Fine-grained Encryption for Secure Research Data Sharing

Conference Paper (2022)
Author(s)

Lucio Henrik Amorim Reis (Universiteit van Amsterdam)

Marcela Tuler de Oliveira (Universiteit van Amsterdam)

Silvia Delgado Olabarriaga (Universiteit van Amsterdam)

Affiliation
External organisation
DOI related publication
https://doi.org/10.1109/cbms55023.2022.00089
More Info
expand_more
Publication Year
2022
Language
English
Affiliation
External organisation
Pages (from-to)
465-470
ISBN (electronic)
9781665467704

Abstract

Research data sharing requires provision of adequate security. The requirements for data privacy are extremely demanding for medical data that is reused for research purposes. To address these requirements, the research institutions must implement adequate security measurements, and this demands large effort and costs to do it properly. The usage of adequate access controls and data encryption are key approaches to effectively protect research data confidentiality; however, the management of the encryption keys is challenging. There are novel mechanisms that can be explored for managing access to the encryption keys and encrypted files. These mechanisms guarantee that data are accessed by authorised users and that auditing is possible. In this paper we explore these mechanisms to implement a secure research medical data sharing system. In the proposed system, the research data are stored on a secure cloud system. The data are partitioned into subsets, each one encrypted with a unique key. After the authorisation process, researchers are given rights to use one or more of the keys and to selectively access and decrypt parts of the dataset. Our proposed solution offers automated fine-grain access control to research data, saving time and work usually made manually. Moreover, it maximises and fortifies users' trust in data sharing through secure clouds solutions. We present an initial evaluation and conclude with a discussion about the limitations, open research questions and future work around this challenging topic.

No files available

Metadata only record. There are no files for this record.