{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,10]],"date-time":"2026-06-10T15:48:53Z","timestamp":1781106533378,"version":"3.54.1"},"reference-count":31,"publisher":"IGI Global Scientific Publishing","issue":"4","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014,10,1]]},"abstract":"<p>Information security within healthcare is paramount and telemedicine applications present unique security challenges. Technology is giving rise to new and advanced telemedicine applications and understanding the security threats to these applications is needed to ensure, among other things, the privacy of patient information. This paper proposes a threat table approach to assess security threats pertaining to telemedicine applications. The concept and its usefulness are illustrated using a case study. This case study focuses on the capture and representation of salient security threats in telemedicine. To analyze the security threats to an application, it presents a threat modeling framework utilizing a table driven approach. The study reveals that even in a highly controlled environment with static locations, the security risks posed by telemedicine applications are significant, and that using a threat table approach provides an easy-to-use and effective method for managing these threats.<\/p>","DOI":"10.4018\/ijhisi.2014100102","type":"journal-article","created":{"date-parts":[[2015,2,26]],"date-time":"2015-02-26T15:09:38Z","timestamp":1424963378000},"page":"20-31","source":"Crossref","is-referenced-by-count":9,"title":["A Threat Table Based Assessment of Information Security in Telemedicine"],"prefix":"10.4018","volume":"9","author":[{"given":"John C.","family":"Pendergrass","sequence":"first","affiliation":[{"name":"College of Business Administration, University of Illinois at Chicago, Chicago, IL, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Karen","family":"Heart","sequence":"additional","affiliation":[{"name":"Tagmata Software Security, Chicago, IL, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"C.","family":"Ranganathan","sequence":"additional","affiliation":[{"name":"College of Business Administration, University of Illinois at Chicago, Chicago, IL, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"V. N.","family":"Venkatakrishnan","sequence":"additional","affiliation":[{"name":"Department of Computer Science, University of Illinois at Chicago, Chicago, IL, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"2432","reference":[{"key":"ijhisi.2014100102-0","doi-asserted-by":"crossref","unstructured":"Alberts, C., Dorofee, A., Stevens, J., & Woody, C. (2003). Introduction to the OCTAVE Approach. (Technical report). Pittsburg, PA: Carnegie Mellon Software Engineering Institute. Retrieved August 16, 2014, from http:\/\/resources.sei.cmu.edu\/asset_files\/UsersGuide\/2003_012_001_51556.pdf","DOI":"10.21236\/ADA634134"},{"key":"ijhisi.2014100102-1","doi-asserted-by":"crossref","unstructured":"Alberts, C. J., & Dorofee, A. J. (2001). OCTAVE Method Implementation, Guide Version 2.0: Vol. 12: Asset Profile Workbook. Pittsburg, PA: Carnegie Mellon Software Engineering Institute. Retrieved August 16, 2014, from, http:\/\/www.cert.org\/resilience\/products-services\/octave\/octave-method.cfm","DOI":"10.21236\/ADA634140"},{"key":"ijhisi.2014100102-2","doi-asserted-by":"publisher","DOI":"10.1007\/s10916-010-9449-4"},{"key":"ijhisi.2014100102-3","doi-asserted-by":"publisher","DOI":"10.1016\/S0169-2607(00)00137-1"},{"key":"ijhisi.2014100102-4","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijmedinf.2006.06.002"},{"key":"ijhisi.2014100102-5","first-page":"113","article-title":"A Telemedicine System over the Internet.","author":"Z.Chen","year":"2000","journal-title":"Proceedings of the Sixth Pan-Sydney Workshop on Visualisation"},{"key":"ijhisi.2014100102-6","unstructured":"Curphey, M. (2010). The Start of OWASP \u2013 A True Story. [Web log post] SourceClear. Retrieved on August 25, 2014 