Title :
Novel Data Protection Model in Healthcare Cloud
Author :
Chen, Lingfeng ; Hoang, Doan B.
Author_Institution :
Adv. Res. in Networking Lab., Univ. of Technol., Sydney, NSW, Australia
Abstract :
Deploying state-of-the-art technologies is vital and inevitable in healthcare industry to cope with emerging services such as healthcare resource sharing and integration, collaborative consultation, and electronic health record. Cloud computing allows simple and easy user access, coping with users´ dynamic and elastic demands, providing metered usage for its resources and hence is increasingly being adopted by individual users as well as enterprise users. The Cloud is being considered as appropriate technology for future healthcare infrastructure. However, in order to use of Cloud services effectively, users´ data and/or resource have to be transferred to the cloud side and this inevitably raises several serious issues concerning losing control of users´ resource, data privacy protection, data ownership and security. This paper addresses security and privacy challenges in healthcare cloud by deploying a novel framework with CPRBAC (Cloud-based Privacy-aware Role Based Access Control) model for controllability, traceability of data and authorized access to system resources. Furthermore, the work seeks to develop a unique active auditing service that is capable of tracing, tracking, and triggering an alarm on any operation, data or policy violations in the Cloud environment.
Keywords :
authorisation; cloud computing; data privacy; health care; active auditing service; alarm tracing; alarm tracking; alarm triggering; authorized access; cloud computing; cloud environment; cloud services; cloud-based privacy-aware role based access control model; collaborative consultation; data controllability; data ownership; data privacy protection; data protection model; data security; data traceability; electronic health record; enterprise users; healthcare cloud privacy; healthcare cloud security; healthcare industry; healthcare infrastructure; healthcare resource integration; healthcare resource sharing; policy violations; system resources; Access control; Cloud computing; Computational modeling; Data models; Medical services; Organizations; CPRBAC; Cloud computing; EHR; active continuous monitor; authentication; authorization;
Conference_Titel :
High Performance Computing and Communications (HPCC), 2011 IEEE 13th International Conference on
Conference_Location :
Banff, AB
Print_ISBN :
978-1-4577-1564-8
Electronic_ISBN :
978-0-7695-4538-7
DOI :
10.1109/HPCC.2011.148