Integrating Patient Consent in e-Health Access Control

نویسندگان

  • Kim Wuyts
  • Riccardo Scandariato
  • Griet Verhenneman
  • Wouter Joosen
چکیده

Many initiatives exist that integrate e-health systems on a large scale. One of the main technical challenges is access control, although several frameworks and solutions, like XACML, are becoming standard practice. Data is no longer shared within one affinity domain but becomes ubiquitous, which results in a loss of control. As patients will be less willing to participate without additional control strategies, patient consents are introduced that allow the patients to determine precise access rules on their medical data. This paper explores the consequences of integrating consent in e-health access control. First, consent requirements are examined, after which an architecture is proposed which incorporates patient consent in the access control service of an e-health system. To validate the proposed concepts, a proofof-concept implementation is built and evaluated.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Attribute-based Access Control for Cloud-based Electronic Health Record (EHR) Systems

Electronic health record (EHR) system facilitates integrating patients' medical information and improves service productivity. However, user access to patient data in a privacy-preserving manner is still challenging problem. Many studies concerned with security and privacy in EHR systems. Rezaeibagha and Mu [1] have proposed a hybrid architecture for privacy-preserving accessing patient records...

متن کامل

Flexible Access to Patient Data through e-Consent

The advances in healthcare and information technology are shifting more and more the ownership of data from medical institutions and doctors to individual citizens. However, since the medical information of an individual is confidential, the only basis for sharing it, is through prior informed consent which will regulate access to his private healthcare data. This paper highlights challenges in...

متن کامل

Automating Consent Management Lifecycle for Electronic Healthcare Systems

The notion of patient’s consent plays a major role in granting access to medical data. In typical healthcare systems, consent is captured by a form that the patient has to fill in and sign. In e-Health systems, the paper-form consent is being replaced by access control mechanisms that regulate access to medical data while taking into account electronic content. This helps in empowering the pati...

متن کامل

Modeling of an Intelligent e-Consent System in a Healthcare Domain

Due to rapid advances of computing power and communications, healthcare services are increasingly rely on the electronic processing and transmission of confidential patient data to reduce the costs and improve the quality. It is becoming more and more important that accessing the health information should be both secure and privacy preserving. Therefore access control becomes an important integ...

متن کامل

Viewpoint Paper: e-Consent: The Design And Implementation of Consumer Consent Mechanisms in an Electronic Environment

The effective coordination of health care relies on communication of confidential information about consumers between different health and community care services. However, consumers must be able to give or withhold "e-Consent" to those who wish to access their electronic health information. There are several possible forms for e-Consent. In the general consent model, a patient provides blanket...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • IJSSE

دوره 2  شماره 

صفحات  -

تاریخ انتشار 2011