Suppr超能文献

实现可信移动健康的政策管理标准

Policy Management Standards Enabling Trustworthy pHealth.

作者信息

Blobel Bernd, Davis Mike, Ruotsalainen Pekka

机构信息

Medical Faculty, University of Regensburg, Germany.

U.S. Department of Veterans Affairs, San Diego, USA.

出版信息

Stud Health Technol Inform. 2014;200:8-21.

Abstract

Current paradigm changes for improving safety, quality and efficiency of care processes under massive deployment of information and communication technologies (ICT) place high requirements on privacy and security. These mainly focus on privilege management and access control harmonized in international standards and their further evolution. NIST and ISO, but especially HL7 play a prominent role in this context. Starting with classic role-based access control (RBAC) foundations to new specifications for security and privacy labeling of segmented health information, HL7 security is presented as a scalable intermediate solution on the way to comprehensive privilege management and access control by explicit, ontology-based, formal and therefore machine-processable policies. The successfully balloted HL7 labeling specification supports context-sensitive communication and cooperation between different stakeholders and processes with different purposes of use, based on meta-data of information, actors and processes involved. Basics of policy management and practical solutions are discussed.

摘要

在大规模部署信息通信技术(ICT)的情况下,当前用于改善护理流程安全性、质量和效率的范式转变对隐私和安全提出了很高的要求。这些要求主要集中在国际标准中协调的特权管理和访问控制及其进一步发展。美国国家标准与技术研究院(NIST)和国际标准化组织(ISO),尤其是卫生信息和管理系统协会(HL7)在这方面发挥着重要作用。从经典的基于角色的访问控制(RBAC)基础到分段健康信息安全和隐私标签的新规范,HL7安全被视为一种可扩展的中间解决方案,旨在通过明确的、基于本体的、形式化且因此可由机器处理的策略实现全面的特权管理和访问控制。成功投票通过的HL7标签规范基于所涉及信息、参与者和流程的元数据,支持不同利益相关者和具有不同使用目的的流程之间的上下文敏感通信与合作。本文讨论了策略管理的基础和实际解决方案。

文献AI研究员

20分钟写一篇综述,助力文献阅读效率提升50倍。

立即体验

用中文搜PubMed

大模型驱动的PubMed中文搜索引擎

马上搜索

文档翻译

学术文献翻译模型,支持多种主流文档格式。

立即体验