March 24, 2015 Security WG Conference Call
Attendees
x | Member Name | x | Member Name | x | Member Name | |||
---|---|---|---|---|---|---|---|---|
x | Mike DavisSecurity Co-chair | . | Duane DeCouteau | . | Chris Clark | |||
x | John MoehrkeSecurity Co-chair | . | Johnathan Coleman | . | Aaron Seib | |||
. | Alexander Mense Security Co-chair | . | Ken Salyards | . | Don Jorgenson | |||
. | Trish WilliamsSecurity Co-chair | . | Gary Dickinson | . | Tim McKay | |||
x | Kathleen Connor | . | Ioana Singureanu | . | Mohammed Jafari | |||
x | Suzanne Gonzales-Webb | x | [mailto: Rob Horn] | . | Galen Mulrooney | |||
x | Diana Proud-Madruga | . | Reed Gelzer | x | William Kinsley | |||
x | Rick Grow | . | [mailto: Oliver Lawless] | . | Paul Knapp |
Agenda DRAFT
- (05 min) Roll Call, March 17 Meeting Minutes
- (10 min) FHIM S&P Modeling Project Wiki and Call Logistics - Kathleen
- (10 min) Vocabulary Alignment Project - Diana/Reed
- (30 min) Proposed HL7 Responses to Questions posed in the ONC Nationwide Interoperability Roadmap - Kathleen
- For discussion:
- What security aspects of RESTful services need to be addressed in a standardized manner?
- Ubiquitous, Secure Network Infrastructure E.1 Cybersecurity and E.2 Encryption [p. 55]
- Verifiable Identity and Authentication of All Participants [p. 58]
- (as time allows) FHIR disposition - review/discussion, ongoing agenda item
- (05 min) Other business, action items, and adjournment
Meeting Minutes
Unanimous approval of March 17 meeting minutes
FHIM S&P Modeling Project Wiki - Kathleen Provenance Workflow (in Research)
Vocabulary Alignment Project - Diana
EHR Call,
Status - completed a pass between spread Provenance, EHR, Security linking, mapping done, discovered vocuabulary mapping is 1:1, but in the direction with which you are going 1:many in several cases. Security and Provenance seem to match better together. EHR lifecycle events are not well defined (causing problems ) there are security orphans, which are in EHR but not in lifecycle events. (required vocabulary... );
Security vocabulary is larger than EHR vocabulary; we need to determine
EHR has some security vocabulary - (inconsistent treatment of security, even though they are in the functional model)
- request for comments
- will post latest, request for comments from Security WG
- look for gaps (no gaps found in Provenance, readily easy to map into lifecycle events)
- EHR looking for gaps in Security
- continuing to sociacialize between EHR, Security
- today's all with Galen will review to make sure we are mapping correctly
alignment of vocabulary
Proposed HL7 Responses to Questions posed in the ONC Nationwide Interoperability Roadmap - Kathleen
- For discussion:
- What security aspects of RESTful services need to be addressed in a standardized manner?
- Ubiquitous, Secure Network Infrastructure E.1 Cybersecurity and E.2 Encryption [p. 55]
- Verifiable Identity and Authentication of All Participants [p. 58]
- (as time allows) FHIR disposition - review/discussion, ongoing agenda item