• DocumentCode
    3450742
  • Title

    Secure Access for Healthcare Data in the Cloud Using Ciphertext-Policy Attribute-Based Encryption

  • Author

    Alshehri, Suhair ; Radziszowski, Stanislaw P. ; Raj, Rajesh Kumar

  • Author_Institution
    B. Thomas Golisano Coll. of Comput. & Inf. Sci., Rochester Inst. of Technol., Rochester, NY, USA
  • fYear
    2012
  • fDate
    1-5 April 2012
  • Firstpage
    143
  • Lastpage
    146
  • Abstract
    As more and more healthcare organizations adopt electronic health records (EHRs), the case for cloud data storage becomes compelling for deploying EHR systems: not only is it inexpensive but it also provides the flexible, wide-area mobile access increasingly needed in the modern world. However, before cloud-based EHR systems can become a reality, issues of data security, patient privacy, and overall performance must be addressed. As standard encryption (including symmetric key and public key) techniques for EHR encryption/decryption cause increased access control and performance overhead, this paper proposes the use of Ciphertext-Policy Attribute-Based Encryption (CPABE) to encrypt EHRs based on healthcare providers´ attributes or credentials, to decrypt EHRs, they must possess the set of attributes needed for proper access. The design and usage of a cloud-based EHR system based on CP-ABE is motivated and presented, along with preliminary experiments to analyze the flexibility and scalability of the proposed approach.
  • Keywords
    cloud computing; cryptography; data handling; health care; medical information systems; CPABE; EHR; ciphertext policy attribute based encryption; cloud data storage; data security; electronic health records; healthcare data secure access; healthcare organizations; patient privacy; public key techniques; standard encryption; symmetric key techniques; wide area mobile access; Access control; Cloud computing; Elliptic curves; Encryption; Medical services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Data Engineering Workshops (ICDEW), 2012 IEEE 28th International Conference on
  • Conference_Location
    Arlington, VA
  • Print_ISBN
    978-1-4673-1640-8
  • Type

    conf

  • DOI
    10.1109/ICDEW.2012.68
  • Filename
    6313671