Literature Review: Security of Electronic Medical Record Patient Data Based on ISO27001 in Healthcare Facilities

Authors

  • syahfira nur jannah Jannah Program Studi DIII Rekam Medis dan Informasi Kesehatan Institut Teknologi Sains dan Kesehatan RS dr. Soepraoen Kesdam V/BRW Malang
  • Untung Slamet
  • Achmad Jaelani Rusdi

DOI:

https://doi.org/10.51851/jmis.v10i2.680

Keywords:

Data Security, Electronic Medical Records, ISO 27001, Healthcare Facilities

Abstract

Patient data security in electronic medical records (EMR) is a major concern in healthcare facilities. This study aims to analyze EMR data security based on the ISO 27001 standard through a literature review method. Data were collected from various previous studies that discussed aspects of information security in the implementation of EMR. The results of the study indicate that although security mechanisms such as authentication, encryption, and access control have been implemented, weaknesses are still found in the management of access rights, recording user activities, and security policies. Several healthcare facilities have not fully met the ISO 27001 standard, especially in the aspects of risk management documentation and security evaluation. Therefore, it is necessary to improve security policies, train medical personnel, and provide periodic evaluations to ensure better protection of patient data.

Downloads

Published

2025-12-06

How to Cite

Jannah, syahfira nur jannah, Untung Slamet, & Achmad Jaelani Rusdi. (2025). Literature Review: Security of Electronic Medical Record Patient Data Based on ISO27001 in Healthcare Facilities. Jurnal Manajemen Informasi Kesehatan (Health Information Management), 10(2), 247–253. https://doi.org/10.51851/jmis.v10i2.680