General Data Protection Regulation (GDPR) Toolkit for Digital Health

R. Hussein, D. Wurhofer, E.-M. Strumegger, A. Stainer-Hochgatterer, S.T. Kulnik, R. Crutzen, J. Niebauer

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The General Data Protection Regulation (GDPR) entered into force on May 25, 2018. Compliance with GDPR is especially relevant to the Digital Health (DH) domain, as it is common to process highly sensitive personal data regarding a person's health. However, GDPR compliance is a very challenging process since it requires implementing several technical and organizational measures to maintain compliance. With the aim to facilitate this process, we reviewed the published best practices in GDPR compliance. Then, we customized the findings to fit into the DH domain and created a toolkit for GDPR implementation and compliance. The Activity Planning Tool (APT) is provided as an example of how this toolkit could be utilized in new application development in mobile health in Austria. In the case of our APT, the toolkit was very helpful in integrating the GDPR technical requirements in addition to creating the corresponding compliance impact assessment, processing agreements, privacy policy, data flowcharts, and compliance checklists. © 2022 International Medical Informatics Association (IMIA) and IOS Press.
Original languageEnglish
Title of host publicationMEDINFO 2021: One World, One Health – Global Partnership for Digital Innovation
Subtitle of host publicationProceedings of the 18th World Congress on Medical and Health Informatics
PublisherIOS Press BV
Pages222-226
Number of pages5
Volume290
ISBN (Electronic)978-1-64368-265-5
ISBN (Print) 978-1-64368-264-8
DOIs
Publication statusPublished - 2022
Event18th World Congress on Medical and Health Informatics: One World, One Health - Global Partnership for Digital Innovation, MEDINFO 2021 - Virtual
Duration: 2 Oct 20214 Oct 2021
https://imia-medinfo.org/medinfo21/

Publication series

NameStudies in Health Technology and Informatics
ISSN (Print)0926-9630
ISSN (Electronic)1879-8365

Conference

Conference18th World Congress on Medical and Health Informatics: One World, One Health - Global Partnership for Digital Innovation, MEDINFO 2021
Abbreviated titleMEDINFO 2021
Period2/10/214/10/21
Internet address

Keywords

  • Consent
  • Data Protection
  • Digital Health
  • Health care
  • Medical informatics
  • Activity planning
  • Application development
  • Best practices
  • Digital health
  • General data protection regulations
  • New applications
  • Organisational
  • Planning tools
  • Regulation compliance
  • Sensitive data
  • adult
  • Austria
  • checklist
  • conference paper
  • data protection
  • human
  • privacy
  • sensitive personal information
  • computer security
  • Computer Security
  • Humans

Classification according to Österreichische Systematik der Wissenschaftszweige (ÖFOS 2012)

  • Not applicable

Applied Research Level (ARL)

  • Not applicable

Research focus/foci

  • Not applicable

Fingerprint

Dive into the research topics of 'General Data Protection Regulation (GDPR) Toolkit for Digital Health'. Together they form a unique fingerprint.

Cite this