• DocumentCode
    1350154
  • Title

    Secure Management of Biomedical Data With Cryptographic Hardware

  • Author

    Canim, Mustafa ; Kantarcioglu, Murat ; Malin, Bradley

  • Author_Institution
    Dept. of Comput. Sci., Univ. of Texas at Dallas, Richardson, TX, USA
  • Volume
    16
  • Issue
    1
  • fYear
    2012
  • Firstpage
    166
  • Lastpage
    175
  • Abstract
    The biomedical community is increasingly migrating toward research endeavors that are dependent on large quantities of genomic and clinical data. At the same time, various regulations require that such data be shared beyond the initial collecting organization (e.g., an academic medical center). It is of critical importance to ensure that when such data are shared, as well as managed, it is done so in a manner that upholds the privacy of the corresponding individuals and the overall security of the system. In general, organizations have attempted to achieve these goals through deidentification methods that remove explicitly, and potentially, identifying features (e.g., names, dates, and geocodes). However, a growing number of studies demonstrate that deidentified data can be reidentified to named individuals using simple automated methods. As an alternative, it was shown that biomedical data could be shared, managed, and analyzed through practical cryptographic protocols without revealing the contents of any particular record. Yet, such protocols required the inclusion of multiple third parties, which may not always be feasible in the context of trust or bandwidth constraints. Thus, in this paper, we introduce a framework that removes the need for multiple third parties by collocating services to store and to process sensitive biomedical data through the integration of cryptographic hardware. Within this framework, we define a secure protocol to process genomic data and perform a series of experiments to demonstrate that such an approach can be run in an efficient manner for typical biomedical investigations.
  • Keywords
    biomedical engineering; cryptographic protocols; genomics; bandwidth constraints; biomedical community; clinical data; cryptographic hardware; deidentification methods; genomic data; multiple third parties; practical cryptographic protocols; secure management; sensitive biomedical data; simple automated methods; Bioinformatics; Coprocessors; Encryption; Genomics; Hardware; Servers; Cryptographic hardware; cryptography; data-bases; genomics; privacy; security; Biomedical Research; Computer Security; Database Management Systems; Databases, Factual; Electronic Health Records;
  • fLanguage
    English
  • Journal_Title
    Information Technology in Biomedicine, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1089-7771
  • Type

    jour

  • DOI
    10.1109/TITB.2011.2171701
  • Filename
    6045338