International Journal of Medical Informatics
Volume 76, Issue 5 , Pages 471-479 , May 2007

Securing electronic health records without impeding the flow of information

  • Rakesh Agrawal

      Affiliations

    • Microsoft Search Labs, 1065 La Avenida, Mountain View, CA 94043, United States
    • Work done while the author was at IBM Almaden Research Center.
    • Corresponding Author InformationCorresponding author.
  • ,
  • Christopher Johnson

      Affiliations

    • IBM Almaden Research Center, 650 Harry Road, San Jose, CA 95120, United States

References 

  1. European Union Directive on Data Protection . Off. J. Eur. Commun. 1995;31;No L. 281
  2. Health Insurance Portability and Accountability Act of 1996, United States Public Law, pp. 104–191.
  3. Personal Information Protection and Electronic Documents Act, Second Session, Thirty-sixth Parliament, 48–49 Elizabeth II, 1999–2000, Statutes of Canada 2000.
  4. Privacy Act of 1988, Commonwealth of Australia, Act No. 119 of 1988 as amended.
  5. Law on the Protection of Personal Information, promulgated by the Diet of Japan on May 30, 2003.
  6. President's Information Technology Advisory Committee, Revolutionizing Health Care through Information Technology, Report to the President of the United States, June 2004.
  7. Commission on Systemic Interoperability, Ending the Document Game: Connecting and Transforming Your Healthcare through Information Technology, United States Government Printing Office, October 2005.
  8. Humphreys B. Electronic health record meets digital library. J. Am. Med. Inform. Assoc. 2000;7(5):444–452
  9. Iakovidis I. Towards personal health record: current situation, obstacles and trends in implementation of electronic healthcare record in Europe. Int. J. Med. Inform. 1998;52(1):105–115
  10. Agrawal R, Kiernan J, Srikant R, Xu Y. Hippocratic databases. In: Proceedings of the 28th International Conference on Very Large Databases. Hong Kong, China. August 2002;
  11. Lefevre K, Agrawal R, Ercegovac V, Ramakrishnan R, Xu Y, DeWitt D. Limiting disclosure in hippocratic databases. In: Proceedings of the 30th International Conference on Very Large Databases. Toronto, Canada. August 2004;
  12. Sandhu R, Coyne E, Feinstein H, Youman C. Role-based access control models. IEEE Comput. 1996;29(2):38–47
  13. Cranor L, Langheinrich M, Manchiori M, Presler-Marshall M, Reagle J. Platform for Privacy Preferences 1.0 (P3P1.0) Specification. W3C Recommendation. 2002;
  14. Agrawal R, Kiernan J, Srikant R, Xu Y. An XPath-based Preference Language for P3P. In: Proceedings of the 12th International World Wide Web Conference. Budapest, Hungary. May 2003;
  15. Agrawal R, Kiernan J, Srikant R, Xu Y. Order-preserving encryption for numeric data. In: Proceedings of the ACM SIGMOD Conference on Management of Data. Paris, France. June 2004;
  16. Agrawal R, Bayardo R, Faloutsos C, Kiernan J, Rantzau R, Srikant R. Auditing compliance with a hippocratic database. In: Proceedings of the 30th International Conference on Very Large Databases. Toronto, Canada. August 2004;
  17. Agrawal R, Srikant R. Privacy-Preserving Data Mining. In: Proceedings of the ACM SIGMOD Conference on Management of Data. Dallas, Texas, USA. May 2000;
  18. Evfimievski A. Randomization in Privacy-Preserving Data Mining. In: Proceedings of the SIGKDD Explorations: Newsletter of the ACM Special Interest Group on Knowledge Discovery and Data Mining, vol. 4 (2). December 2002;p. 43–48
  19. Bayardo R, Agrawal R. Data privacy through Optimal k-Anonymization. In: Proceedings of the 21st International Conference on Data Engineering. Tokyo, Japan. April 2005;
  20. Samarati P, Sweeney L. Generalizing data to provide anonymity when disclosing information. In: Proceedings of the 17th ACM SIGMOD-SIGACT-SIGART Symposium on the Principles of Database Systems, vol. 188. 1998;
  21. Lewis H, Papadimitriou C. Elements of the Theory of Computation. 2nd ed.. Prentice Hall; 1998;pp. 293–298
  22. Agrawal R, Evfimievski A, Srikant R. Information sharing across private databases. In: Proceedings of the ACM SIGMOD Conference on Management of Data. San Diego, California. June 2003;
  23. O. Benjelloun, H. Garcia-Molina, J. Jonas, Q. Su, J. Widom, Swoosh: a generic approach to entity resolution, Stanford University Technical Report, March 2005.
  24. S. Ellard, System and method for indexing information about entities from different information sources, United States Patent No. 5,991,758, Issued November 23, 1999.
  25. California Healthcare Foundation, Clinical Data Standards Explained, November 2004.
  26. Richardson M, Agrawal R, Domingos P. Trust management for the semantic web. In: Proceedings of the Second International Semantic Web Conference. Sanibel Island, Florida. October 2003;

PII: S1386-5056(06)00220-6

doi: 10.1016/j.ijmedinf.2006.09.015

International Journal of Medical Informatics
Volume 76, Issue 5 , Pages 471-479 , May 2007