Electronic Laboratory Surveillance:
System Security Functions

Sponsored by the Centers for Disease Control and Prevention
Atlanta, GA, February 28, 1996
Noam H. Arzt, Ph.D.
University of Pennsylvania, Leonard Davis Institute of Health Economics

Introduction

Goals of information security are: Tradeoff: information security and ease of access


Goals of a state-wide Electronic Surveillance System are:


(1) Ernst & Young/Information Week, "2nd Annual Information Security Survey," Sept., 1994.
(2) Lawrence O. Gostin, et al., "Privacy and Security of Personal Information in a New Health Care System," Journal of the American Medical Association, 270(20), Nov. 24, 1993, p 2487.

Methodology


Information Assets


Technical Architecture

Major components of an architecture:


Threat Analysis


Desktop example (7 potential threats in all): Server example (15 potential threats in all): Network example (8 potential threats in all):


Serious Threats and Possible Solutions

An Internet-based, client/server environment typically has these kinds of serious security threats and possible solutions:


Recommendations

An Internet-based, client/server environment typically has these kinds of recommended courses of action to mitigate serious security threats:


Wrap-up


Direct comments and questions to Dr. Noam Arzt, arzt@isc.upenn.edu [2/26/96]
URL: http://www.cip.upenn.edu/cip/cdc/lab/feb28-1996-complete.html