A comprehensive security framework for the communication and storage of medical images

被引:2
|
作者
Slik, D [1 ]
Montour, M [1 ]
Altman, T [1 ]
机构
[1] Bycast Inc, Vancouver, BC V6H 3V3, Canada
关键词
security; HIPAA; access control; administrative domains; audit; tampering; cryptography; tokens; authentication; data integrity;
D O I
10.1117/12.480475
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Confidentiality, integrity verification and access control of medical imagery and associated metadata is critical for the successful deployment of integrated healthcare networks that extend beyond the department level. As medical imagery continues to become widely accessed across multiple administrative domains and geographically distributed locations, image data should be able to travel and be stored on untrusted infrastructure, including public networks and server equipment operated by external entities. Given these challenges associated with protecting large-scale distributed networks, measures must be taken to protect patient identifiable information while guarding against tampering, denial of service attacks, and providing robust audit mechanisms. The proposed framework outlines a series of security practices for the protection of medical images, incorporating Transport Layer Security (TLS), public and secret key cryptography, certificate management and a token based trusted computing base. It outlines measures that can be utilized to protect information stored within databases, online and nearline storage, and during transport over trusted and untrusted networks. In addition, it provides a framework for ensuring end-to-end integrity of image data from acquisition to viewing, and presents a potential solution to the challenges associated with access control across multiple administrative domains and institution user bases.
引用
收藏
页码:212 / 223
页数:12
相关论文
共 50 条
  • [31] A Security Technique for Authentication and Security of Medical Images in Health Information Systems
    Kester, Quist-Aphetsi
    Nana, Laurent
    Pascu, Anca Christine
    Gire, Sophie
    Eghan, Jojo M.
    Quaynor, Nii Narku
    2015 15TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ITS APPLICATIONS (ICCSA), 2015, : 8 - 13
  • [32] IS security management framework: A comprehensive life cycle perspective
    Warkentin, M
    Schmidt, MB
    Johnston, AC
    Boren, M
    INNOVATIONS THROUGH INFORMATION TECHNOLOGY, VOLS 1 AND 2, 2004, : 471 - 474
  • [33] A Security Assurance Framework for Networked Medical Devices
    Finnegan, Anita
    McCaffery, Fergal
    Coleman, Gerry
    PRODUCT-FOCUSED SOFTWARE PROCESS IMPROVEMENT, 2013, 7983 : 363 - 366
  • [34] A comprehensive privacy and security framework for dynamic protection (CPSF)
    Abi Sen A.A.
    International Journal of Information Technology, 2022, 14 (5) : 2477 - 2485
  • [35] A Theoretical Framework for a Comprehensive Approach to Medical Humanitarianism
    Chung, Ryoa
    PUBLIC HEALTH ETHICS, 2012, 5 (01) : 49 - 55
  • [36] The nature of security: A conceptual framework for integral-comprehensive modeling of IT security and cybersecurity
    Villalon-Fonseca, Ricardo
    COMPUTERS & SECURITY, 2022, 120
  • [37] Transmission and storage of medical images with patient information
    Acharya, R
    Bhat, PS
    Kumar, S
    Min, LC
    COMPUTERS IN BIOLOGY AND MEDICINE, 2003, 33 (04) : 303 - 310
  • [38] Compact storage of medical images with patient information
    Acharya, UR
    Anand, D
    Bhat, PS
    Niranjan, UC
    IEEE TRANSACTIONS ON INFORMATION TECHNOLOGY IN BIOMEDICINE, 2001, 5 (04): : 320 - 323
  • [39] KBV plans comprehensive changes to IT security in medical practices
    不详
    UROLOGIE, 2025, 64 (02):
  • [40] A robust security framework for 3D images
    Bhatnagar, Gaurav
    Wu, Jonathan
    Raman, Balasubramanian
    JOURNAL OF VISUALIZATION, 2011, 14 (01) : 85 - 93