实现IoMT架构与ISO/IEC 27001安全控制远程患者监测模型

Brandon Alegría, Lenis Wong, Diego Bedriñiana
{"title":"实现IoMT架构与ISO/IEC 27001安全控制远程患者监测模型","authors":"Brandon Alegría, Lenis Wong, Diego Bedriñiana","doi":"10.23919/FRUCT56874.2022.9953893","DOIUrl":null,"url":null,"abstract":"Due to the recent pandemic, the healthcare sector has been forced to incorporate new technologies into its systems, such as IoT and Fog Computing. However, being new technologies, they are prone to security breaches. From this context, it is identified that medical systems do not have a sufficient level of security, due to the use of new technologies such as IoT and the lack of controls to protect these new technologies. Therefore, a model for implementing an Internet of Medical Things (IoMT) Architecture with ISO/IEC 27001 security controls for remote patient monitoring is proposed. This model has 4 stages: Stage 1 selects an information security standard for the healthcare sector. Stage 2 selects the information security controls of the selected standard. Stage 3 selects and evaluates an IoMT architecture applicable to the healthcare sector. And Stage 4 designs the information security controls for each layer of the IoMT architecture. The IoMT architecture and information security controls are simulated and experimented with physicians (the productivity of the system) and with information security expert (the quality of the implemented controls). The results of the first experiment show that “effectiveness”, “productivity”, and “satisfaction” regarding the use of the IoMT architecture have an average rating of 4.05 (high level). The results of the second experiment show that “Information Security”, “Awareness” and “Security Incident Management” regarding the quality of the security controls implemented have an average rating of 3.65 (high level).","PeriodicalId":274664,"journal":{"name":"2022 32nd Conference of Open Innovations Association (FRUCT)","volume":"2014 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-11-09","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Model for Implementing a IoMT Architecture with ISO/IEC 27001 Security Controls for Remote Patient Monitoring\",\"authors\":\"Brandon Alegría, Lenis Wong, Diego Bedriñiana\",\"doi\":\"10.23919/FRUCT56874.2022.9953893\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Due to the recent pandemic, the healthcare sector has been forced to incorporate new technologies into its systems, such as IoT and Fog Computing. However, being new technologies, they are prone to security breaches. From this context, it is identified that medical systems do not have a sufficient level of security, due to the use of new technologies such as IoT and the lack of controls to protect these new technologies. Therefore, a model for implementing an Internet of Medical Things (IoMT) Architecture with ISO/IEC 27001 security controls for remote patient monitoring is proposed. This model has 4 stages: Stage 1 selects an information security standard for the healthcare sector. Stage 2 selects the information security controls of the selected standard. Stage 3 selects and evaluates an IoMT architecture applicable to the healthcare sector. And Stage 4 designs the information security controls for each layer of the IoMT architecture. The IoMT architecture and information security controls are simulated and experimented with physicians (the productivity of the system) and with information security expert (the quality of the implemented controls). The results of the first experiment show that “effectiveness”, “productivity”, and “satisfaction” regarding the use of the IoMT architecture have an average rating of 4.05 (high level). The results of the second experiment show that “Information Security”, “Awareness” and “Security Incident Management” regarding the quality of the security controls implemented have an average rating of 3.65 (high level).\",\"PeriodicalId\":274664,\"journal\":{\"name\":\"2022 32nd Conference of Open Innovations Association (FRUCT)\",\"volume\":\"2014 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2022-11-09\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2022 32nd Conference of Open Innovations Association (FRUCT)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.23919/FRUCT56874.2022.9953893\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 32nd Conference of Open Innovations Association (FRUCT)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.23919/FRUCT56874.2022.9953893","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

由于最近的大流行,医疗保健行业被迫将新技术纳入其系统,例如物联网和雾计算。然而,作为新技术,它们容易出现安全漏洞。在这种情况下,可以确定由于使用物联网等新技术以及缺乏保护这些新技术的控制,医疗系统没有足够的安全级别。因此,提出了一种采用ISO/IEC 27001安全控制的医疗物联网(IoMT)架构模型,用于远程患者监测。此模型有4个阶段:阶段1为医疗保健部门选择信息安全标准。阶段2选择所选标准的信息安全控制。阶段3选择并评估适用于医疗保健部门的IoMT架构。阶段4为IoMT体系结构的每一层设计信息安全控制。IoMT架构和信息安全控制由医生(系统的生产力)和信息安全专家(实现控制的质量)模拟和实验。第一个实验的结果表明,关于IoMT架构使用的“有效性”、“生产力”和“满意度”的平均评分为4.05(高水平)。第二次实验的结果表明,“信息安全”、“意识”和“安全事件管理”对实施的安全控制质量的平均评分为3.65(高水平)。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Model for Implementing a IoMT Architecture with ISO/IEC 27001 Security Controls for Remote Patient Monitoring
Due to the recent pandemic, the healthcare sector has been forced to incorporate new technologies into its systems, such as IoT and Fog Computing. However, being new technologies, they are prone to security breaches. From this context, it is identified that medical systems do not have a sufficient level of security, due to the use of new technologies such as IoT and the lack of controls to protect these new technologies. Therefore, a model for implementing an Internet of Medical Things (IoMT) Architecture with ISO/IEC 27001 security controls for remote patient monitoring is proposed. This model has 4 stages: Stage 1 selects an information security standard for the healthcare sector. Stage 2 selects the information security controls of the selected standard. Stage 3 selects and evaluates an IoMT architecture applicable to the healthcare sector. And Stage 4 designs the information security controls for each layer of the IoMT architecture. The IoMT architecture and information security controls are simulated and experimented with physicians (the productivity of the system) and with information security expert (the quality of the implemented controls). The results of the first experiment show that “effectiveness”, “productivity”, and “satisfaction” regarding the use of the IoMT architecture have an average rating of 4.05 (high level). The results of the second experiment show that “Information Security”, “Awareness” and “Security Incident Management” regarding the quality of the security controls implemented have an average rating of 3.65 (high level).
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信