A Security Architecture for a Web Portal of Sensitive Archival Records
نویسنده
چکیده
Web portals are ubiquitous, but an operational portal containing sensitive electronic archival records has not existed in a public network due to security concerns; therefore, setting one up requires serious consideration of defensive security measures. The key topic of this paper is a security architecture for the protection of an experimental portal that provides its stakeholders with convenient and low-cost means for sharing and processing sensitive electronic archival records. The portal also serves as a test bed for conducting empirical research activities in support of the future building of a secure operational portal of sensitive electronic archival records. The proposed architectural framework applies the technical facet of the defense-in-depth strategy that was developed and widely implemented by the Department of Defense.
منابع مشابه
Protecting Web-based Patient Portal for the Security and Privacy of Electronic Medical Records
Patient portals, such as Myhealthatvanderbilt.com, AdjuvantHealth, Medical Web Experts, are web-based systems that allow both physicians and patients to access and manage patient medical records via the Internet, facilitate clinical workflow and enable data sharing and collaboration. Serving as the front-end to a huge amount of sensitive information (e.g., medical records, billing), the patient...
متن کاملA Web-Based Resource Discovery Architecture for Digital Archive Systems
In past several years, researchers, archival organizations and institutes invested efforts in constructing digital archives. Nowadays, there are rich digital archives distributed in many archival systems. However, to retrieve archival contents from these systems, users must be familiar to the system’s URL address, the user interface and functions provided by the system, since no single Web site...
متن کاملInformation Flow Control for a Medical Records Web Portal
In this paper we present a web application prototype developed for brain tumour patients to access their medical data. The prototype has been developed using existing technology for easy and cost effective deployment, yet supporting strong security requirements. With these constraints in mind we developed an architecture incorporating Information Flow Control for data isolation and audit.
متن کاملThe Content and Structure of Electronic Personal Health Records: A Systematic Review
Introduction: The electronic Personal Health Record (ePHR) improves people’s awareness and care management and leads to health promotion. One of the most important factors that contributes to the development of ePHR is identifying and understanding its content and structure. No comprehensive studies have so far been performed on the content and structure of ePHRs. Therefore, the purpose of this...
متن کاملThe Content and Structure of Electronic Personal Health Records: A Systematic Review
Introduction: The electronic Personal Health Record (ePHR) improves people’s awareness and care management and leads to health promotion. One of the most important factors that contributes to the development of ePHR is identifying and understanding its content and structure. No comprehensive studies have so far been performed on the content and structure of ePHRs. Therefore, the purpose of this...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2004