ISO 21298:2017 defines a model for expressing functional and structural roles and populates it with a basic set of roles for international use in health applications. Roles are generally assigned to entities that are actors. This will focus on roles of persons (e.g. the roles of health professionals) and their roles in the context of the provision of care (e.g. subject of care). Roles can be structural (e.g. licensed general practitioner, non-licensed transcriptionist, etc.) or functional (e.g. a provider who is a member of a therapeutic team, an attending physician, prescriber, etc.). Structural roles are relatively static, often lasting for many years. They deal with relationships between entities expressed at a level of complex concepts. Functional roles are bound to the realization of actions and are highly dynamic. They are normally expressed at a decomposed level of fine-grained concepts. Roles addressed in this document are not restricted to privilege management purposes, though privilege management and access control is one of the applications of this document. This document does not address specifications related to permissions. This document treats the role and the permission as separate constructs. Further details regarding the relationship with permissions, policy, and access control are provided in ISO 22600.
Tämän julkaisun valmistelusta Suomessa vastaa SFS Suomen Standardit, puh. 09 149 9331.
Sisällysluettelo
Foreword
Introduction
1 Scope
2 Normative references
3 Terms and definitions
4 Abbreviated terms
5 Modeling roles in an architectural context
5.1 Roles within the Generic Component Model
5.2 Roles and policy aspects
5.3 Roles in privilege management
5.4 Relations of this standard to related privilege management specifications
5.5 Structural roles
5.6 Functional roles
6 Formally modelling roles
6.1 Roles within the Generic Component Model
6.2 Developing the role model
6.3 Relationships between structural and functional roles
7 Use cases for the use of structural and functional roles in an interregional or international context
Annex A ISCO-08 sample mapping (informative)
Annex B Sample certificate profile for regulated healthcare professional (informative)