Issue 24-1, 2025

Review

Risk Analysis of Information Security in Medical Rehabilitation Centers: Problems and Outlook. A Review



* ORCIDTatiana N. Zaytseva, ORCID Kristina M. Baraksanova

Russian Medical Academy of Continuous Professional Education, Moscow, Russia


ABSTRACT

INTRODUCTION. The article discusses the main aspects of information security risks in medical organizations, including medical rehabilitation centers. The team of authors noted a number of problems that may arise in the digital space of the health system. First of all the loss of personal data of patients, the unauthorized access to diagnostic, analytical results and the misuse of treatment and rehabilitation methods.

AIM. To identify particular risks to information security in the sector of digital healthcare.

MATERIALS AND METHODS. The research material included representative databases on PubMed, Google Scholar, CyberLeninka, eLIBRARY.RU. These phrases and words were used as search tools: information security in medicine, information security in rehabilitation, personal data protection, information security in health, telemedicine, and artificial intelligence in medicine.

RESULTS AND DISCUSSION. A team of authors reviewed available scientific sources, systematized and presented a concise overview of the key issues relating to the security of information, the use of information and communication technologies and artificial intelligence in digital healthcare, with particular reference to medical rehabilitation centers. The analysis of the presented scientific and literary data leads to the conclusion that a competent combination of strategies is required to ensure the safety of patients at the level of a medical institution and at the regional and federal levels.

CONCLUSION. The combination of patient safety strategies depends on the specifics of the provision of medical services. The formation of a unified digital medical environment at the national and then international level, with the development of standardized automated workplaces for specialists and compliance with data confidentiality requirements, will significantly enhance the performance of medical institutions. Additionally, it can help strengthen patient’s confidence in the medical services provided.


KEYWORDS: information security, digital healthcare, telemedicine, personal data protection, artificial intelligence

FOR CITATION:

Zaytseva T.N., Baraksanova K.M. Risk Analysis of Information Security in Medical Rehabilitation Centers: Problems and Outlook. A Review. Bulletin of Rehabilitation Medicine. 2025; 24(1):112–119. https://doi.org/10.38025/2078-1962-2025-24-1-112-119 (In Russ.).

Для корреспонденции (EN):

FOR CORRESPONDENCE: Tatiana N. Zaytseva, Е-mail: zaytsevatn@rmapo.ru


References:

  1. Брумштейн Ю.М., Захаров Д.А., Акишкин В.Г. Риски информационной безопасности медучреждений, их специалистов и пациентов. Информационная безопасность регионов. 2013; 1(12): 13–21. [Brumshtein Yu.M., Zakharov D.A., Akishkin V.G. Research into information security of medical institutions, their specialists and patients. Information security of regions. 2013; 1(12): 13–21 (In Russ.).]
  2. Charles P. Pfleeger, Shari Lawrence Pfleeger. Analyzing Computer Security; A Threat/ Vulnerability/ Countermeasure Approach. Pearson Education International; Upper Saddle River, N.J. 2012; 795 p.
  3. Банк данных угроз безопасности информации. Доступно на: https://bdu.fstec.ru/threat (Дата обращения: 17.06.2024). [Data bank of information security threats. Available at: https://bdu.fstec.ru/threat (Accessed: 17.06.2024) (In Russ.).]
  4. INFOWATCH. Аналитика отрасли информационной безопасности. Доступно на: https://www.infowatch.ru/analytics/analitika?page=2 (Дата обращения: 03.06.2024). [INFOWATCH. Information security industry analytics. Available at: https://www.infowatch.ru/analytics/analitika?page=2 (Accessed: 03.06.2024) (In Russ.).]
  5. Datasets. Centre for Health Record Linkage. CHeReL Master Linkage Key. Available at: https://www.cherel.org.au/datasets (Accessed: 31.05.2024).
  6. Демаков В.И., Рерке В.И., Портная Я.А. и др. Об обеспечении информационной безопасности в сфере медицины и актуальности ее изучения в ведомственных вузах. Человеческий капитал. 2021; 4(148): 83–89. https://doi.org/10.25629/HC.2021.04.07 [Demakov V.I., Rerke V.I., Portnaya Y.A. et al. On ensuring information security in the field of medicine and the relevance of its study in departmental universities. Human capital. 2021; 4(148): 83–89. https://doi.org/10.25629/HC.2021.04.07 (In Russ.).]
  7. Sivarajkumar S., Gao F., Denny P. et al. Mining Clinical Notes for Physical Rehabilitation Exercise Information: Natural Language Processing Algorithm Development and Validation Study. JMIR Med Inform. 2024;12: e52289. https://doi.org/10.2196/52289
  8. Сахаров Д.В., Пешков А.И. Нормативно-правовые проблемы безопасности территориально распределенных информационных систем в офтальмологии. Офтальмохирургия. 2022; S4: 132–137. https://doi.org/10.25276/0235-4160-2022-4S-132-137 [Sakharov D.V., Peshkov A.I. Regulatory and legal problems of security of geographically distributed information systems in ophthalmology. Ophthalmosurgery. 2022; S4: 132–137. https://doi.org/10.25276/0235-4160-2022-4S-132-137 (In Russ.).]
  9. Knaup P., Benning N.H., Seitz M.W. et al. eHealth and Clinical Documentation Systems. Stud Health Technol Inform. 2020; 274: 174–188. https://doi.org/10.3233/SHTI200676
  10. Carter A.B., Abruzzo L.V., Hirschhorn J.W. et al. Electronic Health Records and Genomics: Perspectives from the Association for Molecular Pathology Electronic Health Record (EHR) Interoperability for Clinical Genomics Data Working Group. J Mol Diagn. 2022; 24(1): 1–17. https://doi.org/10.1016/j.jmoldx.2021.09.009
  11. Olorunsogo T.O., Ogugua J.O., Muonde M. et al. Environmental factors in public health: A review of global challenges and solutions. World Journal of Advanced Research and Reviews.2024; 21(1): 1453–1466. https://doi.org/10.30574/wjarr.2024.21.1.0176
  12. Варзин С.А., Матвеев В.В. Обеспечение информационной безопасности в системе здравоохранения. Национальная безопасность и стратегическое планирование. 2023; 3(43): 19–56. https://doi.org/10.37468/2307-1400-2024-2023-3-19-56 [Varzin S.A., Matveev V.V. Ensuring information security in the healthcare system. National security and strategic planning. 2023; 3(43): 19–56. https://doi.org/10.37468/2307-1400-2024-2023-3-19-56 (In Russ.).]
  13. Africa Blog. An important next step on our AI journey. (Accessed: 17.06.2024). Available at: https://blog.google/intl/en-africa/products/explore-get-answers/an-important-next-step-on-our-ai-journey/
