Role based access control for a medical database

Slevin, Lindi and Macfie, Alex (2007) Role based access control for a medical database. In: IASTED Software Engineering and Applications Conference, 19 - 21 Nov 2007, Cambridge, Massachusetts, USA.

Full text not available from this repository.


This paper describes the testing the applicability of Role Based Access Control (RBAC) within an existing medical database in the Oncology Department at St. Bartholomew’s Hospital in London, United Kingdom (UK). We show how role hierarchies and RBAC rules are derived for this particular database, and observe the outcomes of our RBAC implementation. Our work is in line with the UK Government’s initiative to make historical patient data available to as wide an audience as possible and to include RBAC as a security mechanism within the National Program for Information Technology (NPfIT) of the UK National Health Service (NHS).

Item Type: Conference or Workshop Item (Paper)
Uncontrolled Keywords: RBAC, authorization, medical database, NHS
Subjects: University of Westminster > Science and Technology > Electronics and Computer Science, School of (No longer in use)
Depositing User: Miss Nina Watts
Date Deposited: 25 Jun 2008 15:45
Last Modified: 20 Oct 2009 13:20

Actions (login required)

Edit Item (Repository staff only) Edit Item (Repository staff only)