Risk Assessment in the Life Cycle of Electronic Medical Record System Development


Assasmen Risiko Dalam Siklus Hidup Pengembangan Sistem Rekam Medis Elektronik


  • (1) * Kori Puspita Ningsih            Universitas Jenderal Achmad Yani Yogyakarta  
            Indonesia

  • (2)  Sugeng Santoso            Universitas Jenderal Achmad Yani Yogyakarta  
            Indonesia

  • (3)  Zakharias Kurnia Purbobinuko            Universitas Jenderal Achmad Yani Yogyakarta  
            Indonesia

  • (4)  Tika Sari Dewi            Universitas Jenderal Achmad Yani Yogyakarta  
            Indonesia

  • (5)  Aris Wahyu Murdiyanto            Universitas Jenderal Achmad Yani Yogyakarta  
            Indonesia

    (*) Corresponding Author

Abstract

The Indonesian government mandated PMK 24 of 2022 concerning Medical Records as a challenge for health service facilities in Indonesia to develop Electronic Medical Records (EMR). Risk management plays an important role in every stage of the system development life cycle (SDLC). Risk assessment is the first stage in the risk management method. This research aims to explore risks in RME development in an effort to determine risk mitigation for RME development in the SDLC framework. The results of this research show the identification of risks based on hardware, software, vulnerability to technological change, vulnerability to instability in technology supply, project failure,regulatory and compliance impact. These categories of risks are outlined in the SDLC framework including the initiation, development, implementation, maintenance and disposal phases. Next, probability and impact measurements are carried out, to analyze the level of risk with low, medium and high determinants. The existence of this risk level makes it easier for stakeholders to identify appropriate controls to reduce or eliminate risks during the risk mitigation process. The output of this research is presented in the form of a risk register. The conclusion of this research shows that risks in high determinants require mitigation efforts from the aspects of regulations, infrastructure and human resources.

Downloads

Download data is not yet available.

References

Aisyah, A. P., & Dahlia, L. (2022). Enterprise Risk Management Berdasarkan ISO 31000 Dalam Pengukuran Risiko Operasional pada Klinik Spesialis Esti. Jurnal Akuntansi Dan Manajemen, 19(02), 78-90. https://doi.org/10.36406/ jam.v19i02.483
Ajami, S., Ketabi, S., Isfahani, S., & Heidari, A. (2011). Readiness Assessment of Electronic Health Records Implementation. Acta Informatica Medica, 19(4), 224. https:// doi.org/10.5455/aim.2011.19.224-227
Alshamrani, A., & Bahattab, A. (2015). A Comparison Between Three SDLC Models Waterfall Model, Spiral Model, and Incremental/Iterative Model. IJCSI International Journal of Computer Science Issues, 12(1), 106-111. https:// www.academia.edu/10793943/A_ Comparison_Between_Three_SDLC_ Models_Waterfall_Model_Spiral_ Model_and_Incremental_Iterative_ Model
Aswati, S., Ramadhan, M. S., Firmansyah,
A. U., & Anwar, K. (2017). Studi Analisis Model Rapid Application Development Dalam Pengembangan Sistem Informasi. Jurnal Matrik, 16(2),
20. https://doi.org/10.30812/matrik. v16i2.10

