DocumentCode :
3193650
Title :
Design for a secure interoperable cloud-based Personal Health Record service
Author :
Hsieh, Guan-Chyun ; Chen, Ren-Jie
Author_Institution :
Dept. of Comput. Sci., Norfolk State Univ., Norfolk, VA, USA
fYear :
2012
fDate :
3-6 Dec. 2012
Firstpage :
472
Lastpage :
479
Abstract :
Adoption of Personal Health Record (PHR) applications has been slow due to consumers´ concerns in security, privacy and trust, and the challenges in interoperability and integration with other Electronic Medical Record (EMR) systems. This paper proposes the design for a secure interoperable cloud-based PHR service. To enhance the portability and interoperability, we use the Continuity of Care Document (CCD) for both storing and exchanging the PHR information for an individual. To provide self-protecting security for each CCD instance, we apply a broad spectrum of security mechanisms - including access control, encryption, and digital signature - in an integrated, embedded, and fine-grained manner, based on open standards such as eXtensible Access Control Markup Language, XML Encryption, XML Signature, and XML Key Management Specification. To support patient-controlled encryption and privacy-preserving keyword search, we use ciphertext-policy attribute-based encryption and public-key encryption with keyword search schemes, again in an integrated, embedded, and fine-grained manner.
Keywords :
authorisation; cloud computing; data integration; data privacy; digital signatures; document handling; embedded systems; medical information systems; open systems; patient care; public key cryptography; storage management; trusted computing; CCD; EMR; PHR information exchange; PHR information storage; access control; broad security spectrum mechanism; ciphertext policy attribute-based encryption; continuity of care document; data integration; data privacy preservation; digital signature; electronic medical record system; embedded manner; fine grained manner; interoperable cloud-based PHR service security; keyword search scheme; open standard; patient controlled encryption; personal health record service; portability enhancement; public key encryption; self-protecting data security; trusted computing; Access control; Charge coupled devices; Encryption; Standards; XML; XML based security standards; attribute-based encryption; cloud computing; information security; personal health record;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Cloud Computing Technology and Science (CloudCom), 2012 IEEE 4th International Conference on
Conference_Location :
Taipei
Print_ISBN :
978-1-4673-4511-8
Electronic_ISBN :
978-1-4673-4509-5
Type :
conf
DOI :
10.1109/CloudCom.2012.6427582
Filename :
6427582
Link To Document :
بازگشت