A Comprehensive Study of Security and Cyber-Security Risk Management within e-Health Systems: Synthesis, Analysis and a Novel Quantified Approach

被引:0
|
作者
Sondes Ksibi
Faouzi Jaidi
Adel Bouhoula
机构
[1] University of Carthage,Higher School of Communication of Tunis, LR18TIC01 Digital Security Research Lab
[2] University of Carthage,National School of Engineers of Carthage
[3] Arabian Gulf University,Department of Next
来源
关键词
e-Health; IoT; IoMT; Security; Risk management; Trust;
D O I
暂无
中图分类号
学科分类号
摘要
Internet of Things (IoT) applications are among the major trends of nowadays. Billions of connected devices are creating great business profits and performing a multitude of automated tasks in many daily human activities. In healthcare service delivery, IoT capabilities are difficult to overestimate, they are progressively becoming entangled and commonly coined Internet of Medical Things (IoMT). The participating nodes in IoMT networks generate, collect and exchange huge amounts of extremely private and sensitive data. Numerous security vulnerabilities arise due to the complexity and the heterogeneity of the technology. New risks, born out of IoMT systems, cannot easily be supported by existing risk management frameworks. The existing cyber-security risk assessment methods and approaches, deployed in several organizations, will not address the IoMT inherent risks properly. This study includes a comprehensive review of IoMT systems. Popular risk assessment methods are discussed and their suitability to IoMT is dealt with in detail. Based on this study, we propose a framework to enhance trust and help with decision making in e-healthcare environments given its high-risk exposure. The proposal is based on a quantified risk assessment approach. Our aim is to define a novel approach/model for improving trust and risk management in an e-health context.
引用
收藏
页码:107 / 127
页数:20
相关论文
共 21 条
  • [1] A Comprehensive Study of Security and Cyber-Security Risk Management within e-Health Systems: Synthesis, Analysis and a Novel Quantified Approach
    Ksibi, Sondes
    Jaidi, Faouzi
    Bouhoula, Adel
    MOBILE NETWORKS & APPLICATIONS, 2023, 28 (01): : 107 - 127
  • [2] A Comprehensive Quantified Approach for Security Risk Management in e-Health Systems
    Ksibi, Sondes
    Jaidi, Faouzi
    Bouhoula, Adel
    PROCEEDINGS OF THE 17TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (SECRYPT), VOL 1, 2020, : 652 - 657
  • [3] Methodology for risk management related to cyber-security of Unmanned Aircraft Systems
    Tran, Trung Duc
    Thiriet, Jean-Marc
    Marchand, Nicolas
    El Mrabti, Amin
    Luculli, Gabriele
    2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 695 - 702
  • [4] A Comprehensive Overview of Security Monitoring Solutions for e-health Systems
    Katt, Basel
    2014 IEEE INTERNATIONAL CONFERENCE ON HEALTHCARE INFORMATICS (ICHI), 2014, : 364 - 364
  • [5] Simulation-supported aviation cyber-security risk analysis: a case study
    Schmitt A.R.
    Edinger C.
    Mayer T.
    Niederl J.
    Kiesling T.
    CEAS Aeronautical Journal, 2019, 10 (02) : 517 - 530
  • [6] Cyber Security within Smart Cities: A Comprehensive Study and a Novel Intrusion Detection-Based Approach
    Houichi, Mehdi
    Jaidi, Faouzi
    Bouhoula, Adel
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 81 (01): : 393 - 441
  • [7] A Comprehensive Risk Management Approach to Information Security in Intelligent Transport Systems
    Vogt T.
    Spahovic E.
    Doms T.
    Seyer R.
    Weiskirchner H.
    Pollhammer K.
    Raab T.
    Rührup S.
    Latzenhofer M.
    Schmittner C.
    Hofer M.
    Bonitz A.
    Kloibhofer C.
    Chlup S.
    SAE International Journal of Transportation Cybersecurity and Privacy, 2021, 4 (01):
  • [8] Security and Privacy in IoT-Cloud-Based e-Health Systems-A Comprehensive Review
