| 论文题名(中文): | 在健康数据助推健康产业发展环境下 医疗数据安全开放应用框架研究 |
| 姓名: | |
| 论文语种: | chi |
| 学位: | 硕士 |
| 学位类型: | 学术学位 |
| 学校: | 北京协和医学院 |
| 院系: | |
| 专业: | |
| 指导教师姓名: | |
| 校内导师组成员姓名(逗号分隔): | |
| 论文完成日期: | 2017-05-14 |
| 论文题名(外文): | In the Field of Health Data Boosting Development of Health Industry Research on Application Framework of Opening Safely Medical Data |
| 关键词(中文): | |
| 关键词(外文): | |
| 论文文摘(中文): |
背景:健康产业的发展,可以扩大资源供给,不断满足人民群众多层次、多样化的健康需求,提高人民群众获得感、幸福感,增强经济发展新动力。数据已成为国家基础性战略资源,也是重要生产力,健康产业的发展离不开健康数据的支持,而数据安全问题严重影响健康数据的应用发展。为了更好地推动健康产业的发展,我们需要着手解决健康数据的安全问题。随着互联网和新技术的快速发展,尤其是医院信息系统、联网医疗器械、可穿戴设备和基因测试的普及,收集、存储、传播和利用健康数据变得愈加方便,但同时健康数据安全的风险也在不断地加大。健康数据安全问题制约着数据的发展,健康数据的价值无法实现。方法:医院中的医疗数据在健康数据中具有很高的比例,故本文以医院中的医疗数据为研究对象。首先,我们基于RBAC(Role-Based Access Control,基于角色的权限访问控制)来设计数据应用对照表;对参与到医疗卫生领域各机构单位所承担的角色同其数据的权限进行分析,研究如何保护数据的安全。然后,借鉴国外PIA(Pirvacy Impact Assessment,隐私影响评估),并同我国实际结合,制定医疗数据安全管理办法探讨适合本国的管理数据安全风险的办法;。最后,把数据应用对照表同医疗数据安全管理办法相结合结合两种不同保障数据安全的方式,制定医疗数据应用框架能真正应用于实际的数据保护框架。结果:本文论文研究制定出了的医疗数据应用框架不仅操作简单、实用性强、操作简便且将数据安全贯穿整个数据生命周期的医疗数据应用框架。另外,而且能根据风险可能造成的伤害严重性程度把医疗数据应用框架分成不同保护级别的模式,便于对医疗数据进行等级管理,确保数据的安全。意义:该医疗数据应用框架实现医疗数据价值同时又能很好地保护数据的安全,满足了我国现阶段应用发展健康数据中所面临的数安全问题。该框架,促进了我国医疗卫生事业的发展、满足了人民群众的健康需求、维护了社会的稳定和谐,极大缓解了我国目前现在面临的多重疾病并存、多种健康影响因素交织的复杂局面,促进了我国医疗卫生事业的发展和满足了人民群众的健康需求。 |
| 论文文摘(外文): |
Background: The development of health industry can expand the resource supply, constantly meet people's multilevel and diversified health needs, improve people’s sense of gain and happiness, strengthen the momentum of economic development. The data has become a basic strategic resource of the country and also an important productive force, and the development of the health industry depends on the support of health data, however, data security issues seriously affect the application of health data. In order to better promote the development of the health industry, we need to address the safety issues of health data. With the rapid development of Internet and new technology, especially the hospital information system, online medical apparatus and instruments, wearable devices and the popularity of genetic testing, collecting、storageing、transmissing and using of health data becomes more convenient, but at the same time, the health data is in constant increase the risk of data security. Health data security problem restricts the development about data and the value of health data cannot be achieved. Methods: this paper studies the medical data in hospital. First, we design medical data roles and access tables based on RBAC. Then, drawing on the foreign PIA and combining with the actual country, we formulate the method of evaluating medical data safety management. Finally, combining the medical data role and the access table with medical data security administer and assessment method ,the medical data application framework is developed. Hospital medical data has the very high proportion in the health data, this paper based on the medical data for hospital. First of all, we analysis the role the agencies involved in health care unit play and limits of authority of data operations, researching how to protect the security of data. Then, drawing lessons from foreign PIA and combining actual situation of our country explores the suitable for their own management to data security risks. Finally, we combine with the two different ways to ensure data security to set data protection framework which can truly applied to the practical. Results: This paper formulates a practical and simple operation application framework which takes into account medical data security throughout the entire life cycle. In addition, according to the damage severity risk caused, medical data application framework is divided into different level of protection mode, easy to manage the medical data and ensure the safety of the data. The medical data application framework developed in this paper is not only practical、 simple operation, but also is divided into different level of protection mode according to the risk severity degree, which ensures the safety of the data. Significance: The medical data application frameworks can implement medical data value and protect the data security at the same time, promoting the development of China's medical and health undertakings. It greatly alleviates the complicated situation coexisting the multiple diseases and a variety of health factors in the face of our country,, promoting the development of medical and health cause in China and meeting the requirements of the people's health. |
| 开放日期: | 2017-05-14 |