Abstract
PHRs (Personal Health Records) store individuals' personal health information. Access to this data is controlled by the patient, rather than by the health care provider. Companies such as Google and Microsoft are establishing a leadership position in this emerging market. In this context, the need for psychological acceptability in privacy and security protection mechanisms is essential. Any privacy and security mechanism must be acceptable from a usability perspective. This paper presents a study of the privacy policies of 22 free web-based PHRs. Security and privacy characteristics have been extracted according to the ISO/TS 13606-4 standard. In general, quite a good level was observed in the characteristics analyzed. Nevertheless, some improvements could be made to current PHR privacy policies to enhance the management of other users' data, the notification of changes to the privacy policy to users and the audit of accesses to users' PHRs. © 2011 IFIP International Federation for Information Processing.
Author supplied keywords
Cite
CITATION STYLE
Carrión, I., Fernández-Alemán, J. L., & Toval, A. (2011). Usable privacy and security in personal health records. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 6949 LNCS, pp. 36–43). https://doi.org/10.1007/978-3-642-23768-3_3
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.