SlideShare a Scribd company logo
Health Information Privacy:
      Asia’s Viewpoint

 Nawanan Theera-Ampornpunt, MD, PhD
   Faculty of Medicine Ramathibodi Hospital
               Mahidol University
Privacy: Why?




          http://www.aclu.org/ordering-pizza
Privacy: Ethical Principles
• Autonomy

• Non-maleficence
Primum non nocere (First, do no harm)
Hippocratic Oath
...



What I may see or hear in the course of
treatment or even outside of the
treatment in regard to the life of men,
which on no account one must spread
abroad, I will keep myself holding such
things shameful to be spoken about.
...




                   http://en.wikipedia.org/wiki/Hippocratic_Oath
UNITED STATES
Levels of U.S. Privacy Laws


       Federal Level



        State Level
Health Information Privacy Laws:
      U.S. Federal Government
• Health Insurance Portability and Accountability
  Act of 1996 (HIPAA)
  – Privacy Rule regulates use & disclosure of protected health
    information held by covered entities
  – Security Rule lays out security safeguards required for
    compliance
      • Administrative safeguards
      • Physical safeguards
      • Technical safeguards
  – (New in HITECH Act of 2009)
     • Breach notification
Health Information Privacy Laws:
             Privacy Rule
Some permitted uses and disclosures
• Treatment, payment, health care operations
  – Quality improvement
  – Competency assurance
  – Medical reviews & audits
  – Insurance functions
  – Business planning & administration
  – General administrative activities
Health Information Privacy Laws:
             U.S. Challenges
•   Conflicts between federal vs. state laws
•   Variations among state laws of different states
•   HIPAA only covers “covered entities”
•   No general privacy laws in place, only a few
    sectoral privacy laws e.g. HIPAA
Health Information Privacy Laws:
       Other Western Countries
• Canada - The Privacy Act (1983), Personal
  Information Protection and Electronic Data Act
  of 2000
• EU Countries - EU Data Protection Directive
• UK - Data Protection Act 1998
• Austria - Data Protection Act 2000
• Australia - Privacy Act of 1988
• Germany - Federal Data Protection Act of 2001
Cloud Computing Policy
Environment (Report by Business Software Alliance)




                 http://portal.bsa.org/cloudscorecard2012/countries.html
THAILAND:
HEALTH INFORMATION PRIVACY
Declaration of Patient’s Rights (1998)
1. Every patient has the basic rights to receive health service as have been legally enacted in the Thai Constitution BE 2540.
2. The patient is entitled to receive full medical services regardless of their status, race, nationality, religion, social standing,
political affiliation sex, age, and the nature of their illness from their medical practitioner.
3. Patients who seek medical services have the rights to receive their complete current information in order to thoroughly
understand about their illness from their medical practitioner. Furthermore, the patient can either voluntarily consent or refuse
treatment from the medical practitioner treating him/her except in case of emergency or life threatening situation.
4. Patients at risk, in critical condition or near death, is entitled to receive urgent and immediate relief from their medical
practitioner as necessary, regardless of whether the patient requests assistance or not.
5. The patient has the rights to know the name-surname and the specialty of the practitioner under whose care he/she is in.
6. It is the right of the patient to request a second opinion from other medical practitioner in other specialties, who is not
involved in the immediate care of him/her as well as the right to change the place of medical service or treatment, as
requested by the patient without prejudice.

7. The patient has the rights to expect that their personal
information are kept confidential by the medical
practitioner, the only exception being in cases with the
consent of the patient or due to legal obligation.
8. The patient is entitled to demand complete current information regarding his role in the research and the risks involved, in
order to make decision to participate in/or withdraw from the medical research being carried out by their health care provider.
9. The patient has the rights to know or demand full and current information about their medical treatment as appeared in the
medical record as requested. With respect to this, the information obtained must not infringe upon other individual's rights.
10. The father/mother or legal representative may use their rights in place of a child under the age of eighteen or who is
physically or mentally handicapped wherein they could not exercise their own rights.
Issued on April 16, 1998 (BE 2541)
Thailand’s Official Information
              Act (1997)
• Ascertains rights of the public to request and
  obtain access to official information in a
  government’s control (including public
  providers)
• Except
  – When disclosure would jeopardize law enforcement
    or may harm others, etc.
  – Disclosure of personal information without consent
    (except otherwise permitted by law)
National Health Act, B.E. 2550 (2007)
Section 7. Personal health information shall be
kept confidential. No person shall disclose it in
such a manner as to cause damage to him or her,
unless it is done according to his or her will, or is
required by a specific law to do so. Provided that,
in any case whatsoever, no person shall have the
power or right under the law on official information
or other laws to request for a document related to
personal health information of any person other
than himself or herself.
Health Information Privacy Laws:
        Thailand’s Challenges
• Official Information Act only covers
  governmental organizations
• “Disclose as a rule, protect as an exception”
  not appropriate mindset for health information
• National Health Act: One blanket provision
  with minimal exceptions: raising concerns about
  enforceability (in exceptional circumstances,
  e.g. disasters)
Health Information Privacy Laws:
        Thailand’s Challenges
• No general data privacy law in place
• Unclear implications from ICT laws (e.g.
  Electronic Transactions Act)
• Governance: No governmental authority
  responsible for oversight, enforcement &
  regulation of health information privacy
  protections
• Policy: No systematic national policy to
  promote privacy protections
Privacy: The Cultural Aspect




