DOI QR코드

DOI QR Code

A Design Of Role-based Emergency Medical Information Security System REMISS

역할기반 응급의료정보보안시스템 REMISS의 설계

  • 김형훈 (광주여자대학교 보건의료시스템학과) ;
  • 조정란 (광주여자대학교 보건의료시스템학과)
  • Received : 2014.08.19
  • Accepted : 2014.09.22
  • Published : 2014.10.31

Abstract

In this paper, we designed a role-based emergency medical information security system REMISS added the security concept to the existing emergency medical information system. Also we suggested a REMISS protocol based on HL7 for using the emergency medical information and the security information. The procedure of security consists of user authentication phase and role/permission assign phase in the REMISS. The REMISS can supply proper security service since the REMISS assign proper permissions to each users of emergency medical information system and allow the user to access the permitted emergency medical information by using security information of the REMISS. There are some advantages that REMISS can adapt to the changing of the role of each user by dynamic exchanging the security information and assigning permissions to each user.

본 논문에서는 기존의 응급의료정보시스템에 정보보안 개념을 도입한 역할기반 응급의료정보보안시스템 REMISS를 설계하였다. 또한 HL7 기반의 응급의료정보 및 보안정보를 위한 메시지 구조와 프로토콜을 제시하였다. REMISS의 보안 절차는 사용자인증단계와 역할/권한배정단계로 이루어져 있다. REMISS는 보안정보를 사용하여 응급의료정보시스템의 각 사용자에게 그 역할에 맞는 권한을 부여하고 허가된 권한 내에서 응급의료정보를 접근하도록 할 수 있으므로 적절한 보안 서비스를 제공할 수 있다. 그리고 응급상황 발생시에 동적으로 보안정보를 교환하여 권한을 부여함으로써 각 사용자의 역할 변경에 대응할 수 있는 이점이 있다.

Keywords

References

  1. H. J. Park, "Implementation of the Smart Emergency Medical System", The Journal of Korea Navigation Institute Vol. 15, No. 4, pp.646-654, Aug. 2011.
  2. http://www.nemc.or.kr/, National Emergency Medical Center.
  3. J. H. Kim, J. S. Cho, Y. S. Lim, S. B. Lee, S. Y. Hyun, J. J. Kim, G. Lee, H. J. Yang, I. Rheu, "The Current State of Airway Management and Ventilation at the Pre-Hospital Stage by Emergency Medical Technicians", Journal of the Korean Society of Emergency Medicine, Vol. 22, No. 2, pp129-141, Apr. 2011.
  4. K. Jung, J. Jang, J. Kim, S. Baek, S. Song, C. Gang, K. Lee, "Delayed Transfer of Major Trauma Patients Under the Current Emergency Medical System in Korea", Journal of the Korean Society of Traumatology, Vol. 24, No. 1. pp25-30, Jun. 2011.
  5. D. Lee, S. C. Noh, "A Study of Methodology Based on Role-Based Security Agent Medical Information System Security Architecture Design", Journal of Information and Security Vol. 11, No. 4, Sept. 2011.
  6. J. P. Kim, A. S. Oh, "Design and Implementation of Emergency Medical System based on the Standard of HL7 Message for Utilization of Patient Medical Information", Journal of Korea Multimedia Society Vol. 14, No. 2, pp.295-306, Feb. 2011. https://doi.org/10.9717/kmms.2011.14.2.295
  7. H. H. Kim, J. R. Cho "A design of efficient emergency medical information system using heuristic knowledge", Journal of the Korea Industrial Information System Society, Vol. 18, No. 3, pp.47-56, Jun. 2013. https://doi.org/10.9723/jksiis.2013.18.3.047
  8. H. Lee, T. Kim, S. Choi, I. Kim, J. H. Kim, J. W. Kim, "Developing HL7-based Medical Information Architecture", Information System Review Vol. 3, No. 1, Nov. 2001.
  9. S. J. Oh, "Permission-Based Separation of Duty Model on Role-Based Access Control", The Journal of Information Processing Society Vol. 11-C, No.6, Dec. 2004.
  10. J. Park, "Medical Telecommunication", FORNURSE, Feb. 2010.
  11. Y. Kang, Y. Choi, "Current Status of Information Security against Cyber Attacks in Universities and Its Improvement Methods", Journal of The Korea Society of Computer and Information, Vol. 16, No. 12, Dec. 2011. https://doi.org/10.9708/jksci.2011.16.12.215
  12. Y. Jeun, "The Medical Information Protection and major Issues", Journal of The Korea Society of Computer and Information, Vol. 17, No. 12, Dec. 2012. https://doi.org/10.9708/jksci/2012.17.12.251
  13. Anantharaman, V., Han, L.S, "Hospital and emergency ambulance link: using IT to enhance emergency pre-hospital care", International Journal of Medical Informatics, Vol. 61, pp.147-161, May. 2001. https://doi.org/10.1016/S1386-5056(01)00137-X
  14. Andrade, R., von Wangenheim, A., Bortoluzzi, M.K., Comunello, E., "Using mobile wireless devices for interactive visulization and analysis of DICOM data", IEEE Symposium on Computer-Based Medical Systems, Jun. 2003.
  15. B. Orguna, J. Vub, "HL7 Ontology and Mobile Agents for Interoperability in Heterogeneous Medical Information Systems", Computers in Biology and Medicine, Vol. 36, No. 7, pp817-836, Jul. 2006. https://doi.org/10.1016/j.compbiomed.2005.04.010
  16. R. Sandhu, "The ARBAC97 model for role-based administration of roles", ACM Transactions on Information and System Security, Vol. 2, pp105-135, Feb. 1999. https://doi.org/10.1145/300830.300839