Securely Sharing Encrypted Medical Information
Arnab Deb Gupta, Yuriy Polyakov, Kurt R. Rohloff, Gerard W. Ryan · 2016
Modern medical data information systems must collect and present data to authorized users. Distributed longterm medical data storage requires an effective security model for delegating data access. An effective delegation model must keep data encrypted at all times and avoid the need to share decryption keys. We present a secure information architecture for implementing such a model with end-to-end data encryption that restricts data access to designated recipients. Our architecture uses recent Proxy Re-Encryption (PRE) advances in a publish-subscribe design pattern that can be used to securely share medical data. The architecture would lower medical data storage costs by using commodity cloud hosting while reducing vulnerability to attacks that compromise confidentiality of sensitive medical records.