Loading…
ZTCloudGuard: Zero Trust Context-Aware Access Management Framework to Avoid Medical Errors in the Era of Generative AI and Cloud-Based Health Information Ecosystems
Managing access between large numbers of distributed medical devices has become a crucial aspect of modern healthcare systems, enabling the establishment of smart hospitals and telehealth infrastructure. However, as telehealth technology continues to evolve and Internet of Things (IoT) devices becom...
Saved in:
Published in: | AI (Basel) 2024-09, Vol.5 (3), p.1111-1131 |
---|---|
Main Authors: | , , |
Format: | Article |
Language: | English |
Subjects: | |
Citations: | Items that this one cites |
Online Access: | Get full text |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
cited_by | |
---|---|
cites | cdi_FETCH-LOGICAL-c349t-38e590648b6cae83c83a57571e34efa905e2af870d137ee53f49cc1fc24b7f063 |
container_end_page | 1131 |
container_issue | 3 |
container_start_page | 1111 |
container_title | AI (Basel) |
container_volume | 5 |
creator | Al-hammuri, Khalid Gebali, Fayez Kanan, Awos |
description | Managing access between large numbers of distributed medical devices has become a crucial aspect of modern healthcare systems, enabling the establishment of smart hospitals and telehealth infrastructure. However, as telehealth technology continues to evolve and Internet of Things (IoT) devices become more widely used, they are also increasingly exposed to various types of vulnerabilities and medical errors. In healthcare information systems, about 90% of vulnerabilities emerge from medical error and human error. As a result, there is a need for additional research and development of security tools to prevent such attacks. This article proposes a zero-trust-based context-aware framework for managing access to the main components of the cloud ecosystem, including users, devices, and output data. The main goal and benefit of the proposed framework is to build a scoring system to prevent or alleviate medical errors while using distributed medical devices in cloud-based healthcare information systems. The framework has two main scoring criteria to maintain the chain of trust. First, it proposes a critical trust score based on cloud-native microservices for authentication, encryption, logging, and authorizations. Second, a bond trust scoring system is created to assess the real-time semantic and syntactic analysis of attributes stored in a healthcare information system. The analysis is based on a pre-trained machine learning model that generates the semantic and syntactic scores. The framework also takes into account regulatory compliance and user consent in the creation of the scoring system. The advantage of this method is that it applies to any language and adapts to all attributes, as it relies on a language model, not just a set of predefined and limited attributes. The results show a high F1 score of 93.5%, which proves that it is valid for detecting medical errors. |
doi_str_mv | 10.3390/ai5030055 |
format | article |
fullrecord | <record><control><sourceid>proquest_doaj_</sourceid><recordid>TN_cdi_doaj_primary_oai_doaj_org_article_eec08526b58c4038acbaebb98dd99ef0</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><doaj_id>oai_doaj_org_article_eec08526b58c4038acbaebb98dd99ef0</doaj_id><sourcerecordid>3110288653</sourcerecordid><originalsourceid>FETCH-LOGICAL-c349t-38e590648b6cae83c83a57571e34efa905e2af870d137ee53f49cc1fc24b7f063</originalsourceid><addsrcrecordid>eNpNkc1u1DAUhSMEElXbBW9wJVYsAk4cJw67YTSdjtSKzbDpxrqxr9sMSVyunZa-Dw9K2kEVq_ujo-8c6WTZh0J8lrIVX7BXQgqh1JvspKwbmZe11m__299n5zEehBClKspKipPsz81-PYTZbWdk9xVuiAPseY4J1mFK9Dvlq0dkgpW1FCNc44S3NNKU4IJxpMfAPyEFWD2E3sE1ud7iABvmwBH6CdIdLRdC8LCliRhT_7DAdoCTgxfj_BtGcnBJOKQ72E0-8LiowgQbG-JTTDTGs-ydxyHS-b95mv242OzXl_nV9-1uvbrKrazalEtNqhV1pbvaImlptUTVqKYgWZHHVigq0etGuEI2REr6qrW28LasusaLWp5muyPXBTyYe-5H5CcTsDcvj8C3Bjn1diBDZIVWZd0pbSshNdoOqeta7VzbkhcL6-ORdc_h10wxmUOYeVriG1kUotS6VnJRfTqqLIcYmfyrayHMc6fmtVP5F_D1lNs</addsrcrecordid><sourcetype>Open