1 David C. Kibbe, MD MBA DirectTrust A Discussion About Scalable Trust May 9, 2013 1.

Slides:



Advertisements
Similar presentations
Health Information Technology and Privacy: Is There a Path to Consensus? February 29, 2008 Jodi. G. Daniel, J.D., M.P.H. Director, Office of Policy and.
Advertisements

AFACT eCOO WG interim meeting - Conference Call 1st March of 2011 Mahmood Zargar eCOO Experiences and Standards.
#CONNECT2013 Connecting for Good Loews Coronado Bay Resort, San Diego, California David C. Kibbe, MD MBA President and CEO, DirectTrust David C. Kibbe,
Policy interoperability in electronic signatures Andreas Mitrakas EESSI International event, Rome, 7 April 2003.
Identity Federation Rules and Process Linda Elliott President, PingID Network Electronic Authentication Partnership Washington, DC February 12, 2004.
Certificate Interoperability S&I Framework Initiative Final Report August 17, 2011.
1101 Connecticut Ave NW, Washington, DC :00 pm EST, January 9, (626)
Helena Sims NACHA – The Electronic Payments Association Overview of The Electronic Authentication Partnership Tenth Federal & Higher Education PKI Coordination.
Connecticut Ave NW, Washington, DC Direct Exchange from Provider to Patient/Consumer ….and Back! David C. Kibbe, MD MBA.
1101 Connecticut Ave NW, Washington, DC :00 pm EDT, July 11, (773)
HIT Policy Committee Privacy and Security Tiger Team Deven McGraw, Chair Paul Egerman, Co-Chair Certificate Authority- Provider Authentication Recommendations.
Connecticut Ave NW, Washington, DC September 30, 2014 David C. Kibbe, MD MBA President and CEO, DirectTrust Luis Maas, MD.
Direct Project Scalable Trust and Trust Bundles. 12/06/10 Overview What is Scalable Trust State of Trust Trust Issues Trust Solutions Trust Bundle Demo.
U.S. Environmental Protection Agency Central Data Exchange EPA E-Authentication Pilot NOLA Network Node Workshop February 28, 2005.
Centers for Disease Control and Prevention Office of the Associate Director for Communication Electronic Health Records/Meaningful Use and Public Health.
Privacy and Security in the Direct Context Session 6 April 12, 2010.
1101 Connecticut Ave NW, Washington, DC :00 pm EDT, October 3, (626)
ONC HIT Policy Committee Interoperability and HIE Workgroup Panel 3: State/Federal Perspectives August 22, 2014 Jennifer Fritz, MPH Deputy Director Office.
Query Health Business Working Group Kick-Off September 8, 2011.
Connecticut Ave NW, Washington, DC Direct Exchange An Introduction for Providers Engaged in Stage 2 Meaningful Use David.
Connecticut Ave NW, Washington, DC HISP Policy “HP” 1.0 Overview Policy Document available at DirectTrust.Org Presented.
HIT Policy Committee Briefing on the ONC Agenda
Georgia Health Information Exchange Georgia Rural Health IT Forum January 26, 2012.
WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ Identity and Privacy: the.
HIT Policy Committee Nationwide Health Information Network Governance Workgroup Recommendations Accepted by the HITPC on 12/13/10 Nationwide Health Information.
NENA Development Conference | October 2014 | Orlando, Florida Security Certificates Between i3 ESInet’s and FE’s Nate Wilcox Emergicom, LLC Brian Rosen.
Exchange: The Central Feature of Meaningful Use Stage Meaningful Use and Health Care Innovation Conference Craig Brammer Office of the National.
TFTM Interim Trust Mark/Listing Approach Paper Analysis of Current Industry Trustmark Programs and GTRI PILOT Approach Discussion Deck TFTM Committee.
Interoperability Updates -National Interoperability Roadmap 8/20/2014 Erica Galvez, ONC Interoperability Portfolio Manager.
S&I Framework Architecture Refinement & Management (ARM) 01/07/2013.
Nationwide Health Information Network: Conditions for Trusted Exchange Request For Information (RFI) Steven Posnack, MHS, MS, CISSP Director, Federal Policy.
Standards in the world of E-business Harm Jan van Burg Ministry of Finance The Netherlands UN/CEFACT Vice Chair for international cooperation.
1 EAP and EAI Alignment: FiXs Pilot Project December 14, 2005 David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
Identity Ecosystem Framework and Charter Gap Analysis.
Connecticut Ave NW, Washington, DC David C. Kibbe, MD MBA President and CEO, DirectTrust Senior Advisor, AAFP AMDIS, Boston,
State HIE Program Chris Muir Program Manager for Western/Mid-western States.
Interoperability Framework Overview Health Information Technology (HIT) Standards Committee June 24, 2010 Presented by: Douglas Fridsma, MD, PhD Acting.
HIT Policy Committee NHIN Workgroup Recommendations Phase 2 David Lansky, Chair Pacific Business Group on Health Danny Weitzner, Co-Chair Department of.
HEPKI-PAG Policy Activities Group David L. Wasley University of California.
HIT Policy Committee Information Exchange Workgroup NwHIN Conditions for Trusted Exchange Request For Information (RFI) May 18,
National Quality Infrastructure TRTA3 Approach
1101 Connecticut Ave NW, Washington, DC :00 pm ET, July 10, (626)
January 26, 2007 State Alliance for e-Health January 26, 2007 Robert M. Kolodner, MD Interim National Coordinator Office of the National Coordinator for.
1101 Connecticut Ave NW, Washington, DC :00 pm ET, June 15, (626)
The European Union Initiative for an International Code of Conduct on Space Activities A Model for Soft Law in Outer Space? Jean-François Mayence, LLM.
Identity Proofing, Signatures, & Encryption in Direct esMD Author of Record Workgroup John Hall Coordinator, Direct Project June 13, 2012.
NATIONWIDE HEALTH INFORMATION NETWORK GOVERNANCE Doug Fridsma Director, Office of Interoperability and Standards.
Break out Session 3: Promising Practices for Implementing Blue Button National Association For Trusted Exchange (NATE) PHR Ignite Pilot HHS Auditorium.
Scalable Trust Community Framework STCF (01/07/2013)
1 Designing a Privacy Management System International Security Trust & Privacy Alliance.
HIT Policy Committee NHIN Workgroup HIE Trust Framework: HIE Trust Framework: Essential Components for Trust April 21, 2010 David Lansky, Chair Farzad.
RTI International RTI International is a trade name of Research Triangle Institute. Health IT Safety Webinar Series A Roadmap for a National.
1 Copyright © International Security, Trust & Privacy Alliance -All Rights Reserved Making Privacy Operational International Security, Trust.
Bringing Health Information to Life DAVID BLUMENTHAL, MD, MPP National Coordinator of Health Information Technology US Department of Health & Human Services.
Transforming Government Federal e-Authentication Initiative David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide Policy.
HIT Policy Committee Meeting Nationwide Health Information Network Governance June 25, 2010 Mary Jo Deering, PhD ONC, Office of Policy and Planning NHIN.
Identity Federations: Here and Now David L. Wasley Thomas Lenggenhager Peter Alterman John Krienke.
Configuring Electronic Health Records Privacy and Security in the US Lecture b This material (Comp11_Unit7b) was developed by Oregon Health & Science University.
EGI-InSPIRE RI EGI EGI-InSPIRE RI Establishing Identity in EGI the authentication trust fabric of the IGTF and EUGridPMA.
Federated Identity Management for Scientific Collaborations The Common Vision David Kelsey (STFC) 3 Nov 2011.
Governance Workgroup Recommendations on Scope of Nationwide Health Information Network Governance Functions John Lumpkin, MD, MPH, Chair Robert Wood Johnson.
Health IT Product Information and Disclosures Under the 2015 Edition Final Rule Joint Health IT Policy and Standards Committee Certified Technology Comparison.
An Unprecedented Opportunity: Using Federal Stimulus Funds to Advance Health IT in California Testimony of Sam Karp, Vice President of Programs California.
Harmonised use of accreditation for assessing the competence of various Conformity Assessment Bodies Dr Andreas Steinhorst, EA ERA workshop 13 April 2016,
1 David C. Kibbe, MD MBA DirectTrust Collaborating to Build the Security and Trust Framework for Direct Exchange June 20, 2013.
Connecticut Ave NW, Washington, DC DirectTrust Collaborating to Build the Security and Trust Framework for Direct Exchange.
Electronic Case Reporting Update
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
HIMSS National Conference New Orleans Convention Center
Appropriate Access InCommon Identity Assurance Profiles
Presentation transcript:

