Phone: (011) 7541-421, 3409-301, 3409-335, 6547-293, 3409-310
E-mail: Standards sales: prodaja@iss.rs Education: iss-edukacija@iss.rs Information about standards: infocentar@iss.rs
Stevana Brakusa 2, 11030 Beograd
Main menu

SRPS EN ISO 25237:2017

Health informatics - Pseudonymization (ISO 25237:2017)

Dec 25, 2017

General information

60.60     Dec 25, 2017

ISS

I215

European Norm

35.240.80  

English  

Buying

Published

Language in which you want to receive the document.

Scope

ISO 25237:2017 contains principles and requirements for privacy protection using pseudonymization services for the protection of personal health information. This document is applicable to organizations who wish to undertake pseudonymization processes for themselves or to organizations who make a claim of trustworthiness for operations engaged in pseudonymization services.
ISO 25237:2017
- defines one basic concept for pseudonymization (see Clause 5),
- defines one basic methodology for pseudonymization services including organizational, as well as technical aspects (see Clause 6),
- specifies a policy framework and minimal requirements for controlled re-identification (see Clause 7),
- gives an overview of different use cases for pseudonymization that can be both reversible and irreversible (see Annex A),
- gives a guide to risk assessment for re-identification (see Annex B),
- provides an example of a system that uses de-identification (see Annex C),
- provides informative requirements to an interoperability to pseudonymization services (see Annex D), and
- specifies a policy framework and minimal requirements for trustworthy practices for the operations of a pseudonymization service (see Annex E).

Life cycle

NOW

PUBLISHED
SRPS EN ISO 25237:2017
60.60 Standard published
Dec 25, 2017

REVISED BY

PROJECT
prSRPS EN ISO 25237:2023

Related project

Adopted from EN ISO 25237:2017

Adopted from ISO 25237:2017 IDENTICAL