A capability-based, role-centric access control mechanism for IOMT-enhanced, cloud-based P H R S

Flora Malamateniou, Marinos Themistocleous, Andriana Prentza, George Vassilacopoulos

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The Internet of Medical Things (IoMT) can be described as connecting everyday devices and wearables to the Internet in order to intelligently link them together, thus enabling new forms of communication between things (medical devices) and people (patients) and between things themselves. Thus, IoMT technology in conjunction with cloud computing can support a new generation of personal health record (PHR) platforms that enable compiling and maintaining on the cloud patient data from multiple sources, including Internet connected medical devices and sensors from the patient living space. However, PHRs require security policies and mechanisms to ensure that patient data are protected and that patient privacy is adhered to. This paper describes a pervasive context-based access control mechanism that has been developed on the premises of the role-based and attribute-based access control (RABAC) and the capability-based access control models to enable patients and healthcare providers specify authorization and access control policies with regard to PHR data disclosure. A prototype of the mechanism is intended to be incorporated into a cloud-based PHR, namely PINCLOUD, that enables collecting, tracking and sharing patient data from various sources.

Original languageEnglish
Title of host publicationProceedings of the 13th European, Mediterranean and Middle Eastern Conference on Information Systems, EMCIS 2016
EditorsMarinos Themistocleous, Vincenzo Morabito, Ahmad Ghoneim
PublisherUniversity of Piraeus, International Strategic Management Association
Pages264-279
Number of pages16
ISBN (Electronic)9789606897092
Publication statusPublished - 2016
Externally publishedYes
Event13th European, Mediterranean and Middle Eastern Conference on Information Systems, EMCIS 2016 - Krakow, Poland
Duration: 23 Jun 201624 Jun 2016

Publication series

NameProceedings of the 13th European, Mediterranean and Middle Eastern Conference on Information Systems, EMCIS 2016

Conference

Conference13th European, Mediterranean and Middle Eastern Conference on Information Systems, EMCIS 2016
Country/TerritoryPoland
CityKrakow
Period23/06/1624/06/16

Keywords

  • Access control
  • Capabilities-based model
  • IoMT
  • Patient privacy
  • Personal health records
  • Role-centric model

Fingerprint

Dive into the research topics of 'A capability-based, role-centric access control mechanism for IOMT-enhanced, cloud-based P H R S'. Together they form a unique fingerprint.

Cite this