Bouzelat H, Quantin C, Dusserre L
Department of Medical Informatics, Teaching Hospital of Dijon France.
Proc AMIA Annu Fall Symp. 1996:323-7.
To carry out the epidemiological study of patients suffering from a given cancer, the Department of Medical Informatics (DIM) has to link information coming from different hospitals and medical laboratories in the Burgundy region. Demands from the French department for computerized information security (Commission Nationale de l'Informatique et des Libertés: CNIL), in regard to abiding by the law of January 6, 1978, completed by the law of July 1st, 1994 on nominal data processing in the framework of medical research have to be taken into account. Notably, the CNIL advised to render anonymous patient identities before the extraction of each establishment file. This paper describes a recently implemented protocol, registered with the French department for computerized information security (Service Central de la Sécurité des Systèmes d'information : SCSSI) whose purpose is to render anonymous medical files in view of their extraction. Once rendered anonymous, these files will be exportable so as to be merged with other files and used in a framework of epidemiological studies. Therefore, this protocol uses the Standard Hash Algorithm (SHA) which allows the replacement of identities by their imprints while ensuring a minimal collision rate in order to allow a correct linkage of the different information concerning the same patient. A first evaluation of the extraction and anonymity software with regard to the purpose of an epidemiological survey is described here. In this paper, we also show how it would be possible to implement this system by means of the Internet communication network.
为了对特定癌症患者进行流行病学研究,医学信息学系(DIM)必须将勃艮第地区不同医院和医学实验室提供的信息进行关联。法国计算机信息安全部门(国家信息与自由委员会:CNIL)在遵守1978年1月6日法律的要求下,结合1994年7月1日关于医学研究框架内名义数据处理的法律,这些要求必须予以考虑。特别是,CNIL建议在提取每个机构文件之前对患者身份进行匿名处理。本文描述了一个最近实施的协议,该协议已在法国计算机信息安全部门(信息系统安全中央服务局:SCSSI)备案,其目的是在提取医学文件时使其匿名。一旦匿名化,这些文件将可导出,以便与其他文件合并并用于流行病学研究框架。因此,该协议使用标准哈希算法(SHA),该算法允许用身份印记替换身份,同时确保最小冲突率,以便正确关联同一患者的不同信息。本文介绍了针对流行病学调查目的对提取和匿名化软件的首次评估。在本文中,我们还展示了如何通过互联网通信网络实现该系统。