IDEAS home Printed from https://ideas.repec.org/a/aza/jdpp00/y2023v5i4p347-362.html
   My bibliography  Save this article

Protecting patient confidentiality in the Internet of Medical Things through confidential computing

Author

Listed:
  • Searle, Richard

    (Vice President of Confidential Computing, Fortanix, USA)

  • Gururaj, Prabhanjan

    (Solutions Engineering Manager, Fortanix, USA)

Abstract

The Internet of Medical Things (IoMT) provides a network of distributed devices that generate a wealth of data for clinicians and medical researchers. The global COVID-19 pandemic has demonstrated the benefits that IoMT data has brought about for remote medical services and clinical diagnosis. While the security of remote IoMT devices is an established area of concern, enforcing the privacy of the data that they both generate and process requires a data-first approach to network design. How can a distributed IoMT network simultaneously ensure the integrity of distributed devices and maintain the privacy and confidentiality of protected healthcare information (PHI)? In this positioning paper, we outline the issues that must be addressed by manufacturers of IoMT devices and those responsible for the system architectures that process gathered healthcare and contextual data. We consider how the nascent technology of confidential computing addresses the dual requirements of systemic security and data confidentiality, and we provide a conceptual architecture based on current developments within the field. Our analysis of the practical considerations associated with IoMT deployment reveals a fundamental requirement for a data-first approach to security that is governed by patient consent and zero-trust principles.

Suggested Citation

  • Searle, Richard & Gururaj, Prabhanjan, 2023. "Protecting patient confidentiality in the Internet of Medical Things through confidential computing," Journal of Data Protection & Privacy, Henry Stewart Publications, vol. 5(4), pages 347-362, April.
  • Handle: RePEc:aza:jdpp00:y:2023:v:5:i:4:p:347-362
    as

    Download full text from publisher

    File URL: https://hstalks.com/article/7842/download/
    Download Restriction: Requires a paid subscription for full access.

    File URL: https://hstalks.com/article/7842/
    Download Restriction: Requires a paid subscription for full access.
    ---><---

    As the access to this document is restricted, you may want to search for a different version of it.

    More about this item

    Keywords

    IoMT; data security; confidential computing; privacy; consent;
    All these keywords.

    JEL classification:

    • K2 - Law and Economics - - Regulation and Business Law

    Statistics

    Access and download statistics

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:aza:jdpp00:y:2023:v:5:i:4:p:347-362. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    We have no bibliographic references for this item. You can help adding them by using this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Henry Stewart Talks (email available below). General contact details of provider: .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.