Pseudonymization of patient identifiers for translational research

نویسندگان

  • Harald Aamot
  • Christian Dominik Kohl
  • Daniela Richter
  • Petra Knaup-Gregori
چکیده

BACKGROUND The usage of patient data for research poses risks concerning the patients' privacy and informational self-determination. Next-generation-sequencing technologies and various other methods gain data from biospecimen, both for translational research and personalized medicine. If these biospecimen are anonymized, individual research results from genomic research, which should be offered to patients in a clinically relevant timeframe, cannot be associated back to the individual. This raises an ethical concern and challenges the legitimacy of anonymized patient samples. In this paper we present a new approach which supports both data privacy and the possibility to give feedback to patients about their individual research results. METHODS We examined previously published privacy concepts regarding a streamlined de-pseudonymization process and a patient-based pseudonym as applicable to research with genomic data and warehousing approaches. All concepts identified in the literature review were compared to each other and analyzed for their applicability to translational research projects. We evaluated how these concepts cope with challenges implicated by personalized medicine. Therefore, both person-centricity issues and a separation of pseudonymization and de-pseudonymization stood out as a central theme in our examination. This motivated us to enhance an existing pseudonymization method regarding a separation of duties. RESULTS The existing concepts rely on external trusted third parties, making de-pseudonymization a multistage process involving additional interpersonal communication, which might cause critical delays in patient care. Therefore we propose an enhanced method with an asymmetric encryption scheme separating the duties of pseudonymization and de-pseudonymization. The pseudonymization service provider is unable to conclude the patient identifier from the pseudonym, but assigns this ability to an authorized third party (ombudsman) instead. To solve person-centricity issues, a collision-resistant function is incorporated into the method. These two facts combined enable us to address essential challenges in translational research. A productive software prototype was implemented to prove the functionality of the suggested translational, data privacy-preserving method. Eventually, we performed a threat analysis to evaluate potential hazards connected with this pseudonymization method. CONCLUSIONS The proposed method offers sustainable organizational simplification regarding an ethically indicated, but secure and controlled process of de-pseudonymizing patients. A pseudonym is patient-centered to allow correlating separate datasets from one patient. Therefore, this method bridges the gap between bench and bedside in translational research while preserving patient privacy. Assigned ombudsmen are able to de-pseudonymize a patient, if an individual research result is clinically relevant.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A RESTful interface to pseudonymization services in modern web applications

BACKGROUND Medical research networks rely on record linkage and pseudonymization to determine which records from different sources relate to the same patient. To establish informational separation of powers, the required identifying data are redirected to a trusted third party that has, in turn, no access to medical data. This pseudonymization service receives identifying data, compares them wi...

متن کامل

Integrated information systems for translational medicine.

OBJECTIVES Translational medicine research needs a two-way information highway between 'bedside' and 'bench'. Unfortunately there are still weak links between successfully integrated information roads for bench, i.e. research networks, and bedside, i.e. regional or national health information systems. The question arises, what measures have to be taken to overcome the deficiencies. METHODS It...

متن کامل

Improving Epidemiology Research with Patient Registries Based on Advanced Web Technology

To store patients’ medical histories and to exchange them between physicians, patient registries are used. Registries contain detailed data on patients and their treatments, and may comprise additional documents. This makes them very valuable for epidemiological research due to the amount of information contained. Providing data for research requires anonymization and pseudonymization to addres...

متن کامل

The Many Meanings of Evidence: Implications for the Translational Science Agenda in Healthcare

Health systems across the world are concerned with the quality and safety of patient care. This includes investing in research and development to progress advances in the treatment and management of individuals and healthcare organisations. The concept of evidence- based healthcare has gained increasing currency over the last two decades; yet questions persist about the time it takes for new re...

متن کامل

Privacy-Preserving Storage and Access of Medical Data through Pseudonymization and Encryption

E-health allows better communication between health care providers and higher availability of medical data. However, the downside of interconnected systems is the increased probability of unauthorized access to highly sensitive records that could result in serious discrimination against the patient. This article provides an overview of actual privacy threats and presents a pseudonymization appr...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره 13  شماره 

صفحات  -

تاریخ انتشار 2013