Abstract
|
This study examines the IT security governance at ABC (a pseudonym used for privacy reasons), a tertiary hospital within a healthcare cluster, specifically assessing the effectiveness of the ISO 27001 standard in the context of rapid digitalization in healthcare. Employing a mixed-methods approach, including document analysis, interviews, and observations, the research focuses on the institution's response to cybersecurity threats and compliance challenges. The findings highlight notable enhancements in incident management, with a significant reduction in security breaches and improved compliance rates, alongside increased staff awareness regarding cybersecurity. This study underscores the critical role of structured IT security governance in bolstering healthcare cybersecurity and offers actionable insights for similar institutions aiming to navigate digital transformation securely. Tertiary hospitals play a crucial role in the healthcare system, providing specialized care for complex and severe medical conditions that require advanced medical technology and specialized expertise. They serve as referral centers for primary and secondary healthcare facilities, offering comprehensive services such as specialized surgeries, intensive care, and advanced diagnostic procedures. The critical nature of their services makes robust IT security governance essential to protect sensitive patient data, ensure compliance with healthcare regulations, and maintain uninterrupted healthcare delivery.
|
Keywords
|
IT Security Governance, Healthcare, Cybersecurity, ISO 27001, Digital Transformation.
|