A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection

碩士 === 淡江大學 === 資訊管理學系碩士班 === 96 === Nowadays, more and more healthcare providers use information systems to provide healthcare services. How to protect the private patient’s information is an important issue about security management of information to all healthcare providers. The Health Insura...

Full description

Bibliographic Details
Main Authors: Huan-Shuo Hsu, 許桓碩
Other Authors: Hung-Chang Li
Format: Others
Language:zh-TW
Published: 2008
Online Access:http://ndltd.ncl.edu.tw/handle/w5me32
id ndltd-TW-096TKU05396034
record_format oai_dc
spelling ndltd-TW-096TKU053960342019-05-15T20:33:09Z http://ndltd.ncl.edu.tw/handle/w5me32 A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection 以HIPAA為基礎之強化隱私權保護的電子病歷安全管控 Huan-Shuo Hsu 許桓碩 碩士 淡江大學 資訊管理學系碩士班 96 Nowadays, more and more healthcare providers use information systems to provide healthcare services. How to protect the private patient’s information is an important issue about security management of information to all healthcare providers. The Health Insurance Portability and Accountability Act enacted by the United State Congress in August, 1996, is the Federal Law which applies to the U.S healthcare industry. HIPAA specifies the guideline about health information security to enhance the healthcare quality. The regulations about patient’s privacy specifically indicate that the patients should have more power to control themselves’ health record, and the use and the disclosure of health information should be under the control safely. This research is to design a management of security to comply with HIPAA, to satisfy the necessity to exchange the electrical patient’s record, and to consider that the patients don’t need to disclosure the irrelevant health information to the healthcare workers. Therefore the session keys are made between the patient and each department of the hospital. If healthcare workers need to refer to the patient’s record in other department, they can get the record through the hospital using the mechanism of access control. Even the record is in other hospital, they are still able to get the record through the mechanism of interflow of electrical patient’s record between hospitals. Besides, the mechanism of security uses the advantage of elliptic curve cryptography, ex. better efficiency, stringer security, and shorter key length under the same security level. For the time cost establishing the key, the experiment result [13] shows that elliptic curve cryptography is quicker than DSA mechanism about 30% Hung-Chang Li 李鴻璋 2008 學位論文 ; thesis 48 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 淡江大學 === 資訊管理學系碩士班 === 96 === Nowadays, more and more healthcare providers use information systems to provide healthcare services. How to protect the private patient’s information is an important issue about security management of information to all healthcare providers. The Health Insurance Portability and Accountability Act enacted by the United State Congress in August, 1996, is the Federal Law which applies to the U.S healthcare industry. HIPAA specifies the guideline about health information security to enhance the healthcare quality. The regulations about patient’s privacy specifically indicate that the patients should have more power to control themselves’ health record, and the use and the disclosure of health information should be under the control safely. This research is to design a management of security to comply with HIPAA, to satisfy the necessity to exchange the electrical patient’s record, and to consider that the patients don’t need to disclosure the irrelevant health information to the healthcare workers. Therefore the session keys are made between the patient and each department of the hospital. If healthcare workers need to refer to the patient’s record in other department, they can get the record through the hospital using the mechanism of access control. Even the record is in other hospital, they are still able to get the record through the mechanism of interflow of electrical patient’s record between hospitals. Besides, the mechanism of security uses the advantage of elliptic curve cryptography, ex. better efficiency, stringer security, and shorter key length under the same security level. For the time cost establishing the key, the experiment result [13] shows that elliptic curve cryptography is quicker than DSA mechanism about 30%
author2 Hung-Chang Li
author_facet Hung-Chang Li
Huan-Shuo Hsu
許桓碩
author Huan-Shuo Hsu
許桓碩
spellingShingle Huan-Shuo Hsu
許桓碩
A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection
author_sort Huan-Shuo Hsu
title A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection
title_short A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection
title_full A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection
title_fullStr A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection
title_full_unstemmed A Security Management of Electrical Patient Record based HIPAA with Enhanced Privacy Protection
title_sort security management of electrical patient record based hipaa with enhanced privacy protection
publishDate 2008
url http://ndltd.ncl.edu.tw/handle/w5me32
work_keys_str_mv AT huanshuohsu asecuritymanagementofelectricalpatientrecordbasedhipaawithenhancedprivacyprotection
AT xǔhuánshuò asecuritymanagementofelectricalpatientrecordbasedhipaawithenhancedprivacyprotection
AT huanshuohsu yǐhipaawèijīchǔzhīqiánghuàyǐnsīquánbǎohùdediànzibìnglìānquánguǎnkòng
AT xǔhuánshuò yǐhipaawèijīchǔzhīqiánghuàyǐnsīquánbǎohùdediànzibìnglìānquánguǎnkòng
AT huanshuohsu securitymanagementofelectricalpatientrecordbasedhipaawithenhancedprivacyprotection
AT xǔhuánshuò securitymanagementofelectricalpatientrecordbasedhipaawithenhancedprivacyprotection
_version_ 1719100066659041280