1 David C. Kibbe, MD MBA DirectTrust A Discussion About Scalable Trust May 9,

2 Office of the National Coordinator for Health Information Technology Mission and Goals – DirectTrust.org, Inc. (DirectTrust) is a voluntary, self- governing, non-profit trade alliance dedicated to the support of Directed exchange of health information, and to the growth of Directed exchange at national scale, through the establishment of policies, interoperability requirements, and business practice requirements that will enhance public confidence in privacy, security, and trust in identity. The latter, taken together, will create a Security and Trust Framework for the purpose of bridging multiple communities of trust. 2 DirectTrust Charter

3 Office of the National Coordinator for Health Information Technology Components 3 X.509 Certificate Policy Established Dec Accreditation Program Feb Accreditation Program Feb ONC Coop Agreement Award Mar ONC Coop Agreement Award Mar Trusted Anchor Bundle Distribution Service May 2013 Trusted Anchor Bundle Distribution Service May 2013 Technical definition of HISP-HISP trust = mutual exchange and inclusion of one HISP’s trust anchors in another HISP’s trust store To scale, policies and practices associated with the HISP, CA, and RA anchor certificate must be transparently known Scalable Trust Build Out bundles.directtrust.org ehnac.org/accreditation-programs/program-dtaapdirecttrust.org/digital-certificate-policy/

4 Security & Trust Framework Trusted Anchor Bundle Distribution EHNAC- DirectTrust Accreditation Program 4 The goal is to make it easy and inexpensive for trusted agents in Direct to voluntarily know of and follow the “ rules of the road ” while also easily and inexpensively knowing who else is following them. DirectTrust Approach Office of the National Coordinator for Health Information Technology

5 Non-profit, competitively neutral, self-regulatory entity created by and for Direct community participants. Establishing and maintaining a national Security and Trust Framework ( “ DirectTrust Framework ” ) in support of Directed exchange. – A set of technical, legal, and business standards for Directed exchange – Expressed as policies and best practices recommendations, which members of DirectTrust agree to follow, uphold, and enforce. – Setting the “ rules of the road ” for scalable trust. Leveraging the DirectTrust Framework for a Direct Trusted Agent Accreditation Program, DTAAP, with EHNAC, for HISPs, CAs, and RAs. Distributing trusted anchor bundles to accredited HISPs, CAs, and RAs for federation within the “ circle of trust. ” Complementary and subject to, as well as supportive of, the governance rules, regulations, and best practices for the Direct Project and the NwHIN, promulgated by HHS and ONC, and the mandates of the HITECH act. 5 DirectTrust Summary