Privacy policy enforcement for health information data access

  • Authors:
  • Faiz Currim;Eunjin Jung;Xin Xiao;Insoon Jo

  • Affiliations:
  • The University of Iowa, Iowa City, USA;The University of Iowa, Iowa City, USA;The University of Iowa, Iowa City, USA;Seoul National University, Seoul, South Korea

  • Venue:
  • Proceedings of the 1st ACM international workshop on Medical-grade wireless networks
  • Year:
  • 2009

Quantified Score

Hi-index 0.02

Visualization

Abstract

Wireless technology is steadily improving the access and cost-effectiveness of healthcare data management. With the growth in information access, comes the challenge of maintaining patient record privacy and security. Our work develops an algorithm to evaluate ad-hoc user queries against database policies. We consider an efficient evaluation algorithm (defined at the schema-level), based on a classification of attributes in the policy and query (both of which can be written in SQL). Our algorithm can be used for policy integration as well, and scales well with typical query sizes that may be expected for mobile devices.