Assurance: the power behind PCASSO security

被引:0
|
作者
Baker, DB [1 ]
Masys, DR
Jones, RL
Barnhart, RM
机构
[1] SAIC, La Jolla, CA USA
[2] UCSD, La Jolla, CA 92093 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The need for security protection in Internet-based healthcare applications is generally acknowledged. Most healthcare applications that use the Internet have at least implemented some kind of encryption. Most applications also enforce user authentication and access control policies, and many audit user actions. However, most fall short on providing strong assurances that the security mechanisms are behaving as expected and that they cannot be subverted While no system can claim to be totally "bulletproof," PCASSO provides assurance of correct operation through formal, disciplined design and development methodologies, as well as through functional and penetration testing. Through its security mechanisms, backed by strong system assurances, PCASSO is demonstrating "safe" use of public data networks for health care.
引用
收藏
页码:666 / 670
页数:5
相关论文
共 50 条
  • [1] PCASSO: Applying and extending state-of-the-art security in the healthcare domain
    Baker, DB
    Barnhart, RM
    Buss, TT
    13TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 1997, : 251 - 260
  • [2] A security assurance architecture for electric power information system
    Yu, Y
    Lin, WM
    Yu, G
    Proceedings of the World Engineers' Convention 2004, Vol F-B, Power and Energy, 2004, : 324 - 328
  • [3] Security Assurance
    Lipner, Steven B.
    COMMUNICATIONS OF THE ACM, 2015, 58 (11) : 24 - 26
  • [4] Software assurance for security
    McGraw, G
    COMPUTER, 1999, 32 (04) : 103 - 105
  • [5] Search for assurance and security
    Burger, Rudolf
    MERKUR-DEUTSCHE ZEITSCHRIFT FUR EUROPAISCHES DENKEN, 2007, 61 (04): : 324 - 332
  • [6] Security assurance for an RBAC/MAC security model
    Phillips, CE
    Demurjian, SA
    Ting, TC
    IEEE SYSTEMS, MAN AND CYBERNETICS SOCIETY INFORMATION ASSURANCE WORKSHOP, 2003, : 260 - 267
  • [7] Security Assurance for Smart Contract
    Zhou, Ence
    Hua, Song
    Pi, Bingfeng
    Sun, Jun
    Nomura, Yashihide
    Yamashita, Kazuhiro
    Kurihara, Hidetoshi
    2018 9TH IFIP INTERNATIONAL CONFERENCE ON NEW TECHNOLOGIES, MOBILITY AND SECURITY (NTMS), 2018,
  • [8] Identity assurance and network security
    Serrato, C., 1600, Elsevier Ltd (2012):
  • [9] Security evaluation for information assurance
    Kim, Yong-Tae
    Park, Gil-Cheol
    Kim, Tai-Hoon
    Lee, Sang-Ho
    ICCSA 2007: PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND APPLICATIONS, 2007, : 227 - +
  • [10] Information Assurance for security protocols
    Bella, G
    Bistarelli, S
    COMPUTERS & SECURITY, 2005, 24 (04) : 322 - 333