  14. Majcherek D., Hegerty S.W., Kowalski A.M. et al. Opportunities for healthcare digitalization in Europe: Comparative analysis of inequalities in access to medical services. Health Policy. 2024; 139: 104950. https://doi.org/10.1016/j.healthpol.2023.104950
  15. Li X., Liu S., Lu R. et al. An Efficient Privacy-Preserving Public Auditing Protocol for Cloud-Based Medical Storage System. IEEE J Biomed Health Inform. 2022; 26(5): 2020–2031. https://doi.org/10.1109/JBHI.2022.3140831
  16. Huang K., Zhang X.-s., Mu Y. et al. Bidirectional and Malleable Proof-of-Ownership for Large File in Cloud Storage. In IEEE Transactions on Cloud Computing. 2022; 4(10): 2351–2365. https://doi.org/10.1109/TCC.2021.3054751
  17. Орлова В.В. Оптимизация взаимодействия с пациентами медицинского учреждения на основе развития интернет-коммуникаций. Социальные аспекты здоровья населения. 2014; 6(40): 9. [Orlova V.V. Optimizing interaction with patients of a medical institution based on the development of Internet communications. Social aspects of public health. 2014; 6(40): 9 (In Russ.).]
  18. Журавлев М.С. Правовые аспекты информационной безопасности в телемедицине. Диссертация на соискание ученой степени кандидата юридических наук. Москва. Высшая школа экономики. 2021; 191 [Zhuravlev M.S. Legal aspects of information security in telemedicine. Dissertation for the degree of Candidate of Legal Sciences. Moscow. HSE University. 2021; 191 (In Russ.).]
  19. Марухленко А.Л., Чешин А.В., Алеева С.С. и др. Политика информационной безопасности в цифровом здравоохранении: организационно-правовые аспекты. Вопросы политологии. 2023; 12(100): 6612–6624. https://doi.org/10.35775/PSI.2023.100.12.018 [Marukhlenko A.L., Cheshin A.V., Aleeva S.S. et al. Information security policy in digital health: organizational and legal aspects. Questions of political science. 2023; 12(100): 6612–6624. https://doi.org/10.35775/PSI.2023.100.12.018 (In Russ.).]
  20. Усенков И.А. Стабильность законодательства о телемедицине: актуальные проблемы. Право и политика. 2024; 3: 30–40. https://doi.org/10.7256/2454-0706.2024.3.70044 [Usenkov I.A. Stability of telemedicine legislation: current issue. Law and politics. 2024; 3: 30–40. https://doi.org/10.7256/2454-0706.2024.3.70044 (In Russ.).]
  21. Cybersecurity Threats in Healthcare Organizations: Exposing Vulnerabilities in the Healthcare Information Infrastructure. Available at: https://worldlibraries.dom.edu/index.php/worldlib/article/view/588/678 (Accessed: 31.05.2024).
  22. Chidolue O., Iqbal T. System Monitoring and Data logging using PLX-DAQ for Solar-Powered Oil Well Pumping. 2023 IEEE 13th Annual Computing and Communication Workshop and Conference (CCWC). 8–11 March 2023. Las Vegas. 2023; 0690–0694. https://doi.org/10.1109/CCWC57344.2023.10099099
  23. World Health Organization. Rehabilitation in health system; guide for action. Available at: https://www.who.int/publications/i/item/9789241515986 (Accessed: 31.07.2024).
  24. Kleinitz P., Sabariego C., Llewellyn G. et al. Integrating rehabilitation into health systems: A comparative study of nine middle-income countries using WHO’s Systematic Assessment of Rehabilitation Situation (STARS). PLoS One. 2024; 19(2): e0297109. https://doi.org/10.1371/journal.pone.0297109
  25. Kendall E., Oh S., Amsters, D. et al. HabITec: A Sociotechnical Space for Promoting the Application of Technology to Rehabilitation. Societies. 2019; 9(4): 74. https://doi.org/10.3390/soc9040074
  26. Martineau T., Ozano K., Raven J. et al. Improving health workforce governance: the role of multi-stakeholder coordination mechanisms and human resources for health units in ministries of health. Hum Resour Health. 2022; 20(1): 47. https://doi.org/10.1186/s12960-022-00742-z
  27. Monoscalco L., Simeoni R., Maccioni G. et al. Information Security in Medical Robotics: A Survey on the Level of Training, Awareness and Use of the Physiotherapist. Healthcare (Basel). 2022; 10(1): 159. https://doi.org/10.3390/healthcare10010159
  28. Cingolani M., Scendoni R., Fedeli P. et al. Artificial intelligence and digital medicine for integrated home care services in Italy: Opportunities and limits. Front Public Health. 2023; 10: 1095001. https://doi.org/10.3389/fpubh.2022.1095001
  29. Jleli M., Samet B., Dutta A.K. Artificial Intelligence-driven Remote Monitoring Model for Physical Rehabilitation. Journal of Disability Research. 2024; 3(1). https://doi.org/10.57197/JDR-2023-0065
  30. Прончев Г.Б. О проблемах информационной безопасности использования информационно-коммуникационных технологий и искусственного интеллекта в цифровом здравоохранении. Социально-гуманитарные знания. 2022; 2: 100–107. https://doi.org/10.34823/SGZ.2022.2.51777 [Pronchev G.B. On the problems of information security in the use of information and communication technologies and artificial intelligence in digital health. Social and humanitarian knowledge. 2022; 2: 100–107. https://doi.org/10.34823/SGZ.2022.2.51777 (In Russ.).]
  31. Murdoch B. Privacy and artificial intelligence: challenges for protecting health information in a new era. BMC Med Ethics. 2021; 22(1): 122. https://doi.org/10.1186/s12910-021-00687-3
  32. European Parlament. Available at: https://www.europarl.europa.eu/portal/en (Accessed: 14.06.2024).
  33. Federspiel F., Mitchell R., Asokan A. et al. Threats by artificial intelligence to human health and human existence. BMJ Global Health. 2023; 8(5): e010435. https://doi.org/10.1136/bmjgh-2022-010435
  34. Agboola S.O., Bates D.W., Kvedar J.C. Digital Health and Patient Safety. JAMA. 2016; 315(16): 1697–1698. https://doi.org/10.1001/jama.2016.2402
  35. GitHub. CBDRH Health Data Science Datathon 2023. Available at: https://cbdrh-hds-datathon-2023.github.io/ (Accessed: 14.06.2024).
  36. Musselman K.E., Shah M., Zariffa, J. Rehabilitation technologies and interventions for individuals with spinal cord injury: Translational potential of current trends. J. Neuroeng. Rehabil. 2018; 15: 40. https://doi.org/10.1186/s12984-018-0386-7
  37. Boot F.H., Owuor J., Dinsmore J. et al. Access to assistive technology for people with intellectual disabilities: a systematic review to identify barriers and facilitators. J. Intell. Disabil. Res. 2018; 62(10): 900–921. https://doi.org/10.1111/jir.12532
  38. Uniform Data System. Available at: https://www.udsmr.org/products/inpatient-rehab (Accessed: 14.06.2024).
  39. Canadian Institute for Health Information. (Accessed: 14.06.2024). Available at: https://www.canada.ca/en/institutes-health-research/search.html?cdn=irsccihr&st=s&num=10&langs=eng&st1rt=0&s5bm3ts21rch=x&q=NRS#wb-land
  40. Government of Canada. Public release of clinical information: guidance document. (Accessed: 14.06.2024). Available at: https://www.canada.ca/en/health-canada/services/drug-health-product-review-approval/profile-public-release-clinical-information-guidance/document.html
  41. Brouns B., Meesters J.J.L., Wentink M.M. et al. Why the uptake of eRehabilitation programs in stroke care is so difficult-a focus group study in the Netherlands. Implement Sci. 2018; 13(1): 133. https://doi.org/10.1186/s13012-018-0827-5
  42. Svenskt Register for Rehabiliteringsmedicin. Available at: https://svereh.registercentrum.se/ (Accessed: 13.06.2024).
  43. UK ROC. UK Rehabilitation Outcomes Collaborative. Available at: https://www.ukroc.org/ (Accessed: 14.06.2024).
  44. Mousavi Baigi S.F., Sarbaz M., Sobhani-Rad D. et al. Comparative Study of Rehabilitation Information Systems in 8 Countries: A Literature Review. Iranian Rehabilitation Journal. 2022; 20(4): 1–16. http://dx.doi.org/10.32598/irj.21.1.1766.1



Creative Commons License
The content is available under the Creative Commons Attribution 4.0 License.

©2025 Tatiana N. Zaytseva, Kristina M. Baraksanova


This is an open article under the CC BY 4.0 license. Published by the National Medical Research Center for Rehabilitation and Balneology.