from, https:\/\/blog.sourceclear.com\/the-start-of-owasp-a-true-story\/"},{"key":"ijhisi.2014100102-7","doi-asserted-by":"publisher","DOI":"10.1016\/0167-4048(93)90056-B"},{"key":"ijhisi.2014100102-8","doi-asserted-by":"publisher","DOI":"10.1177\/193229681100500331"},{"key":"ijhisi.2014100102-9","doi-asserted-by":"publisher","DOI":"10.1377\/hlthaff.2013.0997"},{"key":"ijhisi.2014100102-10","doi-asserted-by":"publisher","DOI":"10.1002\/asi.23066"},{"key":"ijhisi.2014100102-11","unstructured":"Hernan, S., Lambert, S., Ostwald, T., & Shostack, A. (2006). Uncover Security Design Flaws Using The STRIDE Approach. MSDN Magazine, November. Retrieved December 11, 2012 from, http:\/\/msdn.microsoft.com\/en-us\/magazine\/cc163519.aspx"},{"key":"ijhisi.2014100102-12","doi-asserted-by":"publisher","DOI":"10.1142\/S0218194010004980"},{"key":"ijhisi.2014100102-13","doi-asserted-by":"publisher","DOI":"10.1007\/s10916-013-9929-4"},{"key":"ijhisi.2014100102-14","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2008.9"},{"key":"ijhisi.2014100102-15","unstructured":"Lund, M. S., Hogganvik, I., Seehusen, F., & Stolen, K. (2003). UML profile for security assessment. (Technical report STF40 A03066). Trondheim, Norway: SINTEF Telecom and Informatics."},{"key":"ijhisi.2014100102-16","doi-asserted-by":"publisher","DOI":"10.1109\/PCTHEALTH.2008.4571024"},{"key":"ijhisi.2014100102-17","unstructured":"McCann, E. (2013). Telehealth sees explosive growth. [online news article] Healthcare IT News. Retrieved on August 22, 2014 from, http:\/\/www.healthcareitnews.com\/news\/telehealth-sees-explosive-growth"},{"key":"ijhisi.2014100102-18","unstructured":"Mirembe, D. P. (2006). Design of a Secure Framework for the Implementation of Telemedicine, eHealth, and Wellness Services. Masters thesis, Nijmegen, the Netherlands: Radboud University."},{"key":"ijhisi.2014100102-19","doi-asserted-by":"publisher","DOI":"10.1109\/EMS.2008.83"},{"key":"ijhisi.2014100102-20","doi-asserted-by":"publisher","DOI":"10.1089\/tmj.2006.12.409"},{"key":"ijhisi.2014100102-21","unstructured":"National Library of Medicine, National Institutes of Health. (2012). NLM National Telemedicine Initiative. Retrieved February 21, 2013 from, www.nlm.nih.gov\/research\/telemedinit.html"},{"key":"ijhisi.2014100102-22","year":"1997","journal-title":"For the Record: Protecting Electronic Health Information. Committee on Maintaining Privacy and Security in Health Care Applications of the National Information Infrastructure. Computer Science and Telecommunications Board"},{"key":"ijhisi.2014100102-23","article-title":"Toward a new framework for information security","author":"D. B.Parker","year":"2002","journal-title":"Computer Security Handbook"},{"key":"ijhisi.2014100102-24","author":"F.Swiderski","year":"2004","journal-title":"Threat Modeling"},{"key":"ijhisi.2014100102-25","doi-asserted-by":"publisher","DOI":"10.1109\/HEALTH.2003.1218719"},{"key":"ijhisi.2014100102-26","unstructured":"Wikipedia. (2014). Telemedicine [online encyclopedia]. Retrieved on August 25, 2014 from, http:\/\/en.wikipedia.org\/wiki\/Telemedicine"},{"key":"ijhisi.2014100102-27","doi-asserted-by":"publisher","DOI":"10.1007\/s10916-013-9958-z"},{"key":"ijhisi.2014100102-28","doi-asserted-by":"publisher","DOI":"10.1109\/MCOM.2006.1632651"},{"key":"ijhisi.2014100102-29","doi-asserted-by":"publisher","DOI":"10.1145\/1101908.1101965"},{"key":"ijhisi.2014100102-30","doi-asserted-by":"publisher","DOI":"10.1145\/1968613.1968644"}],"container-title":["International Journal of Healthcare Information Systems and Informatics"],"original-title":[],"language":"ng","link":[{"URL":"https:\/\/www.igi-global.com\/viewtitle.aspx?TitleId=124117","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,1]],"date-time":"2022-06-01T16:16:25Z","timestamp":1654100185000},"score":1,"resource":{"primary":{"URL":"https:\/\/services.igi-global.com\/resolvedoi\/resolve.aspx?doi=10.4018\/ijhisi.2014100102"}},"subtitle":[""],"short-title":[],"issued":{"date-parts":[[2014,10,1]]},"references-count":31,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2014,10]]}},"URL":"https:\/\/doi.org\/10.4018\/ijhisi.2014100102","relation":{},"ISSN":["1555-3396","1555-340X"],"issn-type":[{"value":"1555-3396","type":"print"},{"value":"1555-340X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2014,10,1]]}}}