DOI QR코드

DOI QR Code

A Secure Personal Health Record System for Handling of Emergency Situations

응급 상황 처리를 위한 안전한 개인건강기록 시스템

  • 이명규 (가천대학교 IT대학 컴퓨터공학과) ;
  • 황희정 (가천대학교 IT대학 컴퓨터공학과)
  • Received : 2016.08.30
  • Accepted : 2016.10.07
  • Published : 2016.10.31

Abstract

In recent years, Personal Health Record (PHR) has emerged as a patient-centric model of health information exchange. The Personal Health Record (PHR) owners enjoy the full right of accessing their records anywhere and anytime making storage and retrieval more efficient. Due to the sensitivity and confidential nature of the PHR, however, the PHR is maintained in a secure and private environment with the individual determining rights of access. In this paper, we propose a system which enables access to the user's PHR in the event of emergency. In emergency situation where the user is unconscious, the emergency staff can use the PHR information to request a emergency access to the PHR server based on the predefined rights of access for PHR. Under the proposed system, the PHR owner can specify a fine grain access control policy during emergency situations.

최근 개인건강기록(PHR)은 환자중심의 건강정보교환 모델로 각광받고 있다. PHR 소유자는 언제 어디서나 쉽게 자신의 기록을 저장하고 회수할 수 있는 접근 권한을 누릴 수 있다. 하지만, PHR의 민감성과 신뢰성 특성 때문에 PHR은 개인이 접근할 수 있는 권한을 결정할 수 있도록 안전하게 유지되어야 한다. 본 논문에서는 응급상황에서 사용자의 PHR에 접근할 수 있는 시스템을 제안하였다. 환자가 의식이 없는 응급상황에서 응급센터요원은 PHR에 대해 미리 정의된 권한에 의하여 PHR 서버에 응급접근을 요청한 응급 정보를 사용할 수 있다. 제안된 시스템에서 PHR 사용자는 응급상황에서 좀 더 정교한 접근제어를 명세화 할 수 있다.

Keywords

References

  1. https://www.patientslikeme.com
  2. https://www.microsoft.com/microsoft-health
  3. http://www.microsoft.com/microsoft-band/
  4. https://www.healthvault.com/
  5. Chimezie Ogbuji, Karthik Gomadam, and Charles Petrie, "Web Technology and Architecture for Personal Health Records", IEEE Internet Computing, Vol. 15, No 4, pp. 10-13, July, 2011. https://doi.org/10.1109/MIC.2011.99
  6. Myung-Kyu Yi, Hee-Joung Hwang, "A Study on Security Weakness and Threats in Personal Health Record Services", The Journal of The Institute of Internet, Broadcasting and Communication, Vol.15, No. 6, pp.163-171, Dec. 31, 2015.
  7. Personal Health Records and the HIPAA Privacy Rule.
  8. Myung-Kyu Yi, Hee-Joung Hwang, "Design of Secure Personal Health Record Management Systems", Journal of Korean Institute Of Information Technology, Vol. 13(8), pp. 71-80, 2015.8 https://doi.org/10.14801/jkiit.2015.13.8.71
  9. Myung-Kyu Yi, Done-sik Yoo, Taeg-Keun Whangbo, "A Security Labeling Scheme for Privacy Protection in Personal Health Record System", The Journal of The Institute of Internet, Broadcasting and Communication, Vol.15, No. 6, pp.173-180, Dec. 31, 2015. https://doi.org/10.7236/JIIBC.2015.15.6.173