DocumentCode :
2897648
Title :
Towards Scalable, Fine-Grained, Intrusion-Tolerant Data Protection Models for Healthcare Cloud
Author :
Chen, Lingfeng ; Hoang, Doan B.
Author_Institution :
Adv. Res. in Networking Lab., Univ. of Technol., Sydney, NSW, Australia
fYear :
2011
fDate :
16-18 Nov. 2011
Firstpage :
126
Lastpage :
133
Abstract :
Despite cloud computing has been widely adopted by most industries, the healthcare industry still reveals a slow development in cloud-based solution due to the raising of user fear that their confidential health data or privacy would leak out in the cloud. To allay users´ concern of data control, data ownership, security and privacy, we propose a robust data protection framework which is surrounded by a chain of protection schemes from access control, monitoring, to active auditing. The framework includes three key components which are Cloud-based Privacy-aware Role Based Access Control (CPRBAC) model, Triggerable Data File Structure (TDFS), and Active Auditing Scheme (AAS) respectively. Our schemes address controllability, traceability of data and authorize access to healthcare system resource. Data violation against access control policies can be proactively triggered to perform corresponding defense mechanisms. Our goal is to bring benefits of cloud computing to healthcare industries to assist them improve quality of service and reduce the cost of overall healthcare.
Keywords :
auditing; authorisation; cloud computing; data privacy; health care; medical information systems; active auditing scheme; cloud-based privacy aware role based access control model; confidential health data privacy; data ownership; data security; data traceability; data violation; fine-grained data protection models; healthcare cloud computing; healthcare industry; healthcare system resource access authorization; intrusion tolerant data protection models; robust data protection framework; triggerable data file structure; Access control; Cloud computing; Computer architecture; Medical services; Monitoring; Servers; Active Auditing Scheme; CPRBAC; Cloud Computing; Data Proteciton; Triggerable Data File Structure; Verification Monitors;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Trust, Security and Privacy in Computing and Communications (TrustCom), 2011 IEEE 10th International Conference on
Conference_Location :
Changsha
Print_ISBN :
978-1-4577-2135-9
Type :
conf
DOI :
10.1109/TrustCom.2011.19
Filename :
6120811
Link To Document :
بازگشت