首页> 外文期刊>BMC Medical Research Methodology >A proposed architecture and method of operation for improving the protection of privacy and confidentiality in disease registers
【24h】

A proposed architecture and method of operation for improving the protection of privacy and confidentiality in disease registers

机译:一种提出的架构和操作方法,用于改善疾病寄存器中的隐私和机密性的保护

获取原文
       

摘要

Background Disease registers aim to collect information about all instances of a disease or condition in a defined population of individuals. Traditionally methods of operating disease registers have required that notifications of cases be identified by unique identifiers such as social security number or national identification number, or by ensembles of non-unique identifying data items, such as name, sex and date of birth. However, growing concern over the privacy and confidentiality aspects of disease registers may hinder their future operation. Technical solutions to these legitimate concerns are needed. Discussion An alternative method of operation is proposed which involves splitting the personal identifiers from the medical details at the source of notification, and separately encrypting each part using asymmetrical (public key) cryptographic methods. The identifying information is sent to a single Population Register, and the medical details to the relevant disease register. The Population Register uses probabilistic record linkage to assign a unique personal identification (UPI) number to each person notified to it, although not necessarily everyone in the entire population. This UPI is shared only with a single trusted third party whose sole function is to translate between this UPI and separate series of personal identification numbers which are specific to each disease register. Summary The system proposed would significantly improve the protection of privacy and confidentiality, while still allowing the efficient linkage of records between disease registers, under the control and supervision of the trusted third party and independent ethics committees. The proposed architecture could accommodate genetic databases and tissue banks as well as a wide range of other health and social data collections. It is important that proposals such as this are subject to widespread scrutiny by information security experts, researchers and interested members of the general public, alike.
机译:背景疾病寄存器旨在收集有关疾病或条件的所有情况的信息。传统上运行疾病寄存器的方法要求通过唯一标识符(如社会安全号码或国家识别号)或非独特识别数据项的集合来识别案件的通知,例如姓名,性别和出生日期。然而,对疾病寄存器的隐私和机密性方面的兴趣日益关注可能会阻碍他们未来的运作。需要对这些合法担忧的技术解决方案。讨论,提出了一种替代的操作方法,涉及将个人标识符从通知源分割,并使用非对称(公钥)加密方法单独加密每个零件。识别信息被发送到单个人口寄存器,以及相关疾病登记册的医学细节。人口寄存器使用概率记录链接来为每个通知的人分配唯一的个人识别(UPI)编号,尽管整个人口中的每个人都不一定是每个人。此UPI仅与单个可信的第三方共享,其唯一函数是在该UPI和单独的各个疾病寄存器中的单独个人识别号之间转换。摘要制定的系统将大大改善隐私和保密的保护,同时仍然允许在可信第三方和独立伦理委员会的控制和监督下,疾病登记册之间的记录有效联系。拟议的架构可以容纳遗传数据库和组织库以及各种其他健康和社交数据收集。重要的是,诸如此类的建议是通过信息安全专家,研究人员和公众的感兴趣的,相似的广泛审查。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号