A Security Architecture for Accessing Health Records on Mobile Phones
نویسندگان
چکیده
Using mobile phones to access healthcare data is an upcoming application scenario of increasing importance in the near future. However, important aspects to consider in this context are the high security and privacy requirements for sensitive medical data. Current mobile phones using standard operating systems and software cannot offer appropriate protection for sensitive data, although the hardware platform often offers dedicated security features. Malicious software (malware) like Trojan horses on the mobile phone could gain unauthorized access to sensitive medical data. In this paper, we propose a complete security framework to protect medical data (such as electronic health records) and authentication credentials that are used to access e-health servers. Derived from a generic architecture that can be used for PCs, we introduce a security architecture specifically for mobile phones, based on existing hardware security extensions. We describe security building blocks, including trusted hardware features, a security kernel providing isolated application environments as well as a secure graphical user interface, and a trusted wallet (TruWallet) for secure authentication to e-health servers. Moreover, we present a prototype implementation of the trusted wallet on a current smartphone: the Nokia N900. Based on our architecture, health care professionals can safely and securely process medical data on their mobile phones without the risk of disclosing sensitive information as compared to commodity mobile operating systems.
منابع مشابه
Securing the Access to Electronic Health Records on Mobile Phones
Mobile phones are increasingly used in the e-health domain. In this context, enabling secure access to health records from mobile devices is of particular importance because of the high security and privacy requirements for sensitive medical data. Standard operating systems and software, as they are deployed on current smartphones, cannot protect sensitive data appropriately, even though modern...
متن کاملEvaluating Students’ attitudes and usage e of mobile in educational activities at Paramedical Sciences School
Introduction: Mobile learning is a new way of modern teaching method and a subset of e-learning that refers to a change in thinking about the design and planning of learning goals and environments. The purpose of this study was to investigate the attitude of students of the Medical Sciences School toward the mobile phone in educational activities and its usage. Methods: 150 students of Mashhad...
متن کاملPublic Perspectives of Mobile Phones' Effects on Healthcare Quality and Medical Data Security and Privacy: A 2-Year Nationwide Survey
Given growing interest in mobile phones for health management (mHealth), we surveyed consumer perceptions of mHealth in security, privacy, and healthcare quality using national random-digit-dial telephone surveys in 2013 and 2014. In 2013, 48% thought that using a mobile phone to communicate data with a physician's electronic health record (EHR) would improve the quality of health care. By 2014...
متن کاملA Mobile Application Accessing Patients' Health Records through a REST API - How Rest-style Architecture can Help Speed up the Development of Mobile Health Care Applications
Mobile devices offer new ways for users to access health care data and services in a secure and user-friendly environment. These new applications must be easy to create, deploy, test and maintain, and they must rely on a scalable and easily integrated infrastructure. In this paper we present the motivations and technical choices for creating a REST API integrated with a mobile application (iPho...
متن کاملUnderstanding the roles of different stakeholders influencing the use of mobile phones to access agricultural information: A Case of Kilolo and Kilosa Districts, Tanzania
The study investigated the roles of different stakeholders influencing the use of mobile phones in accessing agricultural information in Tanzania. While information is becoming an important ingredient in agriculture, farmers in Tanzania suffer the problem of lacking access to agricultural information. Promisingly, mobile phone technology has become the most valued infrastructure which gives peo...
متن کامل