Anonymization and Pseudonymization of FHIR Resources for Secondary Use of Healthcare Data

被引:2
作者
Raso, Emanuele [1 ]
Loreti, Pierpaolo [2 ]
Ravaziol, Michele [3 ]
Bracciale, Lorenzo [2 ]
机构
[1] Univ Roma Tor Vergata, Dept Civil Engn & Comp Sci Engn, I-00133 Rome, Italy
[2] Univ Roma Tor Vergata, Dept Elect Engn, I-00133 Rome, Italy
[3] Docunque SRL, I-00044 Frascati, Italy
关键词
Medical services; Standards; Information integrity; Information filtering; Biomedical imaging; Interoperability; History; Privacy; Medical treatment; Patient monitoring; Medical information systems; Legal factors; Electronic medical records; Data privacy; Anonymisation; de-identification; FHIR; healthcare; pseudonymisation; privacy; DE-IDENTIFICATION; REIDENTIFICATION;
D O I
10.1109/ACCESS.2024.3381034
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Along with the creation of medical profiles of patients, Electronic Health Records have several secondary missions, such as health economy and research. The recent, increasing adoption of a common standard, i.e., the Fast Healthcare Interoperability Resources (FHIR), makes it easier to exchange medical data among the several parties involved, for example, in an epidemiological research activity. However, this exchange process is hindered by regulatory frameworks due to privacy issues related to the presence of personal information, which allows patients to be identified directly (or indirectly) from their medical data. When properly used, de-identification techniques can provide crucial support in overcoming these problems. FHIR-DIET aims to bring flexibility and concreteness to the implementation of de-identification of health data, supporting many customised data-processing behaviours that can be easily configured and tailored to match specific use case requirements. Our solution enables faster and easier cooperation between legal and IT professionals to establish and implement de-identification rules. The performance evaluation demonstrates the viability of processing hundreds of FHIR patient information data per second using standard hardware. We believe FHIR-DIET can be a valuable tool to satisfy the current regulation requirements and help to create added-value for the secondary use of healthcare data.
引用
收藏
页码:44929 / 44939
页数:11
相关论文
共 41 条
[1]  
AEPD & EDPS, 2019, INTRO HASH FUNCTION
[2]  
[Anonymous], 2014, OPINION 052014 ANONY
[3]  
[Anonymous], 2012, Guidance on De-Identification of Protected Health Information
[4]  
[Anonymous], 2021, Cloud Healthcare API
[5]  
Antoniou A., 2022, arXiv
[6]  
Ayala-Rivera V, 2014, TRANS DATA PRIV, V7, P337
[7]   Evaluating re-identification risks with respect to the HIPAA privacy rule [J].
Benitez, Kathleen ;
Malin, Bradley .
JOURNAL OF THE AMERICAN MEDICAL INFORMATICS ASSOCIATION, 2010, 17 (02) :169-177
[8]  
Dimopoulou S., 2022, PROC 7 INT C MOBILE, P1
[9]   Traditional and Hybrid Encryption Techniques: A Survey [J].
Dixit, Pooja ;
Gupta, Avadhesh Kumar ;
Trivedi, Munesh Chandra ;
Yadav, Virendra Kumar .
NETWORKING COMMUNICATION AND DATA KNOWLEDGE ENGINEERING, VOL 2, 2018, 4 :239-248
[10]  
Dwork C, 2006, LECT NOTES COMPUT SC, V4052, P1