                From Flickr by Bikoy (Victor Villanueva)
Privacy: The Cultural Aspect




                      From Flickr by Saikofish
Health Information Privacy Laws:
          Recommendations
• Each country has its unique context, including
  legal systems, national priorities, public
  mindset, and infrastructure
• A comprehensive & systematic approach to
  data privacy and health information privacy is
  still lacking in some countries such as Thailand
• Key issues include enforceable regulations,
  governance, and national policy

More Related Content

What's hot (19)

Healthcare law for Introduction to Health Care
Healthcare law for Introduction to Health CareHealthcare law for Introduction to Health Care
Healthcare law for Introduction to Health Care
 
HIPAA and RHIOs
HIPAA and RHIOsHIPAA and RHIOs
HIPAA and RHIOs
 
Hi103 week 5 chpt 14
Hi103 week 5 chpt 14Hi103 week 5 chpt 14
Hi103 week 5 chpt 14
 
Hipaa overview 073118
Hipaa overview 073118Hipaa overview 073118
Hipaa overview 073118
 
HIPAA
HIPAAHIPAA
HIPAA
 
HIPAA
HIPAAHIPAA
HIPAA
 
HIPAA Compliance
HIPAA ComplianceHIPAA Compliance
HIPAA Compliance
 
Hi103 week 5 chpt 13
Hi103 week 5 chpt 13Hi103 week 5 chpt 13
Hi103 week 5 chpt 13
 
2012 HIPAA Refresher
2012 HIPAA Refresher2012 HIPAA Refresher
2012 HIPAA Refresher
 
HIPAA Audit Implementation
HIPAA Audit ImplementationHIPAA Audit Implementation
HIPAA Audit Implementation
 
Hitech Act
Hitech ActHitech Act
Hitech Act
 
Hipaa
HipaaHipaa
Hipaa
 
HIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability ActHIPPA-Health Insurance Portability and Accountability Act
HIPPA-Health Insurance Portability and Accountability Act
 
UNA HIPAA Training 8-13
UNA HIPAA Training   8-13UNA HIPAA Training   8-13
UNA HIPAA Training 8-13
 
What is hipaa
What is hipaaWhat is hipaa
What is hipaa
 
Manfred 19 8-15 - israeli healthcare system - ukraine
Manfred 19 8-15 - israeli healthcare system - ukraineManfred 19 8-15 - israeli healthcare system - ukraine
Manfred 19 8-15 - israeli healthcare system - ukraine
 
Healthcare It In Israel
Healthcare It In IsraelHealthcare It In Israel
Healthcare It In Israel
 
Annual HIPAA Training
Annual HIPAA TrainingAnnual HIPAA Training
Annual HIPAA Training
 
Hipaa basics pp2
Hipaa basics pp2Hipaa basics pp2
Hipaa basics pp2
 

Viewers also liked

Informatics in Emergency Medicine: A Brief Introduction (Paper)
Informatics in Emergency Medicine: A Brief Introduction (Paper)Informatics in Emergency Medicine: A Brief Introduction (Paper)
Informatics in Emergency Medicine: A Brief Introduction (Paper)Nawanan Theera-Ampornpunt
 
Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...
Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...
Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...Nawanan Theera-Ampornpunt
 
IT Management in Healthcare Organizations - Part 1
IT Management in Healthcare Organizations - Part 1IT Management in Healthcare Organizations - Part 1
IT Management in Healthcare Organizations - Part 1Nawanan Theera-Ampornpunt
 
Quality and Regulatory Compliance in Health Care
Quality and Regulatory Compliance in Health CareQuality and Regulatory Compliance in Health Care
Quality and Regulatory Compliance in Health CareNawanan Theera-Ampornpunt
 

Viewers also liked (6)

Informatics in Emergency Medicine: A Brief Introduction (Paper)
Informatics in Emergency Medicine: A Brief Introduction (Paper)Informatics in Emergency Medicine: A Brief Introduction (Paper)
Informatics in Emergency Medicine: A Brief Introduction (Paper)
 
Sociotechnical Aspect of Health Informatics
Sociotechnical Aspect of Health InformaticsSociotechnical Aspect of Health Informatics
Sociotechnical Aspect of Health Informatics
 
Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...
Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...
Case Studies in Health IT Implementation & Sociotechnical Aspect of Health In...
 
IT in Hospitals
IT in HospitalsIT in Hospitals
IT in Hospitals
 
IT Management in Healthcare Organizations - Part 1
IT Management in Healthcare Organizations - Part 1IT Management in Healthcare Organizations - Part 1
IT Management in Healthcare Organizations - Part 1
 
Quality and Regulatory Compliance in Health Care
Quality and Regulatory Compliance in Health CareQuality and Regulatory Compliance in Health Care
Quality and Regulatory Compliance in Health Care
 

Similar to Health Information Privacy: Asia's Viewpoint

Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Nawanan Theera-Ampornpunt
 
PHIE Privacy Guidelines
PHIE Privacy GuidelinesPHIE Privacy Guidelines
PHIE Privacy GuidelinesRomsty
 
HIPAA Rights Privacy and Enforcements RD.pptx
HIPAA Rights  Privacy and Enforcements RD.pptxHIPAA Rights  Privacy and Enforcements RD.pptx
HIPAA Rights Privacy and Enforcements RD.pptxRAJIV RANJAN DAS
 
What’s Up eDoc?: A Health IT Privacy Primer
What’s Up eDoc?: A Health IT Privacy PrimerWhat’s Up eDoc?: A Health IT Privacy Primer
What’s Up eDoc?: A Health IT Privacy PrimerMaRS Discovery District
 
TrustArc Webinar - Privacy in Healthcare_ Ensuring Data Security
TrustArc Webinar - Privacy in Healthcare_ Ensuring Data SecurityTrustArc Webinar - Privacy in Healthcare_ Ensuring Data Security
TrustArc Webinar - Privacy in Healthcare_ Ensuring Data SecurityTrustArc
 
Health Insurance Portability and Accountability Act of 1996.docx
Health Insurance Portability and Accountability Act of 1996.docxHealth Insurance Portability and Accountability Act of 1996.docx
Health Insurance Portability and Accountability Act of 1996.docxAlesandriaPablo
 
Confidentiality Awareness
Confidentiality AwarenessConfidentiality Awareness
Confidentiality Awarenessitchomecare
 
HIPAA and FDCPA Compliance for Process Servers
HIPAA and FDCPA Compliance for Process ServersHIPAA and FDCPA Compliance for Process Servers
HIPAA and FDCPA Compliance for Process ServersLawgical
 
The Health Insurance Portability And Accountability Act Essay
The Health Insurance Portability And Accountability Act EssayThe Health Insurance Portability And Accountability Act Essay
The Health Insurance Portability And Accountability Act EssayJamie Boyd
 
Mha690 presentation by rachael javidan
Mha690 presentation by rachael javidanMha690 presentation by rachael javidan
Mha690 presentation by rachael javidanRachaelJavidan
 
Health information confidentiality
Health information confidentialityHealth information confidentiality
Health information confidentialityJames Noon
 
Ems.documentation.2010.final
Ems.documentation.2010.finalEms.documentation.2010.final
Ems.documentation.2010.finalJohn Wible
 
Confidentiality and Data Protection
Confidentiality and Data ProtectionConfidentiality and Data Protection
Confidentiality and Data ProtectionEd Horowicz
 

Similar to Health Information Privacy: Asia's Viewpoint (20)

Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
Healthcare Information Privacy & Confidentiality: How To Work Very Well With ...
 
PHIE Privacy Guidelines
PHIE Privacy GuidelinesPHIE Privacy Guidelines
PHIE Privacy Guidelines
 
HIPAA Rights Privacy and Enforcements RD.pptx
HIPAA Rights  Privacy and Enforcements RD.pptxHIPAA Rights  Privacy and Enforcements RD.pptx
HIPAA Rights Privacy and Enforcements RD.pptx
 
What’s Up eDoc?: A Health IT Privacy Primer
What’s Up eDoc?: A Health IT Privacy PrimerWhat’s Up eDoc?: A Health IT Privacy Primer
What’s Up eDoc?: A Health IT Privacy Primer
 
TrustArc Webinar - Privacy in Healthcare_ Ensuring Data Security
TrustArc Webinar - Privacy in Healthcare_ Ensuring Data SecurityTrustArc Webinar - Privacy in Healthcare_ Ensuring Data Security
TrustArc Webinar - Privacy in Healthcare_ Ensuring Data Security
 
Health Insurance Portability and Accountability Act of 1996.docx
Health Insurance Portability and Accountability Act of 1996.docxHealth Insurance Portability and Accountability Act of 1996.docx
Health Insurance Portability and Accountability Act of 1996.docx
 
Hipaa inservice
Hipaa inserviceHipaa inservice
Hipaa inservice
 
HIPAA Privacy & Security
HIPAA Privacy & SecurityHIPAA Privacy & Security
HIPAA Privacy & Security
 
Confidentiality Awareness
Confidentiality AwarenessConfidentiality Awareness
Confidentiality Awareness
 
HIPAA and FDCPA Compliance for Process Servers
HIPAA and FDCPA Compliance for Process ServersHIPAA and FDCPA Compliance for Process Servers
HIPAA and FDCPA Compliance for Process Servers
 
Dustin HIPAA
Dustin HIPAADustin HIPAA
Dustin HIPAA
 
GDPR Presentation
GDPR PresentationGDPR Presentation
GDPR Presentation
 
The Health Insurance Portability And Accountability Act Essay
The Health Insurance Portability And Accountability Act EssayThe Health Insurance Portability And Accountability Act Essay
The Health Insurance Portability And Accountability Act Essay
 
Mha690 presentation by rachael javidan
Mha690 presentation by rachael javidanMha690 presentation by rachael javidan
Mha690 presentation by rachael javidan
 
Health information confidentiality
Health information confidentialityHealth information confidentiality
Health information confidentiality
 
HIPAA Training by UCSD
HIPAA Training by UCSDHIPAA Training by UCSD
HIPAA Training by UCSD
 
Hipaa training
Hipaa trainingHipaa training
Hipaa training
 
Ems.documentation.2010.final
Ems.documentation.2010.finalEms.documentation.2010.final
Ems.documentation.2010.final
 
Hippa training v2
Hippa training v2Hippa training v2
Hippa training v2
 
Confidentiality and Data Protection
Confidentiality and Data ProtectionConfidentiality and Data Protection
Confidentiality and Data Protection
 

More from Nawanan Theera-Ampornpunt

Health Informatics for Health Service Systems (March 11, 2024)
Health Informatics for Health Service Systems (March 11, 2024)Health Informatics for Health Service Systems (March 11, 2024)
Health Informatics for Health Service Systems (March 11, 2024)Nawanan Theera-Ampornpunt
 
Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)
Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)
Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)Nawanan Theera-Ampornpunt
 
Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)
Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)
Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)Nawanan Theera-Ampornpunt
 
Case Study PDPA Workshop (September 15, 2023)
Case Study PDPA Workshop (September 15, 2023)Case Study PDPA Workshop (September 15, 2023)
Case Study PDPA Workshop (September 15, 2023)Nawanan Theera-Ampornpunt
 
Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)
Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)
Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)Nawanan Theera-Ampornpunt
 
Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)
Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)
Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)Nawanan Theera-Ampornpunt
 
Relationship Between Thailand's Official Information Act and Personal Data Pr...
Relationship Between Thailand's Official Information Act and Personal Data Pr...Relationship Between Thailand's Official Information Act and Personal Data Pr...
Relationship Between Thailand's Official Information Act and Personal Data Pr...Nawanan Theera-Ampornpunt
 
Social Media - PDPA: Is There A Way Out? (October 19, 2022)
Social Media - PDPA: Is There A Way Out? (October 19, 2022)Social Media - PDPA: Is There A Way Out? (October 19, 2022)
Social Media - PDPA: Is There A Way Out? (October 19, 2022)Nawanan Theera-Ampornpunt
 
Do's and Don'ts on PDPA for Doctors (May 31, 2022)
Do's and Don'ts on PDPA for Doctors (May 31, 2022)Do's and Don'ts on PDPA for Doctors (May 31, 2022)
Do's and Don'ts on PDPA for Doctors (May 31, 2022)Nawanan Theera-Ampornpunt
 
Telemedicine: A Health Informatician's Point of View
Telemedicine: A Health Informatician's Point of ViewTelemedicine: A Health Informatician's Point of View
Telemedicine: A Health Informatician's Point of ViewNawanan Theera-Ampornpunt
 
การบริหารความเสี่ยงคณะฯ (February 9, 2022)
การบริหารความเสี่ยงคณะฯ (February 9, 2022)การบริหารความเสี่ยงคณะฯ (February 9, 2022)
การบริหารความเสี่ยงคณะฯ (February 9, 2022)Nawanan Theera-Ampornpunt
 
จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)
จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)
จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)Nawanan Theera-Ampornpunt
 
พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)
พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)
พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)Nawanan Theera-Ampornpunt
 
Digital Health Transformation for Health Executives (January 18, 2022)
Digital Health Transformation for Health Executives (January 18, 2022)Digital Health Transformation for Health Executives (January 18, 2022)
Digital Health Transformation for Health Executives (January 18, 2022)Nawanan Theera-Ampornpunt
 
