Formal Verification of Access Control Model for My Health Record System

06/12/2020
by   Victor Rivera, et al.
0

My Health Record system is the Australian Government's digital health record system that holds My Health Record. My Health Record is a secure online health record containing consumers' health information. The system aims to provide health care professionals with access to key health information, e.g. listing medicines, allergies and key diagnoses; radiology and pathology test results. The system (previously named Personally Controlled Electronic Health Record) enables consumers to decide how to share information with any of their health care providers who are registered and connected to the system. The My Health Record system operates under the Australian legislative framework My Health Records Act 2012. The Act establishes, inter alia, a privacy framework specifying which entities can collect, use and disclose certain information in the system and the penalties that can be imposed on improper collection, use and disclosure of this information. This paper presents the formal specification (from the legislation) and verification of the My Health Record regarding how consumers can control who access the information, and how the system adheres to such access. We rely on the correct-by-construction Event-B method to prove control and access properties of the system.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/21/2017

The Australian PCEHR system: Ensuring Privacy and Security through an Improved Access Control Mechanism

An Electronic Health Record (EHR) is designed to store diverse data accu...
research
09/29/2020

Decentralized Patient Centric e-Health Record Management System using Blockchain and IPFS

Electronic Health Records(EHR) are gaining a lot of popularity all over ...
research
05/28/2020

Towards an Electronic Health Record System in Vietnam: A Core Readiness Assessment

Previous studies have shown that health information technologies have a ...
research
05/22/2018

Optimal Record and Replay under Causal Consistency

We investigate the minimum record needed to replay executions of process...
research
01/20/2021

MIT SafePaths Card (MiSaCa): Augmenting Paper Based Vaccination Cards with Printed Codes

In this early draft, we describe a user-centric, card-based system for v...
research
03/15/2018

Information Security in Health Care Centre Using Cryptography and Steganography

As the volume of medicinal information stored electronically increase, s...

Please sign up or login with your details

Forgot password? Click here to reset