• 제목/요약/키워드: Medical information privacy

검색결과 180건 처리시간 0.024초

프라이버시를 제공하는 스마트 컨트랙트 기반의 스마트 팩토리 주문제작 프로토콜 (Privacy-preserving Customized Order Service Protocol based on Smart Contract in Smart Factory)

  • 이용주;우성희;이상호
    • 한국정보통신학회논문지
    • /
    • 제23권2호
    • /
    • pp.215-222
    • /
    • 2019
  • 4차 산업에 대한 꾸준한 투자와 기술 개발로 스마트 팩토리 기술이 더욱 안정화되고 3D 프린팅을 포함한 관련 기술개발이 더욱 활발해진다면, 스마트 팩토리 도입비용이 낮아지고 현재의 고가의 상품 제조에 집중되는 현상에서 벗어나 소량 맞춤형 주문 제작을 위한 서비스로 변화 될 것이라고 기대한다. 그러나 소량의 주문제작을 위해 제3자에게 개인정보를 제공해야 하고 복잡한 결제시스템을 거쳐야 한다면 발전되는 기술에 비해 활용도는 그에 미치지 못할 수 있다. 이 논문에서는 기존 사물인터넷의 한계를 극복하고 새로운 패러다임을 가져다 줄 것으로 기대하는 블록체인 기술 융합의 스마트 팩토리 환경에서 프라이버시와 익명성을 제공하는 고객 맞춤형 제문제작을 위한 프로토콜을 제안한다. 제작자의 평판을 반영하여 고객 주문에 활용하고 주문 내용이 제작자 외에는 공개되지 않도록 프라이버시를 제공하는 고객 맞춤형 주문제작 방법을 제안하였다. 또한 제안하는 프로토콜의 요구사항을 검증하였고 관련연구와의 비교를 통하여 독창성을 확인하였다.

보건의료정보의 법적 보호와 열람.교부 (A Study on Legal Protection, Inspection and Delivery of the Copies of Health & Medical Data)

  • 정용엽
    • 의료법학
    • /
    • 제13권1호
    • /
    • pp.359-395
    • /
    • 2012
  • In a broad term, health and medical data means all patient information that has been generated or circulated in government health and medical policies, such as medical research and public health, and all sorts of health and medical fields as well as patients' personal data, referred as medical data (filled out as medical record forms) by medical institutions. The kinds of health and medical data in medical records are prescribed by Articles on required medical data and the terms of recordkeeping in the Enforcement Decree of the Medical Service Act. As EMR, OCS, LIS, telemedicine and u-health emerges, sharing and protecting digital health and medical data is at issue in these days. At medical institutions, health and medical data, such as medical records, is classified as "sensitive information" and thus is protected strictly. However, due to the circulative property of information, health and medical data can be public as well as being private. The legal grounds of health and medical data as such are based on the right to informational self-determination, which is one of the fundamental rights derived from the Constitution. In there, patients' rights to refuse the collection of information, to control recordkeeping (to demand access, correction or deletion) and to control using and sharing of information are rooted. In any processing of health and medical data, such as generating, recording, storing, using or disposing, privacy can be violated in many ways, including the leakage, forgery, falsification or abuse of information. That is why laws, such as the Medical Service Act and the Personal Data Protection Law, and the Guideline for Protection of Personal Data at Medical Institutions (by the Ministry of Health and Welfare) provide for technical, physical, administrative and legal safeguards on those who handle personal data (health and medical information-processing personnel and medical institutions). The Personal Data Protection Law provides for the collection, use and sharing of personal data, and the regulation thereon, the disposal of information, the means of receiving consent, and the regulation of processing of personal data. On the contrary, health and medical data can be inspected or delivered of the copies, based on the principle of restriction on fundamental rights prescribed by the Constitution. For instance, Article 21(Access to Record) of the Medical Service Act, and the Personal Data Protection Law prescribe self-disclosure, the release of information by family members or by laws, the exchange of medical data due to patient transfer, the secondary use of medical data, such as medical research, and the release of information and the release of information required by the Personal Data Protection Law.

  • PDF

건강정보원 평가기준에 대한 공공도서관 및 의학도서관 사서간 인식비교 연구 (A Study Comparing Public and Medical Librarians' Perceptions of Evaluation Guidelines for Health & Medical Information)

  • 노영희
    • 한국비블리아학회지
    • /
    • 제25권1호
    • /
    • pp.107-129
    • /
    • 2014
  • 신뢰성 있고 품질 높은 검증된 정보원을 제공하는 것은 앞으로 사서의 기본 능력 중의 하나가 될 것이다. 따라서 본 연구에서는 건강관련 정보원의 평가기준을 도서관 사서들의 인식조사를 기반으로 제안하고자 하였다. 그 결과 총 21개의 평가항목이 선정되었으며, 그 중 건강/의학 관련 정보내용 그룹에는 정보의 정확성, 정보의 최신성, 정보의 의학 전문성, 정기적 업데이트, 이용자의 입장을 고려한 정보, 정보의 객관성, 이해하기 쉬운 정보, 평이한 언어로 제공되는 정보, 정보의 완전성, 주제와의 관련성, 정보의 검증 가능성, 정보 출처 명시, 주의사항 및 경고를 명시 등 총 13개의 항목이 선정되었다. 건강/의학정보 제공원 그룹에는 건강정보 제공목적의 명확성, 건강정보에 대한 책임성 명시, 개인정보 보호정책 준수, 건강정보 제공기관의 공정성, 건강정보 제공기관의 윤리성 등 5개의 항목이 선정되었으며, 건강/의학정보 웹사이트 디자인 그룹에는 건강정보 접근의 용이성, 건강정보 검색기능 제공, 웹사이트 사용의 편리성, 질의 응답 서비스 제공 등 4개의 항목이 선정되었다.

A Secure and Efficient E-Medical Record System via Searchable Encryption in Public Platform

  • Xu, Lei;Xu, Chungen;Zhang, Xing
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제11권9호
    • /
    • pp.4624-4640
    • /
    • 2017
  • This paper mainly presents a secure and efficient e-Medical Record System via searchable encryption scheme from asymmetric pairings, which could provide privacy data search and encrypt function for patients and doctors in public platform. The core technique of this system is an extension public key encryption system with keyword search, which the server could test whether or not the files stored in platform contain the keyword without leaking the information about the encrypted file. Compared with former e-medical record systems, the system proposed here has several superior features: (1)Users could search the data stored in cloud server contains some keywords without leaking anything about the origin data. (2) We apply asymmetric pairings to achieve shorter key size scheme in the standard model, and adopt the dual system encryption technique to reduce the scheme's secure problem to the hard Symmetric External Diffie-Hellman assumption, which could against the variety of attacks in the future complex network environment. (3) In the last of paper, we analyze the scheme's efficiency and point out that our scheme is more efficient and secure than some other classical searchable encryption models.

의료영상에서 Polar 변환을 적용한 강인한 워터마킹 기법 (Robust Watermarking in Medical Images Using by Polar Transformation)

  • 남기철;박무훈
    • 한국정보통신학회논문지
    • /
    • 제8권2호
    • /
    • pp.379-385
    • /
    • 2004
  • 일반 의료기관에서의 PACS를 이용한 효율적인 환자 영상의 관리가 늘어가고 있다. 그런 환경하에서 환자의 사생활 보호와 의료영상 자체의 소유권, 재산권의 여부 및 데이터 변형 여부의 판별이 중요시된다. 의료데이타의 보호를 위해 디지털 워터마킹이 사용되며, 본 논문에서는 RST공격에 강인한 워터마킹 기법을 제안한다. 기존에 제안된 기하학적 변형에 강인한 워터마킹 기법중에서 Log-Polar변환과 Fourier-Mellin 변환을 이용한 방법은 영상에 가해진 RST공격을 영상의 좌표변환과 DFT의 순환적 이동 특성을 이용하여 강인성을 확보한다. 하지만 실제적 구현에서 원영상과 워터마크의 손실이 문제 시 된다. 본 논문에서는 반지름-위상 Look Up Table을 이용하여 좌표변환 시 발생하는 손실을 막으면서 회전에 강인한 워터마킹 기법을 제안한다.

무선센서네트워크 환경하에서 RFID 헬스 시스템을 위한 보안 (Privacy and Security Model for RFID Healthcare System in Wireless Sensor Network)

  • 김정태
    • 한국정보통신학회:학술대회논문집
    • /
    • 한국정보통신학회 2012년도 춘계학술대회
    • /
    • pp.439-441
    • /
    • 2012
  • The use of a mobile agent in hospital environment offers an opportunity to deliver better services for patients and staffs. Furthermore, medical errors will be reduced because M-health system helps to verify the medical process. Optimized security protocols and mechanisms are employed for the high performance and security. Finally, a challenge in the near future will be converge the integration of Ubiquitous Sensor Network (USN) with security protocols for applying the hospital environment. We proposed secure authentication and protocol with Mobile Agent for ubiquitous sensor network under healthcare system surroundings.

  • PDF

모바일과 의료서비스 간의 새로운 융합 가능성에 관한 연구 (A Study on the Possible New Fusion between Mobile and Healthcare Service)

  • 신용재;김진화;이재범
    • 한국IT서비스학회지
    • /
    • 제11권sup호
    • /
    • pp.27-39
    • /
    • 2012
  • As many applications are possible now in mobile environment with the trend of mobile convergence, diverse applications in healthcare industry are also possible in mobile devices. Though lots of researches on mobile and health services are introduced, they are limited to specific area or techniques. This study shows possible directions of fusion between mobile technologies and health services in the future using a data mining technique called association rule analysis. The data used in this study is collected from web pages containing key words related to mobile technologies and health services. The analysis shows that current cases of fusion between monitoring based telemedicine and patients. It also shows another case of fusion between mobile hospital and medical screen charts. These show that fusion between mobile technologies and health services already began in industry. Association rules are found between well-being, city, diet, and sleep. The association rules containing security and privacy, though their associations are not so strong, also show that security and privacy of patient information should be protected in the future. The results show that the fusion of mobile technologies and health services is expected to provide health services to more users and larger areas. It is also expected to create new diverse business models in the future.

함수 기반의 체내 삽입장치용 보안 인증프로토콜 검증 (Verification of a Function-based Security Authentication Protocol for Implantable Medical Devices)

  • 배우식;한군희
    • 디지털융복합연구
    • /
    • 제12권5호
    • /
    • pp.249-254
    • /
    • 2014
  • 최근 USN 기술의 발전으로 의료기술 분야에서 서비스를 받을 수 있는 체내 삽입장치 통신기술이 많은 발전을 하고 있다. 체내 삽입장치(Implantable Medical Device)는 환자와 장비사이에 무선으로 전송되는 구간이 있어서 외부 공격자의 해킹으로 인한 환자의 개인 의료정보 유출사고로 프라이버시 침해 발생이 우려되고 있다. 또한 환자의 의료 정보를 조작할 경우 심각한 의료 문제가 발생할 수 있다. 본 논문에서는 체내 삽입장치에 RFID/USN 기술을 이용할 때 공격자의 공격에 안전한 인증프로토콜을 제안한다. 해시함수 기반으로 연산하며 세션키와 난수를 도입하여 재 암호화를 방지하고 스푸핑공격, 정보노출 및 도청공격에 안전하며 이를 증명하기 위해 정형검증 도구인 Casper/FDR 도구를 이용하여 보안성을 검증 실험하였으며 안전함이 확인되었다.

보건의료 데이터 연구 개발 활용의 장애요인 및 활성화 방안 제언 (Addressing Challenges in Leveraging Health and Medical Data for Research and Development)

  • 조규석;방영석
    • 한국IT서비스학회지
    • /
    • 제23권3호
    • /
    • pp.39-54
    • /
    • 2024
  • This study explores the barriers to using health and medical data in research and development (R&D) within the healthcare industry and suggests ways to enhance data utilization. As artificial intelligence technology drives transformative changes across industries, there is an increased demand for robust health and medical data, highlighting its critical economic value and utility in fostering innovation. Using qualitative analysis through Grounded Theory, the study involves ten R&D professionals from healthcare industry, including both medical centers and corporations, using surveys and in-depth interviews to gather diverse experiences and perspectives on the challenges and opportunities in health and medical data use. Key findings point to legislative, regulatory, and data quality and integration issues, as well as complexities in patient data access and usage. Technological limitations and inadequate data governance frameworks also emerge as significant obstacles. Recommendations focus on improving regulatory frameworks, enhancing data standardization and quality, and fostering stronger partnerships between data custodians and users. The study concludes that overcoming these obstacles requires a comprehensive strategy involving legislative changes, improved technological infrastructure, and increased stakeholder collaboration. Implementing these recommendations could greatly enhance health and medical data utilization in R&D, significantly advancing medical science and patient care services.

Positive and Negative Effects of IT on Cancer Registries

  • Mohammadzadeh, Niloofar;Safdari, Reza;Rahimi, Azin
    • Asian Pacific Journal of Cancer Prevention
    • /
    • 제14권7호
    • /
    • pp.4455-4457
    • /
    • 2013
  • In the new millennium people are facing serious challenges in health care, especially with increasing non-communicable diseases (NCD). One of the most common NCDs is cancer which is the leading cause of death in developed countries and in developing countries is the second cause of death after heart diseases. Cancer registry can make possible the analysis, comparison and development of national and international cancer strategies and planning. Information technology has a vital role in quality improvement and facility of cancer registries. With the use of IT, in addition to gaining general benefits such as monitoring rates of cancer incidence and identifying planning priorities we can also gain specific advantages such as collecting information for a lifetime, creating tele medical records, possibility of access to information by patient, patient empowerment, and decreasing medical errors. In spite of the powerful role of IT, we confront various challenges such as general problems, like privacy of the patient, and specific problems, including possibility of violating patients rights through misrepresentation, omission of human relationships, and decrease in face to face communication between doctors and patients. By implementing appropriate strategies, such as identifying authentication levels, controlling approaches, coding data, and considering technical and content standards, we can optimize the use of IT. The aim of this paper is to emphasize the need for identifying positive and negative effects of modern IT on cancer registry in general and specific aspects as an approach to cancer care management.