DocumentCode :
2093356
Title :
Behavior-Based Access Control for Distributed Healthcare Environment
Author :
Yarmand, Mohammad H. ; Sartipi, Kamran ; Down, Douglas G.
Author_Institution :
Dept. Comput. & Software, McMaster Univ. Hamilton, Hamilton, ON
fYear :
2008
fDate :
17-19 June 2008
Firstpage :
126
Lastpage :
131
Abstract :
Privacy and security are critical requirements for using patient profiles in distributed healthcare environments. The amalgamation of new information technology with traditional healthcare workflows for sharing patient profiles has made the entire system vulnerable to security and privacy breaches. In this paper we present a novel access control model based on a framework designed for data and service interoperability in the healthcare domain. The proposed model for customizable access control captures the dynamic behavior of the user and determines access rights accordingly. The model is generic and flexible in the sense that an access control engine dynamically receives security effective factors from the subject user, and identifies the privilege level in accessing clinical data using different specialized components within the engine. Standard data representation formats are used to make the model compatible with different healthcare environments. The access control engine uses a flow-based approach to follow the user´s behavior. The proposed model is supported by a real world case study.
Keywords :
authorisation; behavioural sciences; data privacy; health care; medical information systems; open systems; behavior-based access control; clinical data; customizable access control; data interoperability; distributed healthcare environment; flow-based approach; patient profile; privacy; security; service interoperability; user behavior; Access control; Context awareness; Context-aware services; Data security; Distributed computing; Engines; Information security; Medical services; Permission; Privacy; Behavior; Context Aware Access Control; HL7; Patient Data; Security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer-Based Medical Systems, 2008. CBMS '08. 21st IEEE International Symposium on
Conference_Location :
Jyvaskyla
ISSN :
1063-7125
Print_ISBN :
978-0-7695-3165-6
Type :
conf
DOI :
10.1109/CBMS.2008.14
Filename :
4561969
Link To Document :
بازگشت