A receptionist views the personal information and confidential healths record of his friend through the Electronic Health Record systems because he is concern on the health of his friend. Since his friend did not what to tell him about his embarrassing illness, he searches for his friend medical record which are contained within the ProprietaryMed. [1] In enterprise integration system perspective, the project manager responsible for EHR system did not consider the public health and safety environment. He did not configure carefully the level of access for the system and did not apply the administration privilege setting so that receptionist cannot further view the confidential information of the patient.
[1] Smith et. al., “Challenges for Protecting the Privacy of Health Information: Required Certification Can Leave Common Vulnerabilities Undetected”, SPIMACS ’10, October 8, 2010, Chicago, Illinois, USA. ACM 2010.
British Computer Society Code of Conduct
The scenario is an unethical scenario. The project manager should carefully create a system that regards the patient safety. Under the public interest, clause number 1:
“In your professional role you shall have regard for the public health, safety and environment.”
The Project Manager also violates the BSC Code of Conduct as the receptionist is allowed to view confidential information of his friend without the permission of the relevant authority and for personal reason. Under the duty of the relevant authority, clause number 8:
” You shall not disclose or authorize to be disclosed, or use for personal gain or to benefit a third party, confidential information except with the permission of your relevant authority, or at the direction of a court of law. “
The Project Manager also violating the public interest BCS Code of conduct, clause number 3 by not understanding the relevant legislation, regulations and standards that forbid receptionist to view confidential data of his friend:
“You shall ensure that within your professional field/s you have knowledge and understanding of relevant legislation, regulations and standards and that you comply with such requirements include the Public Interest Disclosure Act, Disability Discrimination Act, Data Protection or Privacy legislation, Computer Misuse law, legislation concerned with the export or import of technology, possibly for national security reasons, or law relating to intellectual property.”
In addition, the project manager fails to create a system that respects the client confidentiality. Under the public interest, clause 4:
“You shall conduct your professional activities without discrimination against clients. All clients have a right to be treated with dignity and respect.”
Islamic Perspective
From the Islamic perspective, the receptionist is unethical because he misuse the authority given to him by viewing confidential data of patient without permission or job requirement. He has betrayed the trust that hospital has give to him.
Surah Al- Anfal verse 27: “O ye that believe! Betray not the trust of Allah not the Messenger nor misappropriate knowingly things entrusted to you.”
The project manager also fails to make a system that has different level of access according to different position which makes him not respect the trust that the hospital and patient has put on him.
(70:32) ÙˆÙŽØلَّذÙينَ Ù‡Ùمْ Ù„ÙØ£ÙŽÙ…ÙŽØÙ†ÙŽØتÙÙ‡Ùمْ وَعَهْدÙÙ‡Ùمْ رَØعÙونَ
(70:35) Ø£ÙوْلَئÙÙƒÙŽ ÙÙÙŠ جَنَّØت٠مّÙكْرَمÙونَ
Surah Al-Maarij verse 32: “And those who respect their trusts and promise”
Surah Al-Maarij verse 35:” Such will be the honoured ones in the Gardens (of Bliss).”
The project manager also should have knowledge and understanding of relevant regulations and follow it.
ØلَّذÙينَ يَسْتَمÙعÙونَ Øلْقَوْلَ ÙَيَتَّبÙعÙونَ Ø£ÙŽØْسَنَه٠أÙوْلَئÙÙƒÙŽ ØلَّذÙينَ هَدَØÙ‡ÙÙ…Ù Øللَّه٠وَأÙوْلَئÙÙƒÙŽ Ù‡Ùمْ Ø£ÙوْلÙÙˆØ ØلْأَلْبَØبÙ
Surah Az-Zumur verse 18: “Those who listen to the word then follow the best of it. Such are those whom Allah has guided, and such are those who possess understanding. “
SCENARIO 2
B2C E-Commerce exposes information within an enterprise to people or entities that exist outside the enterprise. It requires integration system to support web based selling and sharing information effort. Online shopping through Amazon.com is one example of B2C E-Commerce. People trust Amazon.com for online shopping and willing to use credit card in purchasing products at Amazon.com as it provide a secure transaction when their product is purchased.[2] Amazon.com also provides integrity information about the product and vendor of the product.
[2] D. Gefen, “Reflections on the Dimensions of Trust and Trustworthiness among Online Consumers,” The Data Base for Advances in Information Systems, vol. 1, no. 3, 2002, pp. 38-53.
British Computer Society Code of Conduct
This scenario is example of ethical scenario where Amazon.com provides reliable shopping experiences to its online consumers. Amazon.com has the required knowledge and understands how to make the users trust them. Under the public interest, clause 3:
“You shall ensure that within your professional field/s you have knowledge and understanding of relevant legislation, regulations and standards, and that you comply with such requirements include the Public Interest Disclosure Act, Disability Discrimination Act, Data Protection or Privacy legislation, Computer Misuse law, legislation concerned with the export or import of technology, possibly for national security reasons, or law relating to intellectual property. This list is not exhaustive, and you should ensure that you are aware of any legislation relevant to your professional responsibilities.”
Amazon.com also follows the BCS Code of Conduct, under the duty to relevant authority, clause 9 as Amazon.com provides trustworthy information on the product and the product’s vendor on its website:
“You shall not misrepresent or withhold information on the performance of products, systems or services, or take advantage of the lack of relevant knowledge or inexperience of others.”
Islamic Perspective
From Islamic perspective, Amazon.com is an ethical company that provide reliable and trustworthy information to its online users.
Surah Al- Anfal verse 8: “That He should establish the truth to be true and the falsehood to be false, even if the criminals might dislike it.”
SCENARIO 3
Mr. B is a division manager at Company G that had been fails to gain access to the market in a large South American country. If he successful, the company can gain a high profit. Six month ago, a government official from the country contact Mr. B and assured that he could enter market access for a hefty cash payment. Company G has been granted access to the market after Mr B provides the money to the government official. [3] In context of enterprise integration system project, Mr. B is an employee that eager in searching for higher job title. He pays a hefty sum of money to a project team so that he becomes a project manager without doing the job.
[3] Karnes, A., J. Sterner, R. Welker, and F. Wu. (1989), ‘A Bicultural Study of Independent Auditors’ Perceptions of Unethical Business Practices’, The International Journal of Accounting Vol.24, pp.29-41.
British Computer Society Code of Conduct
In this scenario, Mr. B has done an unethical, immoral and illegal act. He has offer bribery and he has violated the BCS Code of Conduct under the public interest, clause 5:
“You shall reject and shall not make any offer of bribery or inducement.”
Mr. B also violates the BCS Code of Conduct under the professional competence and integrity, clause 15 and clause 17 as he did not possess the knowledge and skills that is required to become a project manager and did not responsible for the given works:
“You shall not claim any level of competence that you do not possess. You shall only offer to do work or provide a service that is within your professional competence.”
“You shall accept professional responsibility for your work and for the work of colleagues who are defined in a given context as working under your supervision.”
Islamic Perspective
Bribery is a big sin action and we must avoid it whether receiving or offer bribery.
ÙˆÙŽÙ„ØÙŽ تَأْكÙÙ„ÙÙˆØÙ’ أَمْوَØÙ„ÙŽÙƒÙÙ… بَيْنَكÙÙ… بÙØلْبَØØ·Ùل٠وَتÙدْلÙÙˆØÙ’ بÙÙ‡ÙŽØ Ø¥ÙÙ„ÙŽÙ‰ ØلْØÙكَّØÙ…Ù Ù„ÙتَأْكÙÙ„ÙÙˆØÙ’ ÙَرÙÙŠÙ‚Ù‹Ø Ù…Ù‘Ùنْ أَمْوَØÙ„Ù ØلنَّØس٠بÙØلإÙثْم٠وَأَنتÙمْ تَعْلَمÙونَ
Surah Al-Baqarah verse 188: “And do not devour your property among each other unjustly, and (do not) offer it (as bribery) to the rulers, that you may devour a portion of the property of the people in sin, and you know (it).”
We must also sincere s and be responsible on the job that has been given to us.
Ù‚Ùلْ أَتÙØَآجّÙÙˆÙ†ÙŽÙ†ÙŽØ ÙÙÙŠ Øللّه٠وَهÙÙˆÙŽ رَبّÙÙ†ÙŽØ ÙˆÙŽØ±ÙŽØ¨Ù‘ÙÙƒÙمْ ÙˆÙŽÙ„ÙŽÙ†ÙŽØ Ø£ÙŽØ¹Ù’Ù…ÙŽØÙ„ÙÙ†ÙŽØ ÙˆÙŽÙ„ÙŽÙƒÙمْ أَعْمَØÙ„ÙÙƒÙمْ ÙˆÙŽÙ†ÙŽØْن٠لَه٠مÙخْلÙصÙونَ
Surah Al- Baqarah verse 139: “Say: Will ye dispute with us about Allah, seeing that He is our Lord and your Lord; that we are responsible for our doings and ye for yours; and that We are sincere (in our faith) in Him?”
SCENARIO 4
Employer use GPS with their system as a surveillance device on employees. They track their employees to ensure their employee work honestly as well as increase profit as the worker work more efficiently.[4] The system could also track employee’s information outside the working hours. In enterprise integration project, GPS integration can bring benefits to the employer but it can invade the employee’s or client’s privacy. This also applies in RFID integration project with the data warehouse system.
[4] K. Michael, A. McNamee, and M. G. Michael. “The Emerging Ethics of Humancentric GPS Tracking and Monitoring” International Conference on Mobile Business. Copenhagen, Denmark: IEEE Computer Society, 2006.
British Computer Society Code of Conduct
In this scenario, there are unethical and ethical act. It is ethical for the employee to adapt new technology such as GPS to ensure that their employee to work honestly and efficiently and thus increase profit the organization. Under professional competence and integrity, clause 14:
“You shall seek to upgrade your professional knowledge and skill, and shall maintain awareness of technological developments, procedures and standards which are relevant to your field, and encourage your subordinates to do likewise.”
It is unethical for the employer to track employee’s information outside the working hours. Furthermore, employer could use GPS for unfairly discipline the drivers. The employer could be violating the BCS code of conduct under the duty to relevant authority, clause 8. It is very unethical if the employer to collects information of their employee and uses it for other purposes. For RFID, the organization can actually collect information about customer’s behavior using the RFID tags:
“You shall not disclose or authorize to be disclosed, or use for personal gain or to benefit a third party, confidential information except with the permission of your relevant authority, or at the direction of a court of law.”
Islamic Perspective
It is ethical for employer to use GPS to ensure honesty and trustworthy of its employees.
Ù‚ÙŽØلَتْ Ø¥ÙØْدَØÙ‡ÙÙ…ÙŽØ ÙŠÙŽØ Ø£ÙŽØ¨ÙŽØªÙ ØسْتَأْجÙرْه٠إÙنَّ خَيْرَ Ù…ÙŽÙ†Ù Øسْتَأْجَرْتَ ØلْقَوÙيّ٠ØلْأَمÙينÙ
One of the two women said: “O my father, hire him. Indeed, the best one you can hire is the strong, the trustworthy.”
It is unethical for employer to use GPS to gain information about the employee outside the working hours without their consent as the employee trust their employer. The employer should not betray this trust.
ÙˆÙŽÙ„ØÙŽ تÙجَØدÙلْ عَن٠ØلَّذÙينَ يَخْتَØÙ†Ùونَ Ø£ÙŽÙ†ÙÙسَهÙمْ Ø¥Ùنَّ Øللّهَ Ù„ØÙŽ ÙŠÙØÙبّ٠مَن ÙƒÙŽØÙ†ÙŽ خَوَّØÙ†Ù‹Ø Ø£ÙŽØ«ÙيمًØ
Surah An-Nisa verse 107: “And argue not on behalf of those who deceive themselves. Indeed, Allah does not love anyone who is a betrayer of his trust, sinful.”
Cite This Work
To export a reference to this article please select a referencing style below: