Overview
Explore the challenges and solutions of implementing modern web security in Norway's healthcare sector through this conference talk. Delve into the development of HelseID, a national trust service protecting health care APIs, and its implementation using OAuth2 and OpenID Connect protocols. Discover how this service addresses the unique needs of the Norwegian health sector while balancing the requirements of legacy systems and modern applications. Learn about the technical aspects, including API versioning, client requirements, and prebuilt libraries. Gain insights into the growth, automation, and availability challenges faced in this high-risk industry. Understand the relationship between HelseID and the Nordic Health Network, approval processes, and financing strategies. Examine real-life examples of supporting both legacy and modern systems in a conservative healthcare environment.
Syllabus
Introduction
About Rune
Norway
The Norwegian Health Sector
A bit of history
Helse
Norway Institute of Public Health
Apis
Web Browser
Web Applications
National Service
GDPR
Challenges
Availability
Growth
Automating
Summary
Questions
Relation between HeID and Nordic Health Network
Who is supporting all the applications
Two questions
Who can offer healthcare systems
Approval processes
Cloud fallback
Financing
Norwegian National ID
Technical indepth
API versioning
Client requirements
Prebuilt libraries
Software development process
Taught by
NDC Conferences