Zhang Ning, Rector Alan, Buchan Iain, Shi Qi, Kalra Dipak, Rogers Jeremy, Goble Carole, Walker Steve, Ingram David, Singleton Peter
School of Computer Science, University of Manchester, Manchester M13 9PL, UK.
Stud Health Technol Inform. 2005;112:234-45.
The issues of confidentiality and privacy have become increasingly important as Grid technology is being adopted in public sectors such as healthcare. This paper discusses the importance of protecting the confidentiality and privacy of patient health/medical records, and the challenges exhibited in enforcing this protection in a Grid environment. It proposes a novel algorithm to allow traceable/linkable identity privacy in dealing with de-identified medical records. Using the algorithm, de-identified health records associated to the same patient but generated by different healthcare providers are given different pseudonyms. However, these pseudonymised records of the same patient can still be linked by a trusted entity such as the NHS trust or HealthGrid manager. The paper has also recommended a security architecture that integrates the proposed algorithm with other data security measures needed to achieve the desired security and privacy in the HealthGrid context.
随着网格技术在医疗保健等公共部门的应用,保密性和隐私问题变得越来越重要。本文讨论了保护患者健康/医疗记录的保密性和隐私的重要性,以及在网格环境中实施这种保护所面临的挑战。它提出了一种新颖的算法,用于在处理去标识化医疗记录时允许可追溯/可链接的身份隐私。使用该算法,与同一患者相关但由不同医疗保健提供者生成的去标识化健康记录被赋予不同的假名。然而,同一患者的这些假名化记录仍可由诸如英国国家医疗服务体系信托机构或健康网格管理器等可信实体进行链接。本文还推荐了一种安全架构,该架构将所提出的算法与在健康网格环境中实现所需安全性和隐私所需的其他数据安全措施集成在一起。