Informational Session Charter Discussion – 9:30am – 10:00am October 18, 2011.
ONC HIT Policy Committee Interoperability and HIE Workgroup Panel 3: State/Federal Perspectives August 22, 2014 Jennifer Fritz, MPH Deputy Director Office.
A Robust Health Data Infrastructure P. Jon White, MD Director, Health IT Agency for Healthcare Research and Quality
Connecticut Ave NW, Washington, DC Direct Exchange An Introduction for Providers Engaged in Stage 2 Meaningful Use David.
New Opportunity for Network Value: Using Health IT to Improve Transitions of Care 600 East Superior Street, Suite 404 I Duluth, MN I Ph
Cross Vendor Exchange Testing and Certification Plans April 18, 2013.
NHIN Direct Project Communications Work Group Messages for Physicians August 24, 2010.
HIPAA Business Associates Leadership Group Meeting June 28, 2001.
Cross Vendor Exchange Testing and Certification Plans April 18, 2013 Meaningful Use Stage 2 Exchange Summit Avinash Shanbhag, ONC.
Georgia Health Information Exchange Georgia Rural Health IT Forum January 26, 2012.
NENA Development Conference | October 2014 | Orlando, Florida Security Certificates Between i3 ESInet’s and FE’s Nate Wilcox Emergicom, LLC Brian Rosen.
Exchange: The Central Feature of Meaningful Use Stage Meaningful Use and Health Care Innovation Conference Craig Brammer Office of the National.
An XMPP (Extensible Message and Presence Protocol) based implementation for NHIN Direct 1.
0 Presentation to: Health IT HIPPA Workshop Presented by: Stacey Harris, Director of Health IT Innovation September 26, 2014 Division of Health Information.
Nationwide Health Information Network: Conditions for Trusted Exchange Request For Information (RFI) Steven Posnack, MHS, MS, CISSP Director, Federal Policy.
Chapter 6 – Data Handling and EPR. Electronic Health Record Systems: Government Initiatives and Public/Private Partnerships EHR is systematic collection.
Connecticut Ave NW, Washington, DC David C. Kibbe, MD MBA President and CEO, DirectTrust Senior Advisor, AAFP AMDIS, Boston,
State HIE Program Chris Muir Program Manager for Western/Mid-western States.
HIT Policy Committee NHIN Workgroup Recommendations Phase 2 David Lansky, Chair Pacific Business Group on Health Danny Weitzner, Co-Chair Department of.
1. 2 Overview In Exchange security is managed by assigning permissions in Active Directory Exchange objects are secured with DACL and ACEs Permissions.
1 David C. Kibbe, MD MBA DirectTrust A Discussion About Scalable Trust May 9,
1101 Connecticut Ave NW, Washington, DC :00 pm ET, June 15, (626)
INTRODUCTION: THE FIRST TRY InCommon eduGAIN Policy and Community Working Group.
Identity Proofing, Signatures, & Encryption in Direct esMD Author of Record Workgroup John Hall Coordinator, Direct Project June 13, 2012.
Scalable Trust Community Framework STCF (01/07/2013)
Mariann Yeager, NHIN Policy and Governance Lead (Contractor) Office of the National Coordinator for Health IT David Riley, CONNECT Lead (Contractor) Federal.
Kno2 1 October 22, Agenda Introduction Goal of Pilot Tier Piloting Activity to Pilot Role of Kno2 in the pilot Standards and Technologies Under.
HIT Policy Committee NHIN Workgroup HIE Trust Framework: HIE Trust Framework: Essential Components for Trust April 21, 2010 David Lansky, Chair Farzad.
The State of Florida’s Advances in Supporting the Use of Health IT 2015 HIT Days State Capitol January 26, 2015 Agency for Health Care Administration Secretary.
360Exchange (360X) Project 12/06/12. Reminders / announcements 360X Update CEHRT 2014 / MU2 Transition of Care Requirements 1 Agenda.
 All lines are muted during presentation.  Lines are un-muted during Q&A ◦ If not asking question, please mute your line  *6 to mute your phone  *7.
THE FUTURE OF HEALTHCARE IN WASHINGTON STATE Leveraging the C-CDA for Health Information Exchange.
1 David C. Kibbe, MD MBA DirectTrust Collaborating to Build the Security and Trust Framework for Direct Exchange June 20, 2013.
Pennsylvania Health Information Exchange NJHIMSS - DVHIMSS Enabling Healthcare Transformation Through Information Technology September, 2010.
Connecticut Ave NW, Washington, DC DirectTrust Collaborating to Build the Security and Trust Framework for Direct Exchange.
Executive Summary: eHealth Exchange Hub
Health Information Exchange for Eligible Clinicians 2019
Presentation transcript:

