1. A health-information website has many articles on health and medical issues,
ID: 3733482 • Letter: 1
Question
1. A health-information website has many articles on health and medical issues, a chat room where people can discuss health issues with other users, and provisions for people to send questions by email for doctors to answer. You work as an intern for a company hired to do a privacy audit. The audit team will examine the site, find privacy risks (or good privacy protection practices), and make recommendations for changes as needed. Describe at least three things you would look for, explain their significance, and tell what your recommendations would be if you do or do not find them.
Explanation / Answer
As we know the health information site is a highly sensitive content site which might bring some bad reults in case the information present is not correct and effective .For the privacy audit of the main things to consider and the recommendations wil be :
1. User's Personal information should only be accessed by the authorized persons. The questions sent by the users should only be accessible by the doctors from their concerned specialization. It should never be the case that the answering previlages are with all the doctors as it will lead to the confidentiality breach as well as the chances of unappropriate advice may be there.
2. The content uploaded on the health information site should be verified before being public. It should also be checked that who are responsible for uploading the content on the site. In case if the content is coming from the public mediums then there should be a quality check for the correctness and effectiveness of the content before uploading to the public use. The verification shoould be done through the specialized professionals so that the content is trustworthy.
3. The health data should be made available to authorised users only. It should never be shared with any other unauthorized entities such as reseach or advertisement firms. They might release the data to other data recipients including doctors,medical insurance companies, pharmaceutical companies, medical device manufacturing companies, research firms, and non-profit organizations which is the privacy breach.
Thus privacy of the user's data and health data is must to have for a health information site.
Related Questions
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.