1. Service for the Pseudonymization of Electronic Healthcare Records Based on ISO/EN 13606 for the Secondary Use of Information
- Author
-
Roberto Somolinos, Pablo Serrano, Jesús L Chirinos Cáceres, Ricardo Sánchez-de-Madariaga, Juan A. Fragua, M. Elena Hernando, Mario Pascual, Adolfo Muñoz, Carlos H. Salvador, Instituto de Salud Carlos III, Plan Nacional de I+D+i (España), and Fondo de Investigaciones Sanitarias
- Subjects
Telemedicine ,Service (systems architecture) ,computer.software_genre ,Field (computer science) ,World Wide Web ,Medical information systems ,Health Information Management ,Server ,Pseudonymization ,Data Protection Act 1998 ,Medicine ,Electronic Health Records ,Humans ,Medical Informatics Applications ,Electrical and Electronic Engineering ,Electronic medical records ,Web services ,Telecomunicaciones ,Database ,Data anonymization ,business.industry ,Identification of persons ,ISO standards ,Computer Science Applications ,Identifier ,business ,computer ,Confidentiality ,Biotechnology - Abstract
The availability of electronic health data favors scientific advance through the creation of repositories for secondary use. Data anonymization is a mandatory step to comply with current legislation. A service for the pseudonymization of electronic healthcare record (EHR) extracts aimed at facilitating the exchange of clinical information for secondary use in compliance with legislation on data protection is presented. According to ISO/TS 25237, pseudonymization is a particular type of anonymization. This tool performs the anonymizations by maintaining three quasi-identifiers (gender, date of birth, and place of residence) with a degree of specification selected by the user. The developed system is based on the ISO/EN 13606 norm using its characteristics specifically favorable for anonymization. The service is made up of two independent modules: the demographic server and the pseudonymizing module. The demographic server supports the permanent storage of the demographic entities and the management of the identifiers. The pseudonymizing module anonymizes the ISO/EN 13606 extracts. The pseudonymizing process consists of four phases: the storage of the demographic information included in the extract, the substitution of the identifiers, the elimination of the demographic information of the extract, and the elimination of key data in free-text fields. The described pseudonymizing system was used in three telemedicine research projects with satisfactory results. A problem was detected with the type of data in a demographic data field and a proposal for modification was prepared for the group in charge of the drawing up and revision of the ISO/EN 13606 norm. This work was supported inpart by Project PI08/1148, Project PI08/90330, Project PI12/01476, and ProjectPI12/01305 (coord. PI12/00508) from Fondo de Investigaci ́on Sanitaria (FIS)Plan Nacional de I+D+i and by Project CEN-20091043 Sí
- Published
- 2015