Security Recommendations for mHealth Apps: Elaboration of a Developer's Guide

被引:47
作者
Perez Morera, Enrique [1 ]
de la Torre Diez, Isabel [1 ]
Garcia-Zapirain, Begona [2 ]
Lopez-Coronado, Miguel [1 ]
Arambarri, Jon [3 ]
机构
[1] Univ Valladolid, Dept Signal Theory & Commun & Telemat Engn, Paseo Belen 15, E-47011 Valladolid, Spain
[2] Univ Deusto, Ave Univ 24, Bilbao 48007, Spain
[3] VirtualWare Labs Fdn, C Usausuaga 7, Basauri 48970, Vizcaya, Spain
关键词
Apps; Developers' guide; mHealth; Security; PRIVACY;
D O I
10.1007/s10916-016-0513-6
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Being the third fastest-growing app category behind games and utilities, mHealth apps are changing the healthcare model, as medicine today involves the data they compile and analyse, information known as Big Data. However, the majority of apps are lacking in security when gathering and dealing with the information, which becomes a serious problem. This article presents a guide regarding security solution, intended to be of great use for developers of mHealth apps. In August 2015 current mobile health apps were sought out in virtual stores such as Android Google Play, Apple iTunes App Store etc., in order to classify them in terms of usefulness. After this search, the most widespread weaknesses in the field of security in the development of these mobile apps were examined, based on sources such as the BOWASP Mobile Security Project, the initiative recently launched by the Office of Civil Rights (OCR), and other articles of scientific interest. An informative, elemental guide has been created for the development of mHealth apps. It includes information about elements of security and its implementation on different levels for all types of mobile health apps based on the data that each app manipulates, the associated calculated risk as a result of the likelihood of occurrence and the threat level resulting from its vulnerabilities - high level (apps for monitoring, diagnosis, treatment and care) from 6 <= 9, medium level (calculator, localizer and alarm) from 3 <= 6 and low level (informative and educational apps) from 0 <= 3. The guide aims to guarantee and facilitate security measures in the development of mobile health applications by programmers unconnected to the ITC and professional health areas.
引用
收藏
页数:13
相关论文
共 39 条
[1]  
[Anonymous], OV STOR
[2]  
[Anonymous], GOOGL PLAY
[3]  
[Anonymous], 2015, MOB EC
[4]  
[Anonymous], 2015, ICT facts and figures: the world in 2015
[5]  
[Anonymous], 2015 MOB TECHN SURV
[6]  
[Anonymous], WIND PHON APPS GAM W
[7]  
[Anonymous], INT THINGS MAPP VAL
[8]  
[Anonymous], WORLDW TABL SHIPM EX
[9]  
[Anonymous], PROT AM CONS
[10]  
[Anonymous], YOUR MOB DEV HLTH IN