Website</sourcetype><iscdi>true</iscdi><recordtype>article</recordtype><pqid>3110288653</pqid></control><display><type>article</type><title>ZTCloudGuard: Zero Trust Context-Aware Access Management Framework to Avoid Medical Errors in the Era of Generative AI and Cloud-Based Health Information Ecosystems</title><source>Publicly Available Content Database</source><source>Coronavirus Research Database</source><creator>Al-hammuri, Khalid ; Gebali, Fayez ; Kanan, Awos</creator><creatorcontrib>Al-hammuri, Khalid ; Gebali, Fayez ; Kanan, Awos</creatorcontrib><description>Managing access between large numbers of distributed medical devices has become a crucial aspect of modern healthcare systems, enabling the establishment of smart hospitals and telehealth infrastructure. However, as telehealth technology continues to evolve and Internet of Things (IoT) devices become more widely used, they are also increasingly exposed to various types of vulnerabilities and medical errors. In healthcare information systems, about 90% of vulnerabilities emerge from medical error and human error. As a result, there is a need for additional research and development of security tools to prevent such attacks. This article proposes a zero-trust-based context-aware framework for managing access to the main components of the cloud ecosystem, including users, devices, and output data. The main goal and benefit of the proposed framework is to build a scoring system to prevent or alleviate medical errors while using distributed medical devices in cloud-based healthcare information systems. The framework has two main scoring criteria to maintain the chain of trust. First, it proposes a critical trust score based on cloud-native microservices for authentication, encryption, logging, and authorizations. Second, a bond trust scoring system is created to assess the real-time semantic and syntactic analysis of attributes stored in a healthcare information system. The analysis is based on a pre-trained machine learning model that generates the semantic and syntactic scores. The framework also takes into account regulatory compliance and user consent in the creation of the scoring system. The advantage of this method is that it applies to any language and adapts to all attributes, as it relies on a language model, not just a set of predefined and limited attributes. The results show a high F1 score of 93.5%, which proves that it is valid for detecting medical errors.</description><identifier>ISSN: 2673-2688</identifier><identifier>EISSN: 2673-2688</identifier><identifier>DOI: 10.3390/ai5030055</identifier><language>eng</language><publisher>Basel: MDPI AG</publisher><subject>Access control ; access management ; cloud ; Cloud computing ; Context ; Data integrity ; distributed medical devices ; Generative artificial intelligence ; Health care ; Health care industry ; health information system ; Human error ; Information management ; Information systems ; Internet of Things ; Machine learning ; Medical devices ; Medical electronics ; Medical errors ; R&D ; Real time ; Research & development ; Semantics ; Trustworthiness ; zero-trust</subject><ispartof>AI (Basel), 2024-09, Vol.5 (3), p.1111-1131</ispartof><rights>2024 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.</rights><lds50>peer_reviewed</lds50><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed><cites>FETCH-LOGICAL-c349t-38e590648b6cae83c83a57571e34efa905e2af870d137ee53f49cc1fc24b7f063</cites><orcidid>0000-0002-6690-5529 ; 0000-0002-6817-4870</orcidid></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktopdf>$$Uhttps://www.proquest.com/docview/3110288653?pq-origsite=primo$$EPDF$$P50$$Gproquest$$Hfree_for_read</linktopdf><linktohtml>$$Uhttps://www.proquest.com/docview/3110288653?pq-origsite=primo$$EHTML$$P50$$Gproquest$$Hfree_for_read</linktohtml><link.rule.ids>314,780,784,25752,27923,27924,37011,38515,43894,44589,74183,74897</link.rule.ids></links><search><creatorcontrib>Al-hammuri, Khalid</creatorcontrib><creatorcontrib>Gebali, Fayez</creatorcontrib><creatorcontrib>Kanan, Awos</creatorcontrib><title>ZTCloudGuard: Zero Trust Context-Aware Access Management Framework to Avoid Medical Errors in the Era of Generative AI and Cloud-Based Health Information Ecosystems</title><title>AI (Basel)</title><description>Managing access between large numbers of distributed medical devices has become a crucial aspect of modern healthcare systems, enabling the establishment of smart hospitals and telehealth infrastructure. However, as telehealth technology continues to evolve and Internet of Things (IoT) devices become more widely used, they are also increasingly exposed to various types of vulnerabilities and medical errors. In healthcare information systems, about 90% of vulnerabilities emerge from medical error and human error. As a result, there is a need for additional research and development of security tools to prevent such attacks. This article proposes a zero-trust-based context-aware framework for managing access to the main components of the cloud ecosystem, including users, devices, and output data. The main goal and benefit of the proposed framework is to build a scoring system to prevent or alleviate medical errors while using distributed medical devices in cloud-based healthcare information systems. The framework has two main scoring criteria to maintain the chain of trust. First, it proposes a critical trust score based on cloud-native microservices for authentication, encryption, logging, and authorizations. Second, a bond trust scoring system is created to assess the real-time semantic and syntactic analysis of attributes stored in a healthcare information system. The analysis is based on a pre-trained machine learning model that generates the semantic and syntactic scores. The framework also takes into account regulatory compliance and user consent in the creation of the scoring system. The advantage of this method is that it applies to any language and adapts to all attributes, as it relies on a language model, not just a set of predefined and limited attributes. The results show a high F1 score of 93.5%, which proves that it is valid for detecting medical errors.</description><subject>Access control</subject><subject>access management</subject><subject>cloud</subject><subject>Cloud computing</subject><subject>Context</subject><subject>Data integrity</subject><subject>distributed medical devices</subject><subject>Generative artificial intelligence</subject><subject>Health care</subject><subject>Health care industry</subject><subject>health information system</subject><subject>Human error</subject><subject>Information management</subject><subject>Information systems</subject><subject>Internet of Things</subject><subject>Machine learning</subject><subject>Medical devices</subject><subject>Medical electronics</subject><subject>Medical errors</subject><subject>R&D</subject><subject>Real time</subject><subject>Research & development</subject><subject>Semantics</subject><subject>Trustworthiness</subject><subject>zero-trust</subject><issn>2673-2688</issn><issn>2673-2688</issn><fulltext>true</fulltext><rsrctype>article</rsrctype><creationdate>2024</creationdate><recordtype>article</recordtype><sourceid>COVID</sourceid><sourceid>PIMPY</sourceid><sourceid>DOA</sourceid><recordid>eNpNkc1u1DAUhSMEElXbBW9wJVYsAk4cJw67YTSdjtSKzbDpxrqxr9sMSVyunZa-Dw9K2kEVq_ujo-8c6WTZh0J8lrIVX7BXQgqh1JvspKwbmZe11m__299n5zEehBClKspKipPsz81-PYTZbWdk9xVuiAPseY4J1mFK9Dvlq0dkgpW1FCNc44S3NNKU4IJxpMfAPyEFWD2E3sE1ud7iABvmwBH6CdIdLRdC8LCliRhT_7DAdoCTgxfj_BtGcnBJOKQ72E0-8LiowgQbG-JTTDTGs-ydxyHS-b95mv242OzXl_nV9-1uvbrKrazalEtNqhV1pbvaImlptUTVqKYgWZHHVigq0etGuEI2REr6qrW28LasusaLWp5muyPXBTyYe-5H5CcTsDcvj8C3Bjn1diBDZIVWZd0pbSshNdoOqeta7VzbkhcL6-ORdc_h10wxmUOYeVriG1kUotS6VnJRfTqqLIcYmfyrayHMc6fmtVP5F_D1lNs</recordid><startdate>20240901</startdate><enddate>20240901</enddate><creator>Al-hammuri, Khalid</creator><creator>Gebali, Fayez</creator><creator>Kanan, Awos</creator><general>MDPI AG</general><scope>AAYXX</scope><scope>CITATION</scope><scope>8FE</scope><scope>8FG</scope><scope>ABUWG</scope><scope>AFKRA</scope><scope>ARAPS</scope><scope>AZQEC</scope><scope>BENPR</scope><scope>BGLVJ</scope><scope>CCPQU</scope><scope>COVID</scope><scope>DWQXO</scope><scope>HCIFZ</scope><scope>P5Z</scope><scope>P62</scope><scope>PIMPY</scope><scope>PQEST</scope><scope>PQQKQ</scope><scope>PQUKI</scope><scope>PRINS</scope><scope>DOA</scope><orcidid>https://orcid.org/0000-0002-6690-5529</orcidid><orcidid>https://orcid.org/0000-0002-6817-4870</orcidid></search><sort><creationdate>20240901</creationdate><title>ZTCloudGuard: Zero Trust Context-Aware Access Management Framework to Avoid Medical Errors in the Era of Generative AI and Cloud-Based Health Information Ecosystems</title><author>Al-hammuri, Khalid ; Gebali, Fayez ; Kanan, Awos</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-LOGICAL-c349t-38e590648b6cae83c83a57571e34efa905e2af870d137ee53f49cc1fc24b7f063</frbrgroupid><rsrctype>articles</rsrctype><prefilter>articles</prefilter><language>eng</language><creationdate>2024</creationdate><topic>Access control</topic><topic>access management</topic><topic>cloud</topic><topic>Cloud computing</topic><topic>Context</topic><topic>Data integrity</topic><topic>distributed medical devices</topic><topic>Generative artificial intelligence</topic><topic>Health care</topic><topic>Health care industry</topic><topic>health information system</topic><topic>Human error</topic><topic>Information management</topic><topic>Information systems</topic><topic>Internet of Things</topic><topic>Machine learning</topic><topic>Medical devices</topic><topic>Medical electronics</topic><topic>Medical errors</topic><topic>R&D</topic><topic>Real time</topic><topic>Research & development</topic><topic>Semantics</topic><topic>Trustworthiness</topic><topic>zero-trust</topic><toplevel>peer_reviewed</toplevel><toplevel>online_resources</toplevel><creatorcontrib>Al-hammuri, Khalid</creatorcontrib><creatorcontrib>Gebali, Fayez</creatorcontrib><creatorcontrib>Kanan, Awos</creatorcontrib><collection>CrossRef</collection><collection>ProQuest SciTech Collection</collection><collection>ProQuest Technology Collection</collection><collection>ProQuest Central (Alumni)</collection><collection>ProQuest Central</collection><collection>Advanced Technologies & Aerospace Database (1962 - current)</collection><collection>ProQuest Central Essentials</collection><collection>AUTh Library subscriptions: ProQuest Central</collection><collection>Technology Collection</collection><collection>ProQuest One Community College</collection><collection>Coronavirus Research Database</collection><collection>ProQuest Central</collection><collection>SciTech Premium Collection</collection><collection>Advanced Technologies & Aerospace Database</collection><collection>ProQuest Advanced Technologies & Aerospace Collection</collection><collection>Publicly Available Content Database</collection><collection>ProQuest One Academic Eastern Edition (DO NOT USE)</collection><collection>ProQuest One Academic</collection><collection>ProQuest One Academic UKI Edition</collection><collection>ProQuest Central China</collection><collection>DOAJ Directory of Open Access Journals</collection><jtitle>AI (Basel)</jtitle></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext</fulltext></delivery><addata><au>Al-hammuri, Khalid</au><au>Gebali, Fayez</au><au>Kanan, Awos</au><format>journal</format><genre>article</genre><ristype>JOUR</ristype><atitle>ZTCloudGuard: Zero Trust Context-Aware Access Management Framework to Avoid Medical Errors in the Era of Generative AI and Cloud-Based Health Information Ecosystems</atitle><jtitle>AI (Basel)</jtitle><date>2024-09-01</date><risdate>2024</risdate><volume>5</volume><issue>3</issue><spage>1111</spage><epage>1131</epage><pages>1111-1131</pages><issn>2673-2688</issn><eissn>2673-2688</eissn><abstract>Managing access between large numbers