A patient centric approach for modeling access control in EHR systems
Contributo in Atti di convegno
Data di Pubblicazione:
2013
Abstract:
In EHR systems, most of the data are confidential concerning the health of a patient. Therefore, it is necessary to provide a mechanism for access control. This has not only to ensure the confidentiality and integrity of the data, but also to allow the definition of security policies which reflect the need for privacy of the patient who the documents refer to. In this paper we define a new Access Control (AC) model for EHR systems, that allows the patient to define access policies based on her/his need for privacy. Our model starts from the RBAC model, and extends it by adding characteristics and components to manage the access policies in a simple and dynamic manner. It ensures patient privacy, and for this reason we refer to it as a patient-centric AC model
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
Access control model; privacy; EHR; patient consent; patient centric
Elenco autori:
Sicuranza, Mario; Ciampi, Mario; Esposito, Angelo
Link alla scheda completa:
Titolo del libro:
Algorithms and Architectures for Parallel Processing