Budiyanti, R. T., Herlambang, P. M., & Nandini, N. (2019). Tantangan Etika dan Hukum Penggunaan Rekam Medis Elektronik dalam Era Personalized Medicine. Jurnal Kesehatan Vokasional, 4(1), 49. https://doi. org/10.22146/jkesvo.41994
Dwi Septa Risnanda, D., Rosmawati, E., & Hakim, A. (2023). Penerapan Manajemen Risiko Usaha Mikro Kecil dan Menengah di Desa Pisang Sambo. Abdima Jurnal Pengabdian Mahasiswa, 2(1), 579-587.
Dwiprahasto, R. M. & I. (2019). evaluasi Implementasi Manajemen Risiko Untuk Meningkatkan patiet Safety di Laboratorium Puskesmas Kecamatan Duren Sawit. Universitas Gadjah mada.
Eka Wilda Faida, A. A. (2021). Analisis Kesiapan Implementasi Rekam Medis Elektronik dengan Pendekatan DOQ-IT ( Doctor’s Office Quality-Information Technology ). Jurnal Manajemen Informasi Kesehatan Indonesia, 9.
Fachrezi, M. I. (2021). Manajemen Risiko Keamanan Aset Teknologi Informasi Menggunakan Iso 31000:2018
Diskominfo Kota Salatiga. JATISI (Jurnal Teknik Informatika Dan Sistem Informasi), 8(2), 764-773. https://doi. org/10.35957/jatisi.v8i2.789
Gagnon, M. P., Payne-Gagnon, J., Breton, E., Fortin, J. P., Khoury, L., Dolovich, L., Price, D., Wiljer, D., Bartlett, G., & Archer, N. (2016). Adoption of electronic personal health records in Canada: Perceptions of stakeholders.
International Journal of Health Policy and Management, 5(7), 425-433. https://doi.org/10.15171/ijhpm.2016.36 Gary Stoneburner, Alice Goguen, and
A. F. (2002). Risk Management Guide for Information Technology Systems. In National Institute of Standards And Technology. https://doi. org/10.1517/14728222.10.2.289
Gina Patriani Manuputty. (2022). Analisis Manajemen Risiko Berbasis Iso 31000 Pada Aspek Operasional Teknologi Informasi Pt. Schlumberger Geophysics Nusantara. Paper Knowledge . Toward a Media History of Documents, 3(April), 49-58.
Gunawan, T. S., & Christianto, G. M. (2020). Rekam Medis/Kesehatan Elektronik (RMKE): Integrasi Sistem Kesehatan. Jurnal etika Kedokteran Indonesia, 4(1), 27. https://doi.org/10.26880/jeki. v4i1.43
Herfiyanti, L. (2015). Kelengkapan Informed Consent Tindakan Bedah Menunjang Akreditasi Jci Standar Hpk 6 Pasien Orthopedi. Jurnal Manajemen Informasi Kesehatan Indonesia, 3(2), 81-88. https://doi.org/10.33560/. v3i2.89
International Organization for Standardization. (2021). ISO 31000:2018 - Risk management A practical guide. ISO Central Secretariat.
Peraturan Menteri Kesehatan Republik Indonesia Nomor 25 Tahun 2019 Tentang Penerapan Manajemen

Risiko Terintegrasi Di Lingkungan Kementerian, 1 (2019).
KMK No HK.01.07/Menkes/1128/2022 Tentang Standar Akreditasi Rumah Sakit, Keputusan Menteri Kesehatan 1 (2022).
Peraturan Menteri Kesehatan Republik Indonesia Nomor HK.01.07/ Menkes/1983/2022 Tentang Standar Akreditasi Klinik, 1 (2022).
Keputusan Menteri Kesehatan Republik Indonesia Nomor Hk.01.07/ Menkes/165/2023 Tentang Standar Akreditasi Pusat Kesehatan Masyarakat, 1 (2023).
Marthiawati, N., & Mulyono, H. (2017). Analisis dan Perancangan Sistem Electronic Medical Record (EMR) Berbasis Web Pada Klinik Mata Kambang. Jurnalmsi.Stikom-Db.Ac.Id, 2(3), 695-715. http://jurnalmsi.stikom- db.ac.id/index.php/jurnalmsi/article/ viewFile/113/89
Miftakhatun, M. (2020). Analisis Manajemen Risiko Teknologi Informasi pada Website Ecofo Menggunakan ISO 31000. Journal of Computer Science and engineering (JCSe), 1(2), 128-146. https://doi.org/10.36596/jcse. v1i2.76
Mohamed Saad. (2022). Risk Assasment Waste Heat Recovery Boilers Foundations of Helwan Cement.
Ningsih et al, K. P. (2021). Kesiapan Pengembangan Rekam Medis Elektronik Dengan Pendekatan Doq-It

