Harmonizing regulatory regimes for the governance of patient-generated health data

被引:17
作者
Winter, Jenifer Sunrise [1 ]
Davidson, Elizabeth [2 ]
机构
[1] Univ Hawaii Manoa, Sch Commun, 2550 Campus Rd,Crawford 325, Honolulu, HI 96822 USA
[2] Univ Hawaii Manoa, Shidler Coll Business, Dept Informat Technol Management, 2404 Maile Way, Honolulu, HI 96822 USA
基金
美国国家科学基金会;
关键词
Patient-generated health data; PGHD; Governance; Privacy; Big tech; Regulation; BIG-DATA; INNOVATION; POLICY; INFORMATION; PRIVACY; SYSTEMS; AGE;
D O I
10.1016/j.telpol.2021.102285
中图分类号
G2 [信息与知识传播];
学科分类号
05 ; 0503 ;
摘要
Patient-generated health data (PGHD), created and captured from patients via wearable devices and mobile apps, are proliferating outside of clinical settings. Examples include sleep trackers, fitness trackers, continuous glucose monitors, and RFID-enabled implants, with many additional biometric or health surveillance applications in development or envisioned. These data are included in growing stockpiles of personal health data (PHI) being mined for insight by health economists, policy analysts, researchers, and health system organizations. Dominant narratives position these highly personal data as valuable resources to transform healthcare, stimulate innovation in medical research, and engage individuals in their health and healthcare. Large tech companies are also increasingly implicated in these areas, through mobile health application sales and data acquisitions. Given the many possible uses and users for PGHD, ensuring privacy, security, and equity of benefits from PGHD will be challenging. This is due in part to disparate regulatory policies and practices across technology firms, health system organizations, and health researchers. Rapid developments with PGHD technologies and the lack of harmonization between regulatory regimes may render existing safeguards to preserve patient privacy and control over their PGHD ineffective, while also failing to guide PGHD-related innovation in socially desirable directions. Using a policy regime lens to explore these challenges, we examine three existing data protection regimes relevant to PGHD in the United States that are currently in tension with one another: federal and state health-sector laws, regulations on data use and reuse for research and innovation, and industry self-regulation of consumer privacy by large tech companies. We argue that harmonization of these regimes is necessary to meet the challenges of PGHD data governance. We next examine emerging governing instruments, identifying three types of structures (organizational, regulatory, technological/algorithmic), which synergistically could help enact needed regulatory oversight while limiting the friction and economic costs of regulation that may hinder innovation. This policy analysis provides a starting point for further discussions and negotiations among stakeholders and regulators to do so.
引用
收藏
页数:15
相关论文
共 94 条
[1]   Patient-generated health data management and quality challenges in remote patient monitoring [J].
Abdolkhani, Robab ;
Gray, Kathleen ;
Borda, Ann ;
DeSouza, Ruth .
JAMIA OPEN, 2019, 2 (04) :471-478
[2]   Trends and Trajectories for Explainable, Accountable and Intelligible Systems: An HCI Research Agenda [J].
Abdul, Ashraf ;
Vermeulen, Jo ;
Wang, Danding ;
Lim, Brian ;
Kankanhalli, Mohan .
PROCEEDINGS OF THE 2018 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS (CHI 2018), 2018,
[3]   Privacy and human behavior in the age of information [J].
Acquisti, Alessandro ;
Brandimarte, Laura ;
Loewenstein, George .
SCIENCE, 2015, 347 (6221) :509-514
[4]  
Aetna, 2020, EMPL HLTH WELLN PROG
[5]  
Agency for Healthcare Research and Quality, 2019, LOOKING YONDER LONGI
[6]  
Amatriain X, 2018, P MACHINE LEARNING R
[7]  
[Anonymous], 2020, Author interview with Sebhat Nega2 March
[8]  
[Anonymous], 2013, Summary of the HIPAA Privacy Rule
[9]  
[Anonymous], 2020, Complaint
[10]  
[Anonymous], 2019, GUARDIAN 1228