Publication type: Conference paper
Type of review: Peer review (abstract)
Title: Systematising IT governance, risk management, and compliance for hospitals : an iterative approach
Authors: Krey, Mike
Proceedings: Clute Institute Academic Conference Proceedings
Page(s): 142
Pages to: 148
Conference details: The Clute Institute International Academic Conference, Las Vegas, USA, 23-25 September 2013
Issue Date: 2013
Publisher / Ed. Institution: Clute Institute for Academic Research
ISSN: 2157-9660
Language: English
Subjects: Hospital; Meta-model; Process model; IT GRC method
Subject (DDC): 004: Computer science
362.11: Hospitals and related institutions
Abstract: Against the background of the current reforms and an aftermath of increasing regulation in the health care sector, hospitals enhance and integrate concepts of IT Governance, Risk, and Compliance (IT GRC). Based on experiences with isolated and often immature partial concepts in these fields, the major challenges for the adoption of IT GRC in hospitals are close-meshed organisational structures, legal restraints, and over the years increased heterogeneous IT systems, which are just a few aspects that make hospitals a sensible field for the implementation and governance of IT. In this paper a method supporting the adoption of integrated IT GRC concepts is developed. The proposed method is comprised of different method elements that support the relevant conceptual, organisational, technical, and cultural aspects of the hospital environment. The method is finally applied under real-world conditions in three different hospitals in Switzerland.
URI: https://digitalcollection.zhaw.ch/handle/11475/15547
Fulltext version: Published version
License (according to publishing contract): Licence according to publishing contract
Departement: School of Management and Law
Organisational Unit: Institute of Business Information Technology (IWI)
Appears in collections:Publikationen School of Management and Law

Files in This Item:
There are no files associated with this item.
Show full item record
Krey, M. (2013). Systematising IT governance, risk management, and compliance for hospitals : an iterative approach [Conference paper]. Clute Institute Academic Conference Proceedings, 142–148.
Krey, M. (2013) ‘Systematising IT governance, risk management, and compliance for hospitals : an iterative approach’, in Clute Institute Academic Conference Proceedings. Clute Institute for Academic Research, pp. 142–148.
M. Krey, “Systematising IT governance, risk management, and compliance for hospitals : an iterative approach,” in Clute Institute Academic Conference Proceedings, 2013, pp. 142–148.
KREY, Mike, 2013. Systematising IT governance, risk management, and compliance for hospitals : an iterative approach. In: Clute Institute Academic Conference Proceedings. Conference paper. Clute Institute for Academic Research. 2013. S. 142–148
Krey, Mike. 2013. “Systematising IT Governance, Risk Management, and Compliance for Hospitals : An Iterative Approach.” Conference paper. In Clute Institute Academic Conference Proceedings, 142–48. Clute Institute for Academic Research.
Krey, Mike. “Systematising IT Governance, Risk Management, and Compliance for Hospitals : An Iterative Approach.” Clute Institute Academic Conference Proceedings, Clute Institute for Academic Research, 2013, pp. 142–48.


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.