di RSUD Wates. Indonesian Journal of Health Information Management Services, 1(1). https://doi.org/10.33560/ ijhims.v1i1.1
Ningsih, K. P., & Adhi, S. N. (2021). Analisis Kelayakan Pengembangan Sistem Informasi Pelaporan Standar Pelayanan Minimal Rumah Sakit Berbasis Web. Jurnal Kesehatan Vokasional, 5(4), 196. https://doi. org/10.22146/jkesvo.60572
Ningsih, K. P., Markus, S. N., Rahmani, N., & Nursanti, I. (2023). Analisis Kesiapan Pengembangan Rekam Medis Elektronik Menggunakan DOQ-IT di RS “X” Yogyakarta Pendahuluan. Indonesian of Health Information Management Journal (INOHIM), 11(1), 37-42. https://doi.org/10.47007/inohim. v11i1.496
Ningsih, K. P., Purwanti, E., Sevtiyani, I., Santoso, S., & M’arif, M. R. (2022). Pelatihan Migrasi Data Rekam Medis Manual Ke Elektronik. Link, 18(1), 43-48. https://doi.org/10.31983/link. v18i1.8433
Paramadani, R. B. (2020). Pengembangan User Interface dan User Experience SIMRS untuk Meningkatkan Pelayanan Kesehatan Rumah Sakit Bagian Farmasi. JITTeR-Jurnal Ilmiah Teknologi Dan Komputer, 1(2), 187-198.
Phillips, J. (2010). IT Project Management: on Track from Start to Finish. 640. https://doi.org/10.1007/s13398-014- 0173-7.2

Praptana et al. (2021). Pendampingan Penilaian Kesiapan Penerapan Rekam Medis Elektronik Menggunakan Metode DOQ-IT di RS Condong Catur Sleman. The Journal of Innovatio in Community empowerment, 3(2), 98-
104.
Radack. (2009). The System Development Life Cycle (SDLC). National Institute of Standards and Technology. Available from: Http:/ /Csrc.Nist.Gov/ Publications/PubsITLSB.Html.
Ramdhan, D. H. (2006). Manajemen Risiko & Manajemen Risiko. In Tukimun (Ed.), Dep. K3 FKMUI (1st ed., Issue april). Sulur Pustaka, Journal Corner And Publishing.
Rayner, J. (n.d.). electronic Medical Record Adoption Model HIMSS Anayltics eMRAM. HIMSS. https://www. himssanalytics.org/emram
Rustam, B. R. (2017). Manajemen Risiko: Prinsip, Penerapan, dan Penelitian. Salemba Empat.
Sim, I., Gorman, P., Greenes, R. A., Haynes,
R. B., Kaplan, B., Lehmann, H., & Tang, P. C. (2001). Clinical decision support systems for the practice of evidence-based medicine. Journal of the American Medical Informatics Association, 8(6), 527-534. https://doi. org/10.1136/jamia.2001.0080527
Suryn, W. (2014). Software Quality Engineering: A Practitioners Approach. In Software Quality

engineering: A Practitioners Approach (Vol. 9781118592). https://doi. org/10.1002/9781118830208
Susanto, E., Adika Prasetya, D., Arbatona, I., Christian Marpaung, J., & Hikmatyar Rahadian, S. (2023). Pengamanan Objek Vital, Keamanan File, Dan Keamanan Cyber Pada Pt Pos Indonesia. Jurnal Mutiara Ilmu Akuntansi (JUMIA), 1(3), 163-174.
Sutandra, & Hajar. (2019). Pengaruh Sistem Pengamanan Data Pasien di Rumah Sakit Menuju Era Revolusi Industri 4.0. Journal Siti Hajar, I(No 2), 106-114.

Teixeira, F., Li, E., Laranjo, L., Collins,
C., Irving, G., Fernandez, M. J., Car,
J., Ungan, M., Petek, D., Hoffman, R., Majeed, A., Nessler, K., Lingner, H., Jimenez, G., Darzi, A., Jácome, C., & Neves, A. L. (2023). Digital maturity and its determinants in General Practice: A cross-sectional study in 20 countries. Frontiers in Public Health, 10. https:// doi.org/10.3389/fpubh.2022.962924
Widianto, J., Islam, U., Sultan, N., & Kasim,
S. (2014). Studi Kelayakan Sistem Informasi Akademik Berbasis Web. Jurnal Sains, Teknologi Dan Industri, Vol 11(No 2), 200-211.
Picture in here are illustration from public domain image (License) or provided by the author, as part of their works
Published
2025-01-10
 
How to Cite
[1]
K. P. Ningsih, S. Santoso, Z. K. Purbobinuko, T. S. Dewi, and A. W. Murdiyanto, “Risk Assessment in the Life Cycle of Electronic Medical Record System Development”, PELS, vol. 7, pp. 173 - 188, Jan. 2025.