Dynamic access control model for privacy preserving personalized healthcare in cloud environment

Technol Health Care. 2015:24 Suppl 1:S123-9. doi: 10.3233/THC-151059.

Abstract

When sharing and storing healthcare data in a cloud environment, access control is a central issue for preserving data privacy as a patient's personal health data may be accessed without permission from many stakeholders. Specifically, dynamic authorization for the access of data is required because personal health data is stored in cloud storage via wearable devices. Therefore, we propose a dynamic access control model for preserving the privacy of personal healthcare data in a cloud environment. The proposed model considers context information for dynamic access. According to the proposed model, access control can be dynamically determined by changing the context information; this means that even for a subject with the same role in the cloud, access permission is defined differently depending on the context information and access condition. Furthermore, we experiment the ability of the proposed model to provide correct responses by representing a dynamic access decision with real-life personalized healthcare system scenarios.

Keywords: Privacy protection; cloud environment; dynamic access control; ontological concept; personalized healthcare.

Publication types

  • Research Support, Non-U.S. Gov't

MeSH terms

  • Confidentiality*
  • Humans
  • Information Storage and Retrieval / standards*
  • Internet / standards*
  • Medical Records Systems, Computerized / standards*
  • Models, Theoretical
  • Privacy*