#CONNECT2013 Connecting for Good Loews Coronado Bay Resort, San Diego, California David C. Kibbe, MD MBA President and CEO, DirectTrust David C. Kibbe, MD MBA President and CEO, DirectTrust

#CONNECT2013 Expect Direct! Secure Health Information Exchange at the Dawn of the Health Internet Secure Health Information Exchange at the Dawn of the Health Internet

© 2013 Qualcomm Life. All rights reserved. Mission and Goals DirectTrust.org, Inc. (DirectTrust) is a voluntary, self-governing, non-profit alliance dedicated to the support of Direct exchange of health information at national scale, through the establishment of policies, interoperability requirements, and business practice requirements. Taken together, these create a Security and Trust Framework for the purpose of uniting multiple Direct implementations and their communities, enhancing public confidence in privacy, security, and trust in identity when using Direct. DirectTrust is the recipient of an ONC Cooperative Agreement award in the amount of $280,205 as part of the Exemplar HIE Governance Program. Within this Program, DirectTrust is charged by ONC with further development of the Direct Trusted Agent Accreditation Program, and the establishment of a national trust anchor bundle distribution service for Direct exchange implementers. 3

© 2013 Qualcomm Life. All rights reserved. The problem behind the lack of data liquidity in healthcare -- fragmentation

© 2013 Qualcomm Life. All rights reserved % of physicians and hospitals now use EHRs…yet Not a single EHR is interoperable with another vendor’s product…EPIC literally can’t move data to NextGen except by fax. Nearly 100% of referrals and transitions of care require paper, fax, or mail transmittal of important health information. Specialists report that over 50% of the time they never get information from referring PCPs, and PCPs report that over 50% of the time they never hear anything back from the specialists. I’m sending you Mrs. Smith! La, la, la... I can’t hear you, can’t hear you!

© 2013 Qualcomm Life. All rights reserved. And that’s just the tip of the iceberg… PHRs have languished because patients can’t easily get their data from providers. Payers, e.g. Medicare, spend $$ on mail and fax trying to communicate with providers and beneficiaries. State and federal agencies depend on fax, phone, and mail for most communications.

© 2013 Qualcomm Life. All rights reserved. Stage 2 MU focus is on exchange

© 2013 Qualcomm Life. All rights reserved. Health Information Exchange 101 What’s the status in late 2013? HIE is electronic sharing of health information among varied health care providers and their organizations, while maintaining meaning. HIE types Direct “push” / / point-to-point Exchange / XD* protocols /Enterprise-to- enterprise Data collection, aggregation / central hub & query Data frequently exchanged Any file type, but structured data as HL7 CCD, cCDA Stage 2 MU sets common data set, requires EHRs to certify Direct exchange capability, cCDA capablity.

© 2013 Qualcomm Life. All rights reserved. Only Direct exchange… Is easy, familiar, -based (SMIME/SMTP+PKI). Required by Stage 2 MU of all EHRs by 2014 for both provider-provider and provide-patient data exchange. Uses the Internet natively for point-point exchange between any two addresses.

