Title: Health Information Technology and Cybersecurity:
1Health Information Technology andCybersecurity
2The Role of the Office of Management and Budget
- The Office of Management and Budget
- Implementation of the Presidents Management
Agenda (PMA) and Development of the Presidents
Budget - Oversee progress of federal agencies, and work
with them on implementation issues - Give input on policy initiatives
- Tie agency budget to performance results
- http//www.whitehouse.gov/omb/ and
http//www.whitehouse.gov/results/
3The Information Policy and Technology (IPT)
Division, and the Office of E-government (E-gov)
- The PMA includes initiatives in 5 areas
- Strategic Management of Human Capital
- Competitive Sourcing
- Improved Financial Performance
- Expanded E-Government
- Budget and Performance Integration
- Each quarter, agencies are evaluated on progress
and status in each of the 5 areas on a scorecard.
- The scorecard is one tool that is used to convey
direction to agencies in the areas of
cybersecurity as well as health IT. -
4Federal Investment in Health IT and Cybersecurity
- Federal Enterprise Architecture (FEA)
- Lines of Business (LOB) help to ensure the
federal government is making wise IT investment
decisions. -
- Systems should be
- Non-duplicative
- Working towards interoperability through use of
open standards - Compliant with law and policy HIPAA, NIST
guidance, OMB budget Guidance, etc. - Analysis is conducted to look for
opportunities to combine systems and business
processes and to deploy common solutions. -
5Federal Lines of Business
Specific e-government initiatives are included
within these Lines of Business. LOB and project
descriptions can be found at http//www.whitehous
e.gov/omb/egov/
6How is Health IT and Cybersecurity Connected?
- For federally owned systems,
- Some important points of intersection include
- Capital Planning requirements OMB guidance
- Federal Information Security Management Act
Compliance NIST guidance, OMB reporting,
Reporting to Congress - Privacy Act Compliance and Reporting
- HIPAA Compliance CMS rules and regulations
- Alignment to the National Health IT Strategic
Framework ONCHIT
7Relationship Between Federal Systems and Private
Sector Systems
- Weve talked mostly about the development of the
federally owned systems - Why should the private sector academia care?
- Common requirements regulation of clinical data
- HIPAA Security Standards
- Medicare Reform, Medicare Part D
- Need for interoperability between systems
- Standards development
- Security requirements to connect to a federal
system (FISMA) - Need to develop tools and processes to protect
privacy and security as new technology is
deployed and information flow becomes easier - Requirements in grant solicitations, contracts,
etc. - Development of the National Health Information
Network - Eventually, we will all be sharing information!
8Executive Order on Health IT
- Presidents Executive Order E.O. 13335
- http//www.whitehouse.gov/news/releases/2004/04/20
040427-4.html - Recognizes the need for an infrastructure to
improve quality of care - Establishes the position of the National
Coordinator - Tasks the new office with creating a framework
- Requires HHS, VA, and DOD to report on possible
approaches - Goal of Electronic Health Records in 10 years
- Result The National Framework
- Some discussion of regional components
- Strategic goals and key actions
- Includes reports from DoD, VA, and OPM
- Provides for collaboration and input from both
the government and the private sector
9Recent Developments
- Office of the National Health Information
Technology Coordinator at the Department of
Health and Human Services - http//www.hhs.gov/healthit/
- The Health IT Framework for Strategic Action
- Listserve
- Updates on the Federal Health Architecture, and
adopted health data standards - Look for updates and future guidance on regional
development - Request for Information released on Monday,
November 15 - Due in 60 days
- Asks for suggestions on how to deploy, operate
and sustain a health information network - Can be submitted by individuals, consortium,
industry anyone!
10Funding Opportunities
- There are plenty of opportunities for research
funding ideas - www.grants.gov
- Can browse by category, find opportunities, and
apply - There are opportunities for different types of
research and training in Heath IT and
cybersecurity some technical, some clinical,
some programmatic. The following slides offer
some more specific information, resources and
programs to generate ideas.
11- Agency for Healthcare Research and Quality at
the Department of Health and Human Services - http//www.ahrq.gov/ and http//www.ahrq.gov/resea
rch/hitfact.htm - Information on some Health IT grants
- Examples of collaborative efforts the
demonstrated operational capability - Recipients of past HIT grants awarded by ARHQ,
listed by state - Also look for general information on increasing
health quality -
12- Center for Medicare and Medicaid Services at
the Department of Health and Human Services - http//www.cms.hhs.gov/
- Information on Medicare Reform Act and HIPAA
- Proposed regulations for Implementing the
Prescription Drug benefit - Information on how to partner with CMS, and how
to get specific training
13- Food and Drug Administration at the Department
of Health and Human Services - http//www.fda.gov and http//www.fda.gov/oc/initi
atives/counterfeit/rfid_cpg.html - Information on Compliance with drug labeling
requirements - Information on use of radiofrequency ID tags
14- National Institute of Science and Technology at
the Department of Commerce - http//www.atp.nist.gov/
- Advanced Technology Program supports high risk
projects in all business sectors including
health care - Information on past grant recipients and past
application procedures
15- National Library of Medicine at the Department
of Commerce - http//www.nlm.nih.gov/grants.html
- Health IT research Development
- Training opportunities for students and
clinicians
16Various Resources
There are many more, but here is a start