This wiki has undergone a migration to Confluence found Here
Difference between revisions of "February 09, 2016"
Jump to navigation
Jump to search
JohnMoehrke (talk | contribs) |
|||
(5 intermediate revisions by 2 users not shown) | |||
Line 8: | Line 8: | ||
|- | |- | ||
|| x|| [mailto:Kathleen_Connor@comcast.net Kathleen Connor]Security Co-chair | || x|| [mailto:Kathleen_Connor@comcast.net Kathleen Connor]Security Co-chair | ||
− | |||| | + | ||||x|| [mailto:duane.decouteau@gmail.com Duane DeCouteau] |
||||.|| [mailto:Chris.R.Clark@wv.gov Chris Clark] | ||||.|| [mailto:Chris.R.Clark@wv.gov Chris Clark] | ||
|- | |- | ||
Line 27: | Line 27: | ||
|| x|| [mailto:mike.davis@va.gov Mike Davis] | || x|| [mailto:mike.davis@va.gov Mike Davis] | ||
||||.|| [mailto:ioana.singureanu@gmail.com Ioana Singureanu] | ||||.|| [mailto:ioana.singureanu@gmail.com Ioana Singureanu] | ||
− | |||| | + | |||||| [mailto:mjafari@edmondsci.com Mohammed Jafari] |
|- | |- | ||
Line 50: | Line 50: | ||
|- | |- | ||
|| .|| [mailto:oliver@lawless.co Oliver Lawless] | || .|| [mailto:oliver@lawless.co Oliver Lawless] | ||
− | ||||.|| | + | ||||.|| [ |
||||.|| [mailto:serafina.versaggi@gmail.com Serafina Versaggi ] | ||||.|| [mailto:serafina.versaggi@gmail.com Serafina Versaggi ] | ||
|- | |- | ||
Line 59: | Line 59: | ||
|| .|| [mailto:cdoss@ncat.edu Christopher Doss] | || .|| [mailto:cdoss@ncat.edu Christopher Doss] | ||
||||x|| [mailto:kamalinivaidya@systemsmadesimple.com Kamalini Vaidya] | ||||x|| [mailto:kamalinivaidya@systemsmadesimple.com Kamalini Vaidya] | ||
− | ||||.|| [mailto: | + | ||||.|| [mailto: Stephanie Dyke ] |
|- | |- | ||
Line 70: | Line 70: | ||
# ''( 5 min)'' '''Approve [http://wiki.hl7.org/index.php?title=February_02,_2016_Security_Conference_Call February 2, 2016 Security WG Conference Call Minutes] | # ''( 5 min)'' '''Approve [http://wiki.hl7.org/index.php?title=February_02,_2016_Security_Conference_Call February 2, 2016 Security WG Conference Call Minutes] | ||
# ''( 30 min)'' '''March 2016 Security WG Initial Harmonization Proposals''' | # ''( 30 min)'' '''March 2016 Security WG Initial Harmonization Proposals''' | ||
− | *[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Change%20ActConsentDirective,%20ActConsentType%20vocab_20160207190712.doc Changes to SecurityCategoryObservationValue consent directive codes] | + | #*[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Change%20ActConsentDirective,%20ActConsentType%20vocab_20160207190712.doc Changes to SecurityCategoryObservationValue consent directive codes] |
− | *[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Add%20ActUSPrivacyLaw%20to%20v-SECCATOBV_20160207190846.doc Add ActUSPrivacyLaw to v:SecurityCategoryObservationValue] | + | #*[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Add%20ActUSPrivacyLaw%20to%20v-SECCATOBV_20160207190846.doc Add ActUSPrivacyLaw to v:SecurityCategoryObservationValue] |
− | *[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_New%20Obligation%20codes_20160207190923.doc New Obligation Codes] | + | #*[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_New%20Obligation%20codes_20160207190923.doc New Obligation Codes] |
− | *[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Augment%20ProvenanctEvent%20vocabulary_20160207220959.doc Augment ProvenanceEvent Vocabulary] | + | #*[http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Augment%20ProvenanctEvent%20vocabulary_20160207220959.doc Augment ProvenanceEvent Vocabulary] |
# ''( 5 min)'' ''' Privacy and Security by Design PSS discussion''' | # ''( 5 min)'' ''' Privacy and Security by Design PSS discussion''' | ||
# ''( 5 min)'' '''Joint Vocabulary Alignment Update''' - Diana | # ''( 5 min)'' '''Joint Vocabulary Alignment Update''' - Diana | ||
Line 86: | Line 86: | ||
*Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Change%20ActConsentDirective,%20ActConsentType%20vocab_20160207190712.doc Changes to SecurityCategoryObservationValue consent directive codes] | *Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Change%20ActConsentDirective,%20ActConsentType%20vocab_20160207190712.doc Changes to SecurityCategoryObservationValue consent directive codes] | ||
** discussion didn't come to an agreement. | ** discussion didn't come to an agreement. | ||
− | ** Concern about Germany use | + | ** Concern about Germany use case |
** defer approval until people can review | ** defer approval until people can review | ||
*Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Add%20ActUSPrivacyLaw%20to%20v-SECCATOBV_20160207190846.doc Add ActUSPrivacyLaw to v:SecurityCategoryObservationValue] | *Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Add%20ActUSPrivacyLaw%20to%20v-SECCATOBV_20160207190846.doc Add ActUSPrivacyLaw to v:SecurityCategoryObservationValue] | ||