© 2013 Qualcomm Life. All rights reserved. A deeper dive into Direct: identity assurance is key feature Before Direct users can exchange messages and attachments, they must interact with three entities that serve as “trusted agents,” each of which has separate roles and responsibilities. o A Health Information Service Provider, HISP, handles the encryption and identity validation on behalf of the Direct addressee, assigns accounts and addresses, and arranges for the addressees to be issued an X.509 digital certificate; o A Certificate Authority, CA, issues the X.509 digital certificate to the addressee, along with the public key, relying on the information supplied to it by the; o A Registration Authority, RA, which verifies and proofs the identity of the addressee applying for an X.509 digital certificate. 10

© 2013 Qualcomm Life. All rights reserved. HISP-HISP between EHRs 11 (has been identity vetted, has X.509 Digital certificate bound to address.) (has been identity vetted, has X.509 Digital certificate bound to address.) EHR encryption identity validation

© 2013 Qualcomm Life. All rights reserved. HISP-HISP exchange between EHR and PHR (has been identity vetted, has X.509 Digital certificate bound to address.) (has been identity vetted, has X.509 Digital certificate bound to address.) encryption identity validation 12 EHR PHR

© 2013 Qualcomm Life. All rights reserved. Consider the near future! Any Direct addressee can send/receive data in any format to/from any Direct addressee, securely, over the Internet. Any information available to the patient, e.g. vitals, device results, images, etc., can be made available to providers in near real time. Next generation “medical information homes” have the source of data, and the means of sourcing data, available for the first time. 13

© 2013 Qualcomm Life. All rights reserved. DirectTrust Approach 14 Security & Trust Framework EHNAC- DirectTrust Accreditation Program Trusted Anchor Bundle Distribution The goal is to make it easy and inexpensive for trusted agents, e.g. HISPs, to voluntarily know of and follow the “ rules of the road “ for security and Identity, while also easy and inexpensive to know who else is following them.

© 2013 Qualcomm Life. All rights reserved. Accreditation and Audit 15 DirectTrust is accrediting HISPs, CAs, and RAs In partnership with EHNAC. Look for the EHNAC- DirectTrust seal of accreditation for assurances of best practices for privacy, security, and trust-in-identity. Accreditation status of HISPs, CAs, RAs is always available at

© 2013 Qualcomm Life. All rights reserved. About DirectTrust The ONC is establishing governance mechanisms for nationwide health information exchange, in part through a cooperative agreement with DirectTrust. The Stage 2 MU regulations require eligible providers to engage in health information exchange via standards and in a manner consistent with these governance mechanisms. DirectTrust is a non-profit industry alliance that is supporting Direct exchange adoption and use through policy setting, accreditation, trust anchor distribution, and outreach activities. The AAFP is one of the founding members of DirectTrust. See: information-exchange-governance-entities and also transparency-confidence-direct-exchange). information-exchange-governance-entities transparency-confidence-direct-exchange).

© 2013 Qualcomm Life. All rights reserved. Short lexicon of terms Direct Project A public-private sector initiative sponsored and run by ONC whose aim was to create a simple, secure, and open standard for transport of messages and attachments between health care participants over the Internet, regardless of end-user technology. Direct Standard The outcome of the Direct Project. A set of protocols and specifications, along with a security and trust architecture, for simple, secure, inter-vendor communications over the Internet for use by health care professionals and patients. Direct Message Exchange Use or deployment by individuals or entities of health information exchange utilizing the Direct standard. Also sometimes referred to as Directed “push” exchange, Direct exchange. Direct User or Subscriber An organization or an individual that participates in sending and receiving messages and attachments using technology equipped to do so, e.g an EHR or a web portal, via the Direct standard, and who has the authority to do so.

© 2013 Qualcomm Life. All rights reserved. Resources and additional information DirectTrust website Information on Membership Information on Workgroups and Active Projects DirectTrust Membership List Accreditation Status List Code of Ethics DirectTrust Community X.509 Digital Certificate Policy Federation Agreement Direct Trusted Agent Accreditation Program (DTAAP) Trust Anchor Bundle Website

© 2013 Qualcomm Life. All rights reserved. #CONNECT2013 Thank you