<?xml version='1.0' encoding='utf-8'?>
<?xml-stylesheet type="text/xsl" href="/v2/static/oai2.xsl"?>
<OAI-PMH xmlns="http://www.openarchives.org/OAI/2.0/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.openarchives.org/OAI/2.0/ http://www.openarchives.org/OAI/2.0/OAI-PMH.xsd">
  <responseDate>2026-10-06T05:22:15Z</responseDate>
  <request identifier="oai:figshare.com:article/33994557" metadataPrefix="oai_dc" verb="GetRecord">https://api.figshare.com/v2/oai</request>
  <GetRecord>
    <record>
      <header>
        <identifier>oai:figshare.com:article/33994557</identifier>
        <datestamp>2026-09-25T10:43:19Z</datestamp>
        <setSpec>category_28909</setSpec>
        <setSpec>category_27100</setSpec>
        <setSpec>item_type_3</setSpec>
        <setSpec>month_year_09_2026</setSpec>
      </header>
      <metadata>
        <oai_dc:dc xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"  xmlns:oai_dc="http://www.openarchives.org/OAI/2.0/oai_dc/" xmlns:dc="http://purl.org/dc/elements/1.1/" xsi:schemaLocation="http://www.openarchives.org/OAI/2.0/oai_dc/ http://www.openarchives.org/OAI/2.0/oai_dc.xsd">
          <dc:title>EHR Cybersecurity Framework Evaluation: Keyword Search Outputs and Figures (NIST CSF 2.0, ISO/IEC 27001:2022, HITRUST CSF, NHS DSPT)</dc:title>
          <dc:creator>Kushal Poudel (25108549)</dc:creator>
          <dc:subject>Data security and protection</dc:subject>
          <dc:subject>Health informatics and information systems</dc:subject>
          <dc:subject>cybersecurity</dc:subject>
          <dc:subject>electronic health records</dc:subject>
          <dc:subject>NHS</dc:subject>
          <dc:subject>NIST CSF 2.0</dc:subject>
          <dc:subject>ISO 27001</dc:subject>
          <dc:subject>HITRUST CSF</dc:subject>
          <dc:subject>Data Security and Protection Toolkit</dc:subject>
          <dc:subject>healthcare cybersecurity</dc:subject>
          <dc:subject>threat modelling</dc:subject>
          <dc:subject>ransomware</dc:subject>
          <dc:subject>FHIR</dc:subject>
          <dc:subject>IoMT</dc:subject>
          <dc:subject>Insider threat</dc:subject>
          <dc:subject>nation state apt campian</dc:subject>
          <dc:description>&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p dir="ltr"&gt;This dataset contains the keyword search records, data extraction tables and figures from the MSc Cybersecurity dissertation "A Comparative Evaluation of Cybersecurity Governance Frameworks for Electronic Health Record Systems in the UK National Health Service" (Kushal Poudel, University of West London, 2026).&lt;/p&gt;&lt;p dir="ltr"&gt;The study evaluated four frameworks (NIST CSF 2.0, ISO/IEC 27001:2022, HITRUST CSF v11.8.0 and the NHS Data Security and Protection Toolkit) against five EHR-specific threat categories: ransomware, FHIR API exploitation, IoMT vulnerabilities, insider threats and nation-state APT campaigns. The framework documents were searched with a custom Python tool using 56 keywords in eight groups. For each match, the tool recorded the page number, the nearest control reference, the sentence containing the keyword and whether healthcare terms appeared nearby.&lt;/p&gt;&lt;p dir="ltr"&gt;Files:&lt;/p&gt;&lt;p dir="ltr"&gt;13 keyword search records (.txt), one for each framework document: NIST CSF 2.0, ISO 27001, HITRUST CSF and NHS Data Security Standards 1 to 10.&lt;/p&gt;&lt;p dir="ltr"&gt;Appendix_A_Data_Extraction_Table.docx: the data extraction tables from Appendix A of the dissertation.&lt;/p&gt;&lt;p dir="ltr"&gt;Six figures (.png) from Chapter 4: framework coverage by threat category, threat modelling integration, rating distributions by framework and by threat category, GDPR alignment against threat coverage, and threat coverage against threat modelling integration.&lt;/p&gt;&lt;p dir="ltr"&gt;The tool locates evidence only. The Strong, Moderate and Weak ratings in the dissertation were assigned by reading each located passage. The framework documents themselves are not included.&lt;/p&gt;&lt;h4 dir="ltr"&gt;Code: &lt;a href="https://github.com/kushal2019/ehr-cybersecurity-framework-analysis" target="_blank"&gt;https://github.com/kushal2019/ehr-cybersecurity-framework-analysis&lt;/a&gt;&lt;/h4&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;</dc:description>
          <dc:date>2026-09-25T10:43:19Z</dc:date>
          <dc:type>Dataset</dc:type>
          <dc:type>Dataset</dc:type>
          <dc:identifier>10.6084/m9.figshare.33994557.v1</dc:identifier>
          <dc:relation>https://figshare.com/articles/dataset/EHR_Cybersecurity_Framework_Evaluation_Keyword_Search_Outputs_and_Figures_NIST_CSF_2_0_ISO_IEC_27001_2022_HITRUST_CSF_NHS_DSPT_/33994557</dc:relation>
          <dc:rights>CC BY 4.0</dc:rights>
        </oai_dc:dc>
      </metadata>
    </record>
  </GetRecord>
</OAI-PMH>