** bring forward codes that are specific in the USA | ** bring forward codes that are specific in the USA | ||
*Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_New%20Obligation%20codes_20160207190923.doc New Obligation Codes] | *Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_New%20Obligation%20codes_20160207190923.doc New Obligation Codes] | ||
− | ** discussion that it is not clear how these obligations are intended to be used. The use | + | ** discussion that it is not clear how these obligations are intended to be used. The use case of sending these kinds of instructions is not clear. The definitions of the obligations given are not consistent with the discussion. |
** Kathleen will provide an updated copy for review | ** Kathleen will provide an updated copy for review | ||
* Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Augment%20ProvenanctEvent%20vocabulary_20160207220959.doc Augment ProvenanceEvent Vocabulary] | * Review [http://www.hl7.org/documentcenter/public/harmonization/2016Mar/initial/2016Mar_HARM_INITIALPROPOSAL_VOCAB_SECURE_kathleen_connor_Augment%20ProvenanctEvent%20vocabulary_20160207220959.doc Augment ProvenanceEvent Vocabulary] | ||
Line 97: | Line 97: | ||
** Need offline review | ** Need offline review | ||
* Need offline review of these for approval next week | * Need offline review of these for approval next week | ||
− | * John can't make the FHIR Security -- will cancel | + | * John can't make the FHIR Security call -- will cancel |
− | * EHR | + | * EHR Joint Vocabulary Alignment meeting was canceled |
** Mike did submit new diagrams | ** Mike did submit new diagrams | ||
− | * | + | * PASS Access Control Conceptual Model |
− | ** | + | ** Response received from Bernd. Need to discuss Bernd's clarification and propose/vote on a resolution at the next Security meeting. |
Latest revision as of 18:31, 16 February 2016
Back to Security Work Group Main Page
Attendees
x | Member Name | x | Member Name | x | Member Name | |||
---|---|---|---|---|---|---|---|---|
x | Kathleen ConnorSecurity Co-chair | x | Duane DeCouteau | . | Chris Clark | |||
x | John MoehrkeSecurity Co-chair | . | Johnathan Coleman | . | Aaron Seib | |||
. | Alexander Mense Security Co-chair | . | Ken Salyards | . | Christopher D Brown TX | |||
. | Trish WilliamsSecurity Co-chair | . | Gary Dickinson | x | Dave Silver | |||
x | Mike Davis | . | Ioana Singureanu | Mohammed Jafari | ||||
x | Suzanne Gonzales-Webb | x | Rob Horn | . | Galen Mulrooney | |||
x | Diana Proud-Madruga | . | Ken Rubin | . | William Kinsley | |||
x | Rick Grow | . | Paul Knapp | . | Debbie Bucci | |||
x | Glen Marshall, SRS | . | Bill Kleinebecker | x | Christopher Shawn | |||
. | Oliver Lawless | . | [ | . | Serafina Versaggi | |||
. | Beth Pumo | . | Russell McDonell | . | Paul Petronelli , Mobile Health | |||
. | Christopher Doss | x | Kamalini Vaidya | . | [mailto: Stephanie Dyke ] |
Agenda DRAFT
- ( 5 min) Roll Call, Agenda Approval
- ( 5 min) Approve February 2, 2016 Security WG Conference Call Minutes
- ( 30 min) March 2016 Security WG Initial Harmonization Proposals
- ( 5 min) Privacy and Security by Design PSS discussion
- ( 5 min) Joint Vocabulary Alignment Update - Diana
- ( 5 min) FHIR Security report out - John / not covered
- ( 5 min) PASS Audit Conceptual Model – Diana
Note that there will be a FHIR Security call at 2pm PT/5pm ET See agenda at FHIR Security Agenda
Minutes
- Approval of Agenda unanimous
- Approval of February 2, 2016 Security WG Conference Call Minutes unanimous
- Review Changes to SecurityCategoryObservationValue consent directive codes
- discussion didn't come to an agreement.
- Concern about Germany use case
- defer approval until people can review
- Review Add ActUSPrivacyLaw to v:SecurityCategoryObservationValue
- bring forward codes that are specific in the USA
- Review New Obligation Codes
- discussion that it is not clear how these obligations are intended to be used. The use case of sending these kinds of instructions is not clear. The definitions of the obligations given are not consistent with the discussion.
- Kathleen will provide an updated copy for review
- Review Augment ProvenanceEvent Vocabulary
- discussion of provenance event codes
- Need offline review
- Need offline review of these for approval next week
- John can't make the FHIR Security call -- will cancel
- EHR Joint Vocabulary Alignment meeting was canceled
- Mike did submit new diagrams
- PASS Access Control Conceptual Model
- Response received from Bernd. Need to discuss Bernd's clarification and propose/vote on a resolution at the next Security meeting.