Information Processing Apparatus for Secure Health Data Sharing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In systems managing and sharing digitized health data, such as drug history handbooks and prescriptions, there is a need for improved security measures to protect personal user information.
Innovation Solution
An information processing apparatus and method that includes a receiving unit for personal identification information, a recording unit for associating identification information with shared data, a search unit for locating user data, and a transmitting unit for securely sharing health data, utilizing system identification information and internal user identification to enhance security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If personal information is stored and shared in electronic health record systems, then convenience and efficiency are improved, but security risks and potential unauthorized access increase
Solution Approach 1:
The system segments personal information into multiple components: personal identification information, system identification information, and system internal user identification information. These segmented components are stored and transmitted separately, so that even if one component is compromised, the complete personal information remains protected. This segmentation resolves the contradiction by maintaining data accessibility for efficiency while reducing security risks through distributed storage.
Solution Approach 2:
The system introduces system internal user identification information as an intermediary element that bridges personal identification information and shared health data. This intermediary acts as an additional security layer that prevents direct correlation between personal identifiers and sensitive health information, thereby improving security without compromising the ability to access and share data efficiently.
2Adaptability or versatility
If personal identification information is transmitted across systems, then data sharing capability is improved, but risk of information leakage increases
Solution Approach 1:
Personal identification information is segmented into multiple components that are transmitted separately through the network. The system transmits personal identification information, system identification information, and internal user identification information as distinct data elements, reducing the risk that a single transmission point of failure or interception would expose complete personal information.
Solution Approach 2:
The system performs preliminary association of segmented identification information components before data sharing operations. By pre-linking personal identification information with system internal user identification information in a secure manner, the system enables rapid data sharing while maintaining security controls, thus improving adaptability without increasing leakage risk.
3Reliability
If multiple identification information components are stored and managed, then security is improved, but system complexity increases
Solution Approach 1:
The system employs a universal identification management framework that handles multiple types of identification information (personal identification, system identification, internal user identification) through a single integrated process. This multi-functional approach allows the same system components to manage different identification types, improving security through comprehensive identification management while avoiding the complexity of separate specialized systems for each identification type.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
There is provided an information processing apparatus including a receiving unit that receives personal identification information to identify a user and system identification information to identify a local system, a recording unit that associates and records the personal identification information, the system identification information, system internal user identification information used in the local system to identify the user, and shared data about the user, a data search unit that searches for the shared data associated with the received personal identification information, a user search unit that searches for the system internal user identification information associated with the received personal identification information and the received system identification information, and a transmitting unit that transmits the shared data and the system internal user identification information that are obtained in a search.