SecFHIR: A Security Specification Model for Fast Healthcare Interoperability Resources

Abstract

Patients taking medical treatment in distinct healthcare institutions have their information deeply fragmented between very different locations. All this information --- probably with different formats --- may be used or exchanged to deliver professional healthcare services. As the exchange of information/ interoperability is a key requirement for the success of healthcare process, various predefined e-health standards have been developed. Such standards are designed to facilitate information interoperability in common formats. Fast Healthcare Interoperability Resources (FHIR) is a newly open healthcare data standard that aims to providing electronic healthcare interoperability. FHIR was coined in 2014 to address limitations caused by the ad-hoc implementation and the distributed nature of modern medical care information systems. Patient’s data or resources are structured and standard in FHIR through a highly readable format such as XML or JSON. However, despite the unique features of FHIR, it is not a security protocol, nor does it provide any security-related functionality. In this paper, we propose a security specification model (SecFHIR) to support the development of intuitive policy schemes that are mapping directly to the healthcare environment. The formal semantics for SecFHIR are based on the well-established typing and the independent platform properties of XML. Specifically, patients’ data are modeled in FHIR using XML documents. In our model, we assume that these XML resources are defined by a set of schemes. Since XML Schema is a well-formed XML document, the permission specification can be easily integrated to the schema itself, then the specified permissions are applied to instance objects without any change. In other words, our security model (SecFHIR) defines permissions on XML schemes level, which implicitly specify the permissions on XML resources. Using these schemes, SecFHIR can combine them to support complex constraints over XML resources. This will result in reusable permissions, which efficiently simplify the security administration and achieve fine-grained access control. We also discuss the core elements of the proposed model, as well as the integration with the FHIR framework.

Authors and Affiliations

Ahmad Altamimi

Keywords

Related Articles

Nonlinear Model Predictive Control for pH Neutralization Process based on SOMA Algorithm

In this work, the pH neutralization process is described by a neural network Wiener (NNW) model. A nonlinear Model Predictive Control (NMPC) is established for the considered process. The main difficulty that can be enco...

PSO Based Short-Term Hydrothermal Scheduling with Prohibited Discharge Zones 

This paper presents a new approach to determine the optimal hourly schedule of power generation in a hydrothermal power system using PSO technique.. The simulation results reveal that the proposed PSO approach appears to...

An RTOS-based Fault Injection Simulator for Embedded Processors

Evaluating embedded systems vulnerability to faults injection attacks has gained importance in recent years due to the rising threats they bring to chips security. The task is particularly important for micro-controllers...

A Novel Approach for Ontology-Driven Information Retrieving Chatbot for Fashion Brands

Chatbots or conversational agents are the most projecting and widely employed artificial assistants on online social media. These bots converse with the humans in audio, visual, or textual formats. It is quite intelligib...

Impact of Heterogeneous Deployment on Source Initiated Reactive Approach

Selection of an optimal number of high energy level nodes and the most appropriate heterogeneity level is a prerequisite in the heterogeneous deployment of wireless sensor network, and it serves several purposes like enh...

Download PDF file
  • EP ID EP138767
  • DOI 10.14569/IJACSA.2016.070645
  • Views 93
  • Downloads 0

How To Cite

Ahmad Altamimi (2016). SecFHIR: A Security Specification Model for Fast Healthcare Interoperability Resources. International Journal of Advanced Computer Science & Applications, 7(6), 350-355. https://europub.co.uk/articles/-A-138767