of distributed medical devices has become a crucial aspect of modern healthcare systems, enabling the establishment of smart hospitals and telehealth infrastructure. However, as telehealth technology continues to evolve and Internet of Things (IoT) devices become more widely used, they are also increasingly exposed to various types of vulnerabilities and medical errors. In healthcare information systems, about 90% of vulnerabilities emerge from medical error and human error. As a result, there is a need for additional research and development of security tools to prevent such attacks. This article proposes a zero-trust-based context-aware framework for managing access to the main components of the cloud ecosystem, including users, devices, and output data. The main goal and benefit of the proposed framework is to build a scoring system to prevent or alleviate medical errors while using distributed medical devices in cloud-based healthcare information systems. The framework has two main scoring criteria to maintain the chain of trust. First, it proposes a critical trust score based on cloud-native microservices for authentication, encryption, logging, and authorizations. Second, a bond trust scoring system is created to assess the real-time semantic and syntactic analysis of attributes stored in a healthcare information system. The analysis is based on a pre-trained machine learning model that generates the semantic and syntactic scores. The framework also takes into account regulatory compliance and user consent in the creation of the scoring system. The advantage of this method is that it applies to any language and adapts to all attributes, as it relies on a language model, not just a set of predefined and limited attributes. The results show a high F1 score of 93.5%, which proves that it is valid for detecting medical errors.</abstract><cop>Basel</cop><pub>MDPI AG</pub><doi>10.3390/ai5030055</doi><tpages>21</tpages><orcidid>https://orcid.org/0000-0002-6690-5529</orcidid><orcidid>https://orcid.org/0000-0002-6817-4870</orcidid><oa>free_for_read</oa></addata></record> |
fulltext | fulltext |
identifier | ISSN: 2673-2688 |
ispartof | AI (Basel), 2024-09, Vol.5 (3), p.1111-1131 |
issn | 2673-2688 2673-2688 |
language | eng |
recordid | cdi_doaj_primary_oai_doaj_org_article_eec08526b58c4038acbaebb98dd99ef0 |
source | Publicly Available Content Database; Coronavirus Research Database |
subjects | Access control access management cloud Cloud computing Context Data integrity distributed medical devices Generative artificial intelligence Health care Health care industry health information system Human error Information management Information systems Internet of Things Machine learning Medical devices Medical electronics Medical errors R&D Real time Research & development Semantics Trustworthiness zero-trust |
title | ZTCloudGuard: Zero Trust Context-Aware Access Management Framework to Avoid Medical Errors in the Era of Generative AI and Cloud-Based Health Information Ecosystems |
url | http://sfxeu10.hosted.exlibrisgroup.com/loughborough?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-10T16%3A13%3A12IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-proquest_doaj_&rft_val_fmt=info:ofi/fmt:kev:mtx:journal&rft.genre=article&rft.atitle=ZTCloudGuard:%20Zero%20Trust%20Context-Aware%20Access%20Management%20Framework%20to%20Avoid%20Medical%20Errors%20in%20the%20Era%20of%20Generative%20AI%20and%20Cloud-Based%20Health%20Information%20Ecosystems&rft.jtitle=AI%20(Basel)&rft.au=Al-hammuri,%20Khalid&rft.date=2024-09-01&rft.volume=5&rft.issue=3&rft.spage=1111&rft.epage=1131&rft.pages=1111-1131&rft.issn=2673-2688&rft.eissn=2673-2688&rft_id=info:doi/10.3390/ai5030055&rft_dat=%3Cproquest_doaj_%3E3110288653%3C/proquest_doaj_%3E%3Cgrp_id%3Ecdi_FETCH-LOGICAL-c349t-38e590648b6cae83c83a57571e34efa905e2af870d137ee53f49cc1fc24b7f063%3C/grp_id%3E%3Coa%3E%3C/oa%3E%3Curl%3E%3C/url%3E&rft_id=info:oai/&rft_pqid=3110288653&rft_id=info:pmid/&rfr_iscdi=true |