Form‐based security in mobile health data collection systems. Issue 3 (28th March 2021)
- Record Type:
- Journal Article
- Title:
- Form‐based security in mobile health data collection systems. Issue 3 (28th March 2021)
- Main Title:
- Form‐based security in mobile health data collection systems
- Authors:
- Katarahweire, Marriette
Bainomugisha, Engineer
Mughal, Khalid A.
Ngubiri, John - Abstract:
- Abstract: Mobile Health Data Collection Systems (MHDCS) use electronic forms for data collection in place of paper surveys. Data is entered into the electronic forms by community health workers with smartphones. These systems are used in clinical trials and continuous monitoring of participants. Data collected in MHDCS is diverse with varying sensitivity levels. This therefore calls for the application of different security mechanisms to protect the data. In this paper, a data sensitivity classification model is proposed. It determines the sensitivity levels of form attributes depending on the context and sensitive parameters. The electronic form is the starting point of the data collection process. We augment the form with sensitivity levels and a mapping of security mechanisms to the sensitivity levels is made. Through threat modeling, we identify potential threats and possible mitigations. We demonstrate the feasibility of our approach by prototyping the proposed model into the Open Data Kit tool suite. Tests show that the security mitigations specified during form design are executed once the secure form is loaded on the mobile device during data collection. Our ultimate aim is to facilitate the addition of security requirements into the data collection processes right from the start of the design process.
- Is Part Of:
- Security and privacy. Volume 4:Issue 3(2021)
- Journal:
- Security and privacy
- Issue:
- Volume 4:Issue 3(2021)
- Issue Display:
- Volume 4, Issue 3 (2021)
- Year:
- 2021
- Volume:
- 4
- Issue:
- 3
- Issue Sort Value:
- 2021-0004-0003-0000
- Page Start:
- n/a
- Page End:
- n/a
- Publication Date:
- 2021-03-28
- Subjects:
- data classification -- data sensitivity -- mobile data collection -- mobile health -- secure design -- STRIDE -- threat modeling
Computer security -- Periodicals
Data protection -- Periodicals
Cyberterrorism -- Periodicals
005.8 - Journal URLs:
- https://onlinelibrary.wiley.com/journal/24756725 ↗
http://onlinelibrary.wiley.com/ ↗ - DOI:
- 10.1002/spy2.155 ↗
- Languages:
- English
- ISSNs:
- 2475-6725
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - 8217.148805
British Library DSC - BLDSS-3PM
British Library HMNTS - ELD Digital store - Ingest File:
- 16749.xml