PAX: using pseudonymization and anonymization to protect patients’ identities and data in the healthcare system
Article
Article Title | PAX: using pseudonymization and anonymization to protect patients’ identities and data in the healthcare system |
---|---|
ERA Journal ID | 44293 |
Article Category | Article |
Authors | Al-Zubaidie, Mishall (Author), Zhang, Zhongwei (Author) and Zhang, Ji (Author) |
Journal Title | International Journal of Environmental Research and Public Health |
Journal Citation | 16 (1490), pp. 1-36 |
Number of Pages | 36 |
Year | 2019 |
Publisher | MDPI AG |
Place of Publication | Switzerland |
ISSN | 1660-4601 |
1661-7827 | |
Digital Object Identifier (DOI) | https://doi.org/10.3390/ijerph16091490 |
Web Address (URL) | https://www.mdpi.com/1660-4601/16/9/1490 |
Abstract | Electronic health record (EHR) systems are extremely useful for managing patients’ data and are widely disseminated in the health sector. The main problem with these systems is how to maintain the privacy of sensitive patient information. Due to not fully protecting the records from unauthorised users, EHR systems fail to provide privacy for protected health information. Weak security measures also allow authorised users to exceed their specific privileges to access medical records. Thus, some of the systems are not a trustworthy source and are undesirable for patients and healthcare providers. Therefore, an authorisation system that provides privacy when accessing patients’ data is required to address these security issues. Specifically, security and privacy precautions should be raised for specific categories of users, doctor advisors, physician researchers, emergency doctors, and patients’ relatives. Presently, these users can break into the electronic systems and even violate patients’ privacy because of the privileges granted to them or the inadequate security and privacy mechanisms of these systems. To address the security and privacy problems associated with specific users, we develop the Pseudonymization and Anonymization with the XACML (PAX) modular system, which depends on client and server applications. It provides a security solution to the privacy issues and the problem of safe-access decisions for patients’ data in the EHR. The results of theoretical and experimental security analysis prove that PAX provides security features in preserving the privacy of healthcare users and is safe against known attacks. |
Keywords | anonymity, ECDSA, electronic health record (EHR), PAX, pseudonym, XACML |
ANZSRC Field of Research 2020 | 460609. Networking and communications |
460902. Decision support and group support systems | |
460599. Data management and data science not elsewhere classified | |
400604. Network engineering | |
461301. Coding, information theory and compression | |
460908. Information systems organisation and management | |
461305. Data structures and algorithms | |
Byline Affiliations | School of Agricultural, Computational and Environmental Sciences |
Faculty of Health, Engineering and Sciences | |
Institution of Origin | University of Southern Queensland |
https://research.usq.edu.au/item/q5383/pax-using-pseudonymization-and-anonymization-to-protect-patients-identities-and-data-in-the-healthcare-system
Download files
338
total views142
total downloads0
views this month0
downloads this month