De-Identification: Its value to businesses and how to do it right – HITRUST 2019

Featured image

Share this article

De-Identification: Its Value to Businesses and How to do it Right - HITRUST 2019

As part of the HITRUST 2019 conference today, I attended a panel on De-Identification.

Here’s the panel:

De-Identification: Its Value to Businesses and How to do it Right – My Takeaways

De-Identification: Its Value to Businesses and How to do it Right - HITRUST 2019
Here are my takeaways from the panel:

  • De-Identification is a process of removing personally identifiable information from data
  • De-ID is useful for health research
  • when done properly, De-Identified data falls outside the scope of regulations (e.g. GDPR, CA Consumer Privacy Act, Brazil Data Protection Act)
  • Direct Identifiers: Name, address, telephone number, fax #, MR, SSN, email address, photograph., clinical trial record number
  • Quasi-identifiers: sex, age, DOB, zip code, marital status, # of children
  • Direct Identifiers vs Quasi-identifiers are important distinction
  • Risks of re-identification: 1) data risk 2) context
  • What constitutes an expert?: Education, experience, and HITRUST program for de-identification
  • HITRUST De-Identification certifications: Certified De-Identification Associate (CDA) and Certified De-Identification Professional (CDP)
  • There is no universally accepted scoring system
  • There is a HITRUST framework for de-identification
  • “The same data set can be de-identified in different ways.” (Sarah Lyons)
  • Expert Determination Method: A person with appropriate knowledge and experience with generally accepted principles of De-Identification. Also involves a determination that the risk of identification is very small.
  • HITRUST De-ID Framework: Governance, Documentation, Explicit ID of Data Custodian, External or Independent Scrutiny

HITRUST 2019

HITRUST 2019 Conference

HITRUST 2019 positions itself is the most comprehensive and definitive information risk management conference for privacy, security, and compliance professionals.

The conference is held at the Gaylord Texan Resort in Grapevine, Texas.

Try Paubox Email Suite for FREE today.
Author Photo

About the author

Hoala Greevy

Founder of Paubox. Kayak fishing when I can. Native Hawaiian CEO.

Read more by Hoala Greevy

Get started with
end-to-end protection

Bolster your organization’s security with healthcare’s most trusted HIPAA compliant email solution

The #1-rated email encryption 
and security software on G2

G2 Badge: Email Encryption Leader Fall 2022
G2 Badge: Security Best Usability Fall 2022
G2 Badge: Encryption Momentum Leader Fall 2022
G2 Badge: Security Best Relationship Fall 2022
G2 Badge: Security Users Most Likely to Recommend Fall 2022
G2 Badge: Email Gateway Best Relationship Fall 2022
G2 Badge: Email Gateway Best Meets Requirements Fall 2022
G2 Badge - Users Most Likely to Recommend Summer 2022
G2 Badge: Email Gateway Best Results Fall 2022
G2 Badge: Email Gateway Best Usability Fall 2022
G2 Badge: Email Gateway Best Support Fall 2022
G2 Badge: Email Gateway Easiest To Use Fall 2022
G2 Badge: Email Gateway Easiest Setup Fall 2022
G2 Badge: Email Gateway Easiest Admin Fall 2022
G2 Badge: Email Gateway Easiest to do Business with Fall 2022
G2 Badge: Email Gateway Highest User Adoption 2022
G2 Badge: Email Gateway High Performer Fall 2022
G2 Badge: Email Gateway Momentum Leader Fall 2022
G2 Badge: Email Gateway Most Implementable Fall 2022
G2 Badge: Email Gateway Users Most Likely to Recommend Fall 2022