Journal article icon

Journal article

Ensuring a safe(r) harbor: excising personally identifiable information from structured electronic health record data

Abstract:
Recent findings have shown that the continued expansion of the scope and scale of data collected in electronic health records are making the protection of personally identifiable information (PII) more challenging and may inadvertently put our institutions and patients at risk if not addressed. As clinical terminologies expand to include new terms that may capture PII (e.g., Patient First Name, Patient Phone Number), institutions may start using them in clinical data capture (and in some cases, they already have). Once in use, PII-containing values associated with these terms may find their way into laboratory or observation data tables via extract-transform-load jobs intended to process structured data, putting institutions at risk of unintended disclosure. Here we aim to inform the informatics community of these findings, as well as put out a call to action for remediation by the community.
Publication status:
Published
Peer review status:
Peer reviewed

Actions

Access Document

Files:
Publisher copy:
10.1017/cts.2021.880

Authors

More by this author
Role:
Author
ORCID:
0000-0002-6840-9756
More by this author
Institution:
University of Oxford
Division:
MSD
Department:
NDORMS
Role:
Author


Publisher:
Cambridge University Press
Journal:
Journal of Clinical and Translational Science More from this journal
Volume:
6
Issue:
1
Pages:
1-3
Article number:
e10
Publication date:
2021-12-09
Acceptance date:
2021-11-29
DOI:
EISSN:
2059-8661


Language:
English
Keywords:
Pubs id:
1242774
Local pid:
pubs:1242774
Deposit date:
2022-03-08
ARK identifier:

Terms of use


Views and Downloads






If you are the owner of this record, you can report an update to it here: Report update to this record

TO TOP