...
首页> 外文期刊>Electronic Journal of Health Informatics >Using a Client-Task Based Approach to Achieve a Privacy Compliant Access Control System
【24h】

Using a Client-Task Based Approach to Achieve a Privacy Compliant Access Control System

机译:使用基于客户端任务的方法来实现符合隐私的访问控制系统

获取原文
           

摘要

This article proposes a solution to the problem of assuring the privacy of low value client information such as that maintained by a hospital. The proposed solution involves the development of a compliant low-cost system. It is based on the fundamental requirement that such a system needs to provide integration, generalization and inbuilt consent. Integration brings together the technical, managerial and regulatory components of an organisation’s system. Generalization provides all the access control functionalities that are necessary for the system to be useful in a diverse range of organisations. Inbuilt consent ensures that data owners consent to the use of their personally identified data. The Integrated System proposed here uses a Client-Task approach. It is based on the observation that a client is not a user of the system yet has a form of ownership over their personally identified data held within the system. Furthermore, in industries such as health, professionals and managers often determine who has access rather than systems administrators.
机译:本文提出了一种解决方案,以确保诸如医院维护的低价值客户信息的隐私性。提议的解决方案涉及开发兼容的低成本系统。基于这样一个系统必须提供集成,泛化和内在同意的基本要求。集成将组织系统的技术,管理和法规组成部分整合在一起。通用化提供了系统在各种组织中有用的所有访问控制功能。内在同意确保数据所有者同意使用其个人识别数据。此处提出的集成系统使用客户端任务方法。基于这样的观察,客户端不是系统的用户,但对系统中保存的其个人识别数据具有所有权形式。此外,在诸如卫生之类的行业中,专业人员和管理人员通常会确定谁拥有访问权限,而不是系统管理员。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号