Table of contents exchange of letters with the minister executive summary



Download 5.91 Mb.
View original pdf
Page41/329
Date27.11.2023
Size5.91 Mb.
#62728
1   ...   37   38   39   40   41   42   43   44   ...   329
Report of the COI into the Cyber Attack on SingHealth 10 Jan 2019
12 IT
AND
IT
SECURITY
GOVERNANCE
FOR
SINGHEALTH
114. Relevant to the Inquiry are the structures and processes for IT and IT security governance pertaining to SingHealth. This includes oversight and decision-making for the policies, technical implementation, and IT security risk management.



COI Report – Part II
Page 41 of 425

12.1 Healthcare sector-wide platforms The Healthcare IT Steering
Committee and the Cyber Security Council
115. Of note are two platforms with sector-wide oversight over the development and implementation of IT strategies for the public healthcare sector, namely the Healthcare IT Steering Committee (“HITSC”); and the Cyber Security Council (“CSC”).
116. The HITSC is a strategic-level forum for decisions on broad policies, strategies and issues relating to overall healthcare IT (including but not limited to cybersecurity). The HITSC is chaired by the Permanent Secretary of MOH, and its members include the Managing Director of MOHH (“MOHH MD”) Goh
Aik Guan (“Aik Guan”), Cluster Group CEOs (“GCEOs”). If key cybersecurity issues require discussion and consensus amongst all Clusters at the GCEO levels, they are surfaced to the HITSC for decision.
117. The CSC serves as a forum for discussion on the operational feasibility and implementation of cybersecurity policies and initiatives at the Cluster level. The CSC is chaired by MOHH MD Aik Guan and its members include Cluster
GCIOs or Group Chief Operating Officers (“GCOO”). The CSC discussions are pitched at the operational level, for instance how a measure is to be phased in or how initiatives are to be prioritised. IHiS Cyber Security Governance (“CSG”; see paragraph 79 (pg 29) above) acts as the Secretariat for CSC, and proposes policies and makes recommendations for CSC’s approval.
118. Bruce, who is the MOH CIO and IHiS CEO, is a member of both the
HITSC and CSC.

Download 5.91 Mb.

Share with your friends:
1   ...   37   38   39   40   41   42   43   44   ...   329




The database is protected by copyright ©ininet.org 2024
send message

    Main page