<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Avoid Breach Notification - Experior helps PHI Encryption &#187; SOAP</title>
	<atom:link href="http://www.experiordata.com/blog/tag/soap/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.experiordata.com/blog</link>
	<description>Encrypt your PHI, and avoid breach notification</description>
	<lastBuildDate>Tue, 18 May 2010 04:09:33 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Security for Meaningful Use: Part 1 &#8211; Web services</title>
		<link>http://www.experiordata.com/blog/2009/12/31/security-for-meaningful-use-part-1-web-services/</link>
		<comments>http://www.experiordata.com/blog/2009/12/31/security-for-meaningful-use-part-1-web-services/#comments</comments>
		<pubDate>Thu, 31 Dec 2009 06:48:19 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Regulation]]></category>
		<category><![CDATA[Rulings]]></category>
		<category><![CDATA[Add new tag]]></category>
		<category><![CDATA[Service-oriented architecture]]></category>
		<category><![CDATA[SOAP]]></category>
		<category><![CDATA[Web service]]></category>
		<category><![CDATA[XML]]></category>

		<guid isPermaLink="false">http://www.experiordata.com/blog/?p=343</guid>
		<description><![CDATA[



Image via Wikipedia



Web Services At Forefront

If you intend on implementing electronic records and apply for the Electronic Health Record Incentive Program (EHRIP) you must demonstrate &#8220;meaningful use&#8221; of the electronic health record system. One of the provisions in EHRIP is information sharing. The authors of the EHRIP specifically set out to standardize on two protocols [...]]]></description>
			<content:encoded><![CDATA[<div class="zemanta-img" style="margin: 1em; display: block;">
<div>
<dl class="wp-caption alignright" style="width: 285px;">
<dt class="wp-caption-dt"><a href="http://commons.wikipedia.org/wiki/Image:XML.svg"><img title="A graphical depiction of a very simple xml doc..." src="http://upload.wikimedia.org/wikipedia/commons/thumb/6/68/XML.svg/275px-XML.svg.png" alt="A graphical depiction of a very simple xml doc..." width="275" height="313" /></a></dt>
<dd class="wp-caption-dd zemanta-img-attribution" style="font-size: 0.8em;">Image via <a href="http://commons.wikipedia.org/wiki/Image:XML.svg">Wikipedia</a></dd>
</dl>
</div>
</div>
<h2>Web Services At Forefront</h2>
<p><br class="spacer_" /></p>
<p>If you intend on implementing electronic records and apply for the <a class="zem_slink" title="Electronic health record" rel="wikipedia" href="http://en.wikipedia.org/wiki/Electronic_health_record">Electronic Health Record</a> Incentive Program (EHRIP) you must demonstrate &#8220;meaningful use&#8221; of the electronic health record system. One of the provisions in EHRIP is information sharing. The authors of the EHRIP specifically set out to standardize on two protocols for information sharing:</p>
<ul>
<li><a class="zem_slink" title="SOAP" rel="wikipedia" href="http://en.wikipedia.org/wiki/SOAP">SOAP</a></li>
<li><a class="zem_slink" title="Representational State Transfer" rel="wikipedia" href="http://en.wikipedia.org/wiki/Representational_State_Transfer">REST</a></li>
</ul>
<p>Both of these technologies are know as <a class="zem_slink" title="Web service" rel="wikipedia" href="http://en.wikipedia.org/wiki/Web_service">web services</a>. Essentially, web services provide information sharing capabilities using <a class="zem_slink" title="Data model" rel="wikipedia" href="http://en.wikipedia.org/wiki/Data_model">structured data</a> files called <a class="zem_slink" title="XML" rel="wikipedia" href="http://en.wikipedia.org/wiki/XML">XML</a>. The purpose is to use these <a class="zem_slink" title="Open standard" rel="wikipedia" href="http://en.wikipedia.org/wiki/Open_standard">open standards</a> so that applications developed by different vendors could communicate and share information.</p>
<p><br class="spacer_" /></p>
<h2>Securing Web Services</h2>
<p><br class="spacer_" /></p>
<p>In terms of security it is important to ensure that the transmission between applications using these web services is properly encrypted using SSL <a class="zem_slink" title="Technology" rel="wikinvest" href="http://www.wikinvest.com/industry/Technology">technology</a>. In addition, considerations should be made to implement network and host <a class="zem_slink" title="Intrusion prevention system" rel="wikipedia" href="http://en.wikipedia.org/wiki/Intrusion_prevention_system">intrusion prevention systems</a> to ensure the security and integrity of the systems transmitting the shared information. For example, accepting SOAP requests will require you to set  up a <a class="zem_slink" title="DMZ (computing)" rel="wikipedia" href="http://en.wikipedia.org/wiki/DMZ_%28computing%29">DMZ</a> infrastructure. Servers sitting in the DMZ will need to accept SOAP requests and send them. It is the traffic to and from these servers, and the servers themselves, that need to be protected.</p>
<p><br class="spacer_" /></p>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles by Zemanta</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://www.slideshare.net/rnewton/web-services-hacking-and-hardening">Web Services Hacking And Hardening</a> (slideshare.net)</li>
<li class="zemanta-article-ul-li"><a href="http://devcentral.f5.com/weblogs/macvittie/archive/2009/12/11/the-xml-security-relay-race.aspx">The XML Security Relay Race</a> (devcentral.f5.com)</li>
<li class="zemanta-article-ul-li"><a href="http://ducknetweb.blogspot.com/2009/11/health-it-buzz-hhs-launches-healthcare.html">Health IT Buzz &#8211; HHS Launches Healthcare Blog to Communicate with Dr. Blumenthal</a> (ducknetweb.blogspot.com)</li>
<li class="zemanta-article-ul-li"><a href="http://clinicalit.blogspot.com/2009/12/heres-rule-for-meaningful-use.html">Here&#8217;s the rule for meaningful use</a> (clinicalit.blogspot.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Reblog this post [with Zemanta]" href="http://reblog.zemanta.com/zemified/7993140a-f705-4f45-909d-e89dd1de5bd5/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=7993140a-f705-4f45-909d-e89dd1de5bd5" alt="Reblog this post [with Zemanta]" /></a><span class="zem-script more-related pretty-attribution"><br />
<script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p></span></div>
]]></content:encoded>
			<wfw:commentRss>http://www.experiordata.com/blog/2009/12/31/security-for-meaningful-use-part-1-web-services/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