Updates on Privacy & Security Laws (November 26, 2021)
Updates on Privacy & Security Laws (November 26, 2021)Updates on Privacy & Security Laws (November 26, 2021)
Updates on Privacy & Security Laws (November 26, 2021)Nawanan Theera-Ampornpunt
 
Health Informatics for Clinical Research (November 25, 2021)
Health Informatics for Clinical Research (November 25, 2021)Health Informatics for Clinical Research (November 25, 2021)
Health Informatics for Clinical Research (November 25, 2021)Nawanan Theera-Ampornpunt
 
Research Ethics and Ethics for Health Informaticians (November 15, 2021)
Research Ethics and Ethics for Health Informaticians (November 15, 2021)Research Ethics and Ethics for Health Informaticians (November 15, 2021)
Research Ethics and Ethics for Health Informaticians (November 15, 2021)Nawanan Theera-Ampornpunt
 
Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...
Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...
Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...Nawanan Theera-Ampornpunt
 

More from Nawanan Theera-Ampornpunt (20)

Health Informatics for Health Service Systems (March 11, 2024)
Health Informatics for Health Service Systems (March 11, 2024)Health Informatics for Health Service Systems (March 11, 2024)
Health Informatics for Health Service Systems (March 11, 2024)
 
Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)
Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)
Personal Data Protection Act and the Four Subordinate Laws (February 29, 2024)
 
Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)
Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)
Privacy & PDPA Awareness Training for Ramathibodi Residents (October 5, 2023)
 
Case Study PDPA Workshop (September 15, 2023)
Case Study PDPA Workshop (September 15, 2023)Case Study PDPA Workshop (September 15, 2023)
Case Study PDPA Workshop (September 15, 2023)
 
Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)
Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)
Case Studies on Overview of PDPA and its Subordinate Laws (September 15, 2023)
 
Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)
Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)
Ramathibodi Security & Privacy Awareness Training (Fiscal Year 2023)
 
Relationship Between Thailand's Official Information Act and Personal Data Pr...
Relationship Between Thailand's Official Information Act and Personal Data Pr...Relationship Between Thailand's Official Information Act and Personal Data Pr...
Relationship Between Thailand's Official Information Act and Personal Data Pr...
 
Social Media - PDPA: Is There A Way Out? (October 19, 2022)
Social Media - PDPA: Is There A Way Out? (October 19, 2022)Social Media - PDPA: Is There A Way Out? (October 19, 2022)
Social Media - PDPA: Is There A Way Out? (October 19, 2022)
 
Do's and Don'ts on PDPA for Doctors (May 31, 2022)
Do's and Don'ts on PDPA for Doctors (May 31, 2022)Do's and Don'ts on PDPA for Doctors (May 31, 2022)
Do's and Don'ts on PDPA for Doctors (May 31, 2022)
 
Telemedicine: A Health Informatician's Point of View
Telemedicine: A Health Informatician's Point of ViewTelemedicine: A Health Informatician's Point of View
Telemedicine: A Health Informatician's Point of View
 
Meeting Management (March 2, 2022)
Meeting Management (March 2, 2022)Meeting Management (March 2, 2022)
Meeting Management (March 2, 2022)
 
การบริหารความเสี่ยงคณะฯ (February 9, 2022)
การบริหารความเสี่ยงคณะฯ (February 9, 2022)การบริหารความเสี่ยงคณะฯ (February 9, 2022)
การบริหารความเสี่ยงคณะฯ (February 9, 2022)
 
จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)
จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)
จริยธรรมและกฎหมายที่เกี่ยวข้องกับเทคโนโลยีสารสนเทศทางสุขภาพ (February 8, 2022)
 
พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)
พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)
พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) (January 21, 2022)
 
Digital Health Transformation for Health Executives (January 18, 2022)
Digital Health Transformation for Health Executives (January 18, 2022)Digital Health Transformation for Health Executives (January 18, 2022)
Digital Health Transformation for Health Executives (January 18, 2022)
 
Updates on Privacy & Security Laws (November 26, 2021)
Updates on Privacy & Security Laws (November 26, 2021)Updates on Privacy & Security Laws (November 26, 2021)
Updates on Privacy & Security Laws (November 26, 2021)
 
Hospital Informatics (November 26, 2021)
Hospital Informatics (November 26, 2021)Hospital Informatics (November 26, 2021)
Hospital Informatics (November 26, 2021)
 
Health Informatics for Clinical Research (November 25, 2021)
Health Informatics for Clinical Research (November 25, 2021)Health Informatics for Clinical Research (November 25, 2021)
Health Informatics for Clinical Research (November 25, 2021)
 
Research Ethics and Ethics for Health Informaticians (November 15, 2021)
Research Ethics and Ethics for Health Informaticians (November 15, 2021)Research Ethics and Ethics for Health Informaticians (November 15, 2021)
Research Ethics and Ethics for Health Informaticians (November 15, 2021)
 
Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...
Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...
Consumer Health Informatics, Mobile Health, and Social Media for Health: Part...
 

Recently uploaded

A thorough review of supernormal conduction.pptx
A thorough review of supernormal conduction.pptxA thorough review of supernormal conduction.pptx
A thorough review of supernormal conduction.pptxSergio Pinski
 
Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...
Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...
Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...PhRMA
 
End Feel -joint end feel - Normal and Abnormal end feel
End Feel -joint end feel - Normal and Abnormal end feelEnd Feel -joint end feel - Normal and Abnormal end feel
End Feel -joint end feel - Normal and Abnormal end feeldranji1
 
In-service education (Nursing Mangement)
In-service education (Nursing Mangement)In-service education (Nursing Mangement)
In-service education (Nursing Mangement)Monika Kanwar
 
Integrated Neuromuscular Inhibition Technique (INIT)
Integrated Neuromuscular Inhibition Technique (INIT)Integrated Neuromuscular Inhibition Technique (INIT)
Integrated Neuromuscular Inhibition Technique (INIT)Anjali Parmar
 
Cervical screening – taking care of your health flipchart (Vietnamese)
Cervical screening – taking care of your health flipchart (Vietnamese)Cervical screening – taking care of your health flipchart (Vietnamese)
Cervical screening – taking care of your health flipchart (Vietnamese)Cancer Institute NSW
 
CURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptx
CURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptxCURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptx
CURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptxDr KHALID B.M
 
Relationship between vascular system disfunction, neurofluid flow and Alzheim...
Relationship between vascular system disfunction, neurofluid flow and Alzheim...Relationship between vascular system disfunction, neurofluid flow and Alzheim...
Relationship between vascular system disfunction, neurofluid flow and Alzheim...Catherine Liao
 
The hemodynamic and autonomic determinants of elevated blood pressure in obes...
The hemodynamic and autonomic determinants of elevated blood pressure in obes...The hemodynamic and autonomic determinants of elevated blood pressure in obes...
The hemodynamic and autonomic determinants of elevated blood pressure in obes...Catherine Liao
 
linearity concept of significance, standard deviation, chi square test, stude...
linearity concept of significance, standard deviation, chi square test, stude...linearity concept of significance, standard deviation, chi square test, stude...
linearity concept of significance, standard deviation, chi square test, stude...KavyasriPuttamreddy
 
Couples presenting to the infertility clinic- Do they really have infertility...
Couples presenting to the infertility clinic- Do they really have infertility...Couples presenting to the infertility clinic- Do they really have infertility...
Couples presenting to the infertility clinic- Do they really have infertility...Sujoy Dasgupta
 
"Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t...
"Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t..."Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t...
"Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t...Catherine Liao
 
The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...
The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...
The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...Catherine Liao
 
Effects of vaping e-cigarettes on arterial health
Effects of vaping e-cigarettes on arterial healthEffects of vaping e-cigarettes on arterial health
Effects of vaping e-cigarettes on arterial healthCatherine Liao
 
Cardiovascular Physiology - Regulation of Cardiac Pumping
Cardiovascular Physiology - Regulation of Cardiac PumpingCardiovascular Physiology - Regulation of Cardiac Pumping
Cardiovascular Physiology - Regulation of Cardiac PumpingMedicoseAcademics
 
TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...
TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...
TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...kevinkariuki227
 
Retinal consideration in cataract surgery
Retinal consideration in cataract surgeryRetinal consideration in cataract surgery
Retinal consideration in cataract surgeryKafrELShiekh University
 
Hemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.Gawad
Hemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.GawadHemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.Gawad
Hemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.GawadNephroTube - Dr.Gawad
 
Non-Invasive assessment of arterial stiffness in advanced heart failure patie...
Non-Invasive assessment of arterial stiffness in advanced heart failure patie...Non-Invasive assessment of arterial stiffness in advanced heart failure patie...
Non-Invasive assessment of arterial stiffness in advanced heart failure patie...Catherine Liao
 

Recently uploaded (20)

A thorough review of supernormal conduction.pptx
A thorough review of supernormal conduction.pptxA thorough review of supernormal conduction.pptx
A thorough review of supernormal conduction.pptx
 
Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...
Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...
Vaccines: A Powerful and Cost-Effective Tool Protecting Americans Against Dis...
 
End Feel -joint end feel - Normal and Abnormal end feel
End Feel -joint end feel - Normal and Abnormal end feelEnd Feel -joint end feel - Normal and Abnormal end feel
End Feel -joint end feel - Normal and Abnormal end feel
 
In-service education (Nursing Mangement)
In-service education (Nursing Mangement)In-service education (Nursing Mangement)
In-service education (Nursing Mangement)
 
Integrated Neuromuscular Inhibition Technique (INIT)
Integrated Neuromuscular Inhibition Technique (INIT)Integrated Neuromuscular Inhibition Technique (INIT)
Integrated Neuromuscular Inhibition Technique (INIT)
 
Cervical screening – taking care of your health flipchart (Vietnamese)
Cervical screening – taking care of your health flipchart (Vietnamese)Cervical screening – taking care of your health flipchart (Vietnamese)
Cervical screening – taking care of your health flipchart (Vietnamese)
 
CURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptx
CURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptxCURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptx
CURRENT HEALTH PROBLEMS AND ITS SOLUTION BY AYURVEDA.pptx
 
Relationship between vascular system disfunction, neurofluid flow and Alzheim...
Relationship between vascular system disfunction, neurofluid flow and Alzheim...Relationship between vascular system disfunction, neurofluid flow and Alzheim...
Relationship between vascular system disfunction, neurofluid flow and Alzheim...
 
The hemodynamic and autonomic determinants of elevated blood pressure in obes...
The hemodynamic and autonomic determinants of elevated blood pressure in obes...The hemodynamic and autonomic determinants of elevated blood pressure in obes...
The hemodynamic and autonomic determinants of elevated blood pressure in obes...
 
linearity concept of significance, standard deviation, chi square test, stude...
linearity concept of significance, standard deviation, chi square test, stude...linearity concept of significance, standard deviation, chi square test, stude...
linearity concept of significance, standard deviation, chi square test, stude...
 
Couples presenting to the infertility clinic- Do they really have infertility...
Couples presenting to the infertility clinic- Do they really have infertility...Couples presenting to the infertility clinic- Do they really have infertility...
Couples presenting to the infertility clinic- Do they really have infertility...
 
"Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t...
"Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t..."Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t...
"Central Hypertension"‚ in China: Towards the nation-wide use of SphygmoCor t...
 
The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...
The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...
The POPPY STUDY (Preconception to post-partum cardiovascular function in prim...
 
Effects of vaping e-cigarettes on arterial health
Effects of vaping e-cigarettes on arterial healthEffects of vaping e-cigarettes on arterial health
Effects of vaping e-cigarettes on arterial health
 
Cardiovascular Physiology - Regulation of Cardiac Pumping
Cardiovascular Physiology - Regulation of Cardiac PumpingCardiovascular Physiology - Regulation of Cardiac Pumping
Cardiovascular Physiology - Regulation of Cardiac Pumping
 
Scleroderma: Treatment Options and a Look to the Future - Dr. Macklin
Scleroderma: Treatment Options and a Look to the Future - Dr. MacklinScleroderma: Treatment Options and a Look to the Future - Dr. Macklin
Scleroderma: Treatment Options and a Look to the Future - Dr. Macklin
 
TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...
TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...
TEST BANK For Wong’s Essentials of Pediatric Nursing, 11th Edition by Marilyn...
 
Retinal consideration in cataract surgery
Retinal consideration in cataract surgeryRetinal consideration in cataract surgery
Retinal consideration in cataract surgery
 
Hemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.Gawad
Hemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.GawadHemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.Gawad
Hemodialysis: Chapter 2, Extracorporeal Blood Circuit - Dr.Gawad
 
Non-Invasive assessment of arterial stiffness in advanced heart failure patie...
Non-Invasive assessment of arterial stiffness in advanced heart failure patie...Non-Invasive assessment of arterial stiffness in advanced heart failure patie...
Non-Invasive assessment of arterial stiffness in advanced heart failure patie...
 

Health Information Privacy: Asia's Viewpoint

  • 1. Health Information Privacy: Asia’s Viewpoint Nawanan Theera-Ampornpunt, MD, PhD Faculty of Medicine Ramathibodi Hospital Mahidol University
  • 2. Privacy: Why? http://www.aclu.org/ordering-pizza
  • 3. Privacy: Ethical Principles • Autonomy • Non-maleficence Primum non nocere (First, do no harm)
  • 4. Hippocratic Oath ... What I may see or hear in the course of treatment or even outside of the treatment in regard to the life of men, which on no account one must spread abroad, I will keep myself holding such things shameful to be spoken about. ... http://en.wikipedia.org/wiki/Hippocratic_Oath
  • 6. Levels of U.S. Privacy Laws Federal Level State Level
  • 7. Health Information Privacy Laws: U.S. Federal Government • Health Insurance Portability and Accountability Act of 1996 (HIPAA) – Privacy Rule regulates use & disclosure of protected health information held by covered entities – Security Rule lays out security safeguards required for compliance • Administrative safeguards • Physical safeguards • Technical safeguards – (New in HITECH Act of 2009) • Breach notification
  • 8. Health Information Privacy Laws: Privacy Rule Some permitted uses and disclosures • Treatment, payment, health care operations – Quality improvement – Competency assurance – Medical reviews & audits – Insurance functions – Business planning & administration – General administrative activities
  • 9. Health Information Privacy Laws: U.S. Challenges • Conflicts between federal vs. state laws • Variations among state laws of different states • HIPAA only covers “covered entities” • No general privacy laws in place, only a few sectoral privacy laws e.g. HIPAA
  • 10. Health Information Privacy Laws: Other Western Countries • Canada - The Privacy Act (1983), Personal Information Protection and Electronic Data Act of 2000 • EU Countries - EU Data Protection Directive • UK - Data Protection Act 1998 • Austria - Data Protection Act 2000 • Australia - Privacy Act of 1988 • Germany - Federal Data Protection Act of 2001
  • 11. Cloud Computing Policy Environment (Report by Business Software Alliance) http://portal.bsa.org/cloudscorecard2012/countries.html
  • 13. Declaration of Patient’s Rights (1998) 1. Every patient has the basic rights to receive health service as have been legally enacted in the Thai Constitution BE 2540. 2. The patient is entitled to receive full medical services regardless of their status, race, nationality, religion, social standing, political affiliation sex, age, and the nature of their illness from their medical practitioner. 3. Patients who seek medical services have the rights to receive their complete current information in order to thoroughly understand about their illness from their medical practitioner. Furthermore, the patient can either voluntarily consent or refuse treatment from the medical practitioner treating him/her except in case of emergency or life threatening situation. 4. Patients at risk, in critical condition or near death, is entitled to receive urgent and immediate relief from their medical practitioner as necessary, regardless of whether the patient requests assistance or not. 5. The patient has the rights to know the name-surname and the specialty of the practitioner under whose care he/she is in. 6. It is the right of the patient to request a second opinion from other medical practitioner in other specialties, who is not involved in the immediate care of him/her as well as the right to change the place of medical service or treatment, as requested by the patient without prejudice. 7. The patient has the rights to expect that their personal information are kept confidential by the medical practitioner, the only exception being in cases with the consent of the patient or due to legal obligation. 8. The patient is entitled to demand complete current information regarding his role in the research and the risks involved, in order to make decision to participate in/or withdraw from the medical research being carried out by their health care provider. 9. The patient has the rights to know or demand full and current information about their medical treatment as appeared in the medical record as requested. With respect to this, the information obtained must not infringe upon other individual's rights. 10. The father/mother or legal representative may use their rights in place of a child under the age of eighteen or who is physically or mentally handicapped wherein they could not exercise their own rights. Issued on April 16, 1998 (BE 2541)
  • 14. Thailand’s Official Information Act (1997) • Ascertains rights of the public to request and obtain access to official information in a government’s control (including public providers) • Except – When disclosure would jeopardize law enforcement or may harm others, etc. – Disclosure of personal information without consent (except otherwise permitted by law)
  • 15. National Health Act, B.E. 2550 (2007) Section 7. Personal health information shall be kept confidential. No person shall disclose it in such a manner as to cause damage to him or her, unless it is done according to his or her will, or is required by a specific law to do so. Provided that, in any case whatsoever, no person shall have the power or right under the law on official information or other laws to request for a document related to personal health information of any person other than himself or herself.
  • 16. Health Information Privacy Laws: Thailand’s Challenges • Official Information Act only covers governmental organizations • “Disclose as a rule, protect as an exception” not appropriate mindset for health information • National Health Act: One blanket provision with minimal exceptions: raising concerns about enforceability (in exceptional circumstances, e.g. disasters)
  • 17. Health Information Privacy Laws: Thailand’s Challenges • No general data privacy law in place • Unclear implications from ICT laws (e.g. Electronic Transactions Act) • Governance: No governmental authority responsible for oversight, enforcement & regulation of health information privacy protections • Policy: No systematic national policy to promote privacy protections
  • 18. Privacy: The Cultural Aspect From Flickr by Bikoy (Victor Villanueva)
  • 19. Privacy: The Cultural Aspect From Flickr by Saikofish
  • 20. Health Information Privacy Laws: Recommendations • Each country has its unique context, including legal systems, national priorities, public mindset, and infrastructure • A comprehensive & systematic approach to data privacy and health information privacy is still lacking in some countries such as Thailand • Key issues include enforceable regulations, governance, and national policy