首页> 外文会议>International conference on information systems >An Activity Theory Approach to Specification of Access Control Policies in Transitive Health Workflows
【24h】

An Activity Theory Approach to Specification of Access Control Policies in Transitive Health Workflows

机译:及时保健工作流程访问控制策略规范的活动理论方法

获取原文

摘要

Access control models are implemented to mitigate the risks of unauthorized access in Electronic Health Records (EHRs). These models provide authorization with the help of security policies, wherein the protected resource is governed by one or more policies that exactly specify what attributes a requester needs to fulfill in order to obtain access. However, due to the increasing complexity of current healthcare system, defining and implementing policies are becoming more and more difficult. In this research-in-progress paper, we present an Activity Theory driven methodology to formalize access control policies that can be used in enforcing patient's privacy consent in a healthcare setting. In order to account for the transitivity in health workflows, we extend the Activity Theory to include "organizational interconnectedness" within the health workflows.
机译:实现访问控制模型,以减轻电子健康记录(EHRS)中未经授权访问的风险。这些模型提供了在安全策略的帮助下提供授权,其中受保护的资源由一个或多个策略管理,精确地指定请求者需要满足的属性来获取访问权限。但是,由于当前医疗保健系统的复杂性越来越复杂,定义和实施政策变得越来越困难。在这篇研究中,我们提出了一种活动理论驱动方法,以正规化可用于在医疗环境中实施患者隐私同意的访问控制策略。为了考虑健康工作流程的传递,我们将活动理论扩展到卫生工作流程中的“组织互连”。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号