Electronic Healthcare. 4th International Conference, eHealth 2011, Málaga, Spain, November 21-23, 2011, Revised Selected Papers

Research Article

Modelling a User Authorisation and Data Access Framework for Multi-specialty Research Systems in Secondary Health Care

Download
542 downloads
  • @INPROCEEDINGS{10.1007/978-3-642-29262-0_15,
        author={Ire Ogunsina and Sarah Lim Choi Keung and Lei Zhao and Gavin Langford and Edward Tyler and Theodoros Arvanitis},
        title={Modelling a User Authorisation and Data Access Framework for Multi-specialty Research Systems in Secondary Health Care},
        proceedings={Electronic Healthcare. 4th International Conference, eHealth 2011, M\^{a}laga, Spain, November 21-23, 2011, Revised Selected Papers},
        proceedings_a={E-HEALTH},
        year={2012},
        month={5},
        keywords={Role Based Access Control (RBAC) secondary care research electronic healthcare records},
        doi={10.1007/978-3-642-29262-0_15}
    }
    
  • Ire Ogunsina
    Sarah Lim Choi Keung
    Lei Zhao
    Gavin Langford
    Edward Tyler
    Theodoros Arvanitis
    Year: 2012
    Modelling a User Authorisation and Data Access Framework for Multi-specialty Research Systems in Secondary Health Care
    E-HEALTH
    Springer
    DOI: 10.1007/978-3-642-29262-0_15
Ire Ogunsina1,*, Sarah Lim Choi Keung1,*, Lei Zhao1,*, Gavin Langford2,*, Edward Tyler1,*, Theodoros Arvanitis1,*
  • 1: University of Birmingham
  • 2: Birmingham and Black Country Comprehensive Local Research Network
*Contact email: i.ogunsina@bham.ac.uk, s.n.limchoikeung@bham.ac.uk, l.zhao@bham.ac.uk, Gavin.Langford@uhb.nhs.uk, e.tyler@bham.ac.uk, t.arvanitis@bham.ac.uk

Abstract

Patient identification and consequent recruitment in clinical trials is normally preceded with searches on electronic health record (EHR) systems. Query results may be collated across multiple health organisations and specialties. In such scenarios, a prime concern is the possibility of systems and their users inadvertently or otherwise impinging on the privacy of patients. Access to patient data is crucial for research purposes, but the degree of access must be controlled in such a way that it conforms to agreed legal, organisational and ethical policies. In this paper, we present a proposed model for managing a dynamic matrix of roles and data access privileges within the context of research systems in secondary care.