• 中国核心期刊(遴选)数据库收录期刊
  • 中文科技期刊数据库收录期刊
  • 中国期刊全文数据库收录期刊
  • 中国学术期刊综合评价数据库统计源期刊等

快速检索引用检索图表检索高级检索

中国医药导刊 ›› 2023, Vol. 25 ›› Issue (8): 788-793.

• 专栏—智慧监管 • 上一篇    下一篇

移动医疗数据安全策略研究

  常媛, 林琳, 潘威, 李银騔, 冀亦默, 徐平洋   

  1. 国家药品监督管理局信息中心, 北京 100044
  • 收稿日期:2023-06-09 修回日期:2023-07-16 出版日期:2023-08-28 发布日期:2023-08-28

Research on Security Strategy of Mobile Medical Data

  1. Center for Information of NMPA, Beijing 100044, China
  • Received:2023-06-09 Revised:2023-07-16 Online:2023-08-28 Published:2023-08-28

摘要: 《药品监管网络安全与信息化建设“十四五”规划》明确指出,借助移动互联网技术,通过 APP、公众号和小程序等多种方式推进监管业务和监管服务方式创新,实现国家、省、市、县各级药品监管部门在监管业务移动互联方面的协同发展。 持续推进“中国药品监管”“化妆品监管”等重点移动应用建设,鼓励各级药品监管部门根据实际应用场景,创新服务内容,提升服务广度,逐步构建全方位、多维度的药品监管移动互联服务新格局。本研究针对数字化转型过程中移动应用数据面临的诸多安全挑战,以医疗行业移动应用为研究对象,以近年来国家针对移动应用数据安全实施的监管动作以及2021年《中华人民共和国数据安全法》明确的安全建设方向作为研究内容,探讨移动应用数据安全建设思路,提出建议思路:一是移动应用数据处理全生命周期进行技术能力建设,重点放在风险评估以及安全防护技术能力上;二是基于《中华人民共和国数据安全法》中数据保护方向进行安全体系建设,重点放在前端监测机制及应急响应能力建设上,以期搭建全面的移动应用数据安全策略。

关键词: font-size:medium, ">数字经济;互联网医疗;医药行业;移动互联网;移动数据安全;安全策略

Abstract: The “14th Five-Year Plan for Drug Regulatory Network Security and Informatization Construction” clearly points out that with the help of mobile Internet technology,to promote innovation of regulatory business and regulatory service through various ways such as APP, public number and small program, and to realize the coordinated development of drug regulatory departments at national, provincial, city, county levels .Continue to promote the construction of key mobile applications such as “China Drug Supervision” and “Cosmetics supervision”. Encourage drug regulatory departments at all levels to innovate service content, improve the breadth of services, and gradually build a new pattern of all-round and multi-dimensional mobile Internet services for drug regulation based on actual application scenarios.Aiming at the security challenges faced by mobile application data in the process of digital transformation, this study takes mobile application in the medical industry as the research object, and the research content covers the national regulatory actions on mobile application data security in recent years and the security construction direction given in the Data Security Law of the People′s Republic of which was promulgated in 2021. This study proposes ideas for the construction of mobile application data security, and puts forward suggestions on two aspects: first, technical capacity building for the whole life cycle of mobile application data processing, focusing on risk assessment and security protection technical capabilities; second, security system construction based on the direction of data protection in the Data Security Law, focusing on front-end monitoring mechanism and emergency response capacity construction. And then build a comprehensive mobile application data security strategy.

Key words: Digital economy, Internet medical, Pharmaceutical industry, Mobile Internet, Mobile data security, Security policy

中图分类号: