• DocumentCode
    1515868
  • Title

    A Novel Key Management Solution for Reinforcing Compliance With HIPAA Privacy/Security Regulations

  • Author

    Lee, Chien-Ding ; Ho, Kevin I -J ; Lee, Wei-Bin

  • Author_Institution
    Dept. of Inf. Eng. & Comput. Sci., Feng Chia Univ., Taichung, Taiwan
  • Volume
    15
  • Issue
    4
  • fYear
    2011
  • fDate
    7/1/2011 12:00:00 AM
  • Firstpage
    550
  • Lastpage
    556
  • Abstract
    Digitizing medical records facilitates the healthcare process. However, it can also cause serious security and privacy problems, which are the major concern in the Health Insurance Portability and Accountability Act (HIPAA). While various conventional encryption mechanisms can solve some aspects of these problems, they cannot address the illegal distribution of decrypted medical images, which violates the regulations defined in the HIPAA. To protect decrypted medical images from being illegally distributed by an authorized staff member, the model proposed in this paper provides a way to integrate several cryptographic mechanisms. In this model, the malicious staff member can be tracked by a watermarked clue. By combining several well-designed cryptographic mechanisms and developing a key management scheme to facilitate the interoperation among these mechanisms, the risk of illegal distribution can be reduced.
  • Keywords
    cryptography; data privacy; health care; medical administrative data processing; HIPAA privacy-security regulation; Health Insurance Portability and Accountability Act; compliance reinforcement; encryption mechanism; healthcare process; management solution; medical image; medical records digitization; Cryptography; DICOM; Medical services; Privacy; Watermarking; Cryptography; Health Insurance Portability and Accountability Act (HIPAA); digital imaging and communication in medicine (DICOM); digital watermarking; encryption; patient's privacy; Computer Security; Health Insurance Portability and Accountability Act; Humans; Image Processing, Computer-Assisted; Medical Records Systems, Computerized; Privacy; United States;
  • fLanguage
    English
  • Journal_Title
    Information Technology in Biomedicine, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1089-7771
  • Type

    jour

  • DOI
    10.1109/TITB.2011.2154363
  • Filename
    5766748