Flexible patient-controlled security for electronic health records

Thomas Hupperich, Hans Löhr, Ahmad‐Reza Sadeghi, Marcel Winandy · 2012

Electronic health records (EHR) are a convenient method to exchange medical information of patients between different healthcare providers. In many countries privacy laws require to protect the confidentiality of these data records and let the patient control the access to them. Existing approaches to protect the privacy of EHRs are either insufficient for these strict laws or they are too restrictive in their usage. For example, smartcard-based encryption systems require the patient to be always present to authorize access to medical records. However, this does not allow a physician to access an EHR of a patient who is unable to show up in person.

Read the paper · More papers on PaperTik