90.93 Standard confirmed Mar 10, 2021
CEN
CEN/TC 251 Health informatics
European Norm
35.240.80 IT applications in health care technology
Published
This document is designed to improve the authentication of individual users of health care IT systems, by strengthening the automatic software procedures associated with the management of user identifiers and passwords, without resorting to additional hardware facilities.
This document applies to all information systems (hereafter called systems) within the health care environment that handle or store sensitive person identifiable health information, using passwords as the only means of authenticating the entered user identifier, i.e., verifying the claimed identity of a user. Systems that fall within the scope of this document include for example electronic patient record systems, patient administrative systems and laboratory systems, containing personal health information.
This document does not apply to systems outside the health care environment. Neither does it apply to systems within the health care environment that use other means of identification and authentication, such as smart cards, biometric methods or other technical facilities.
WITHDRAWN
ENV 12251:2000
PUBLISHED
EN 12251:2004
90.93
Standard confirmed
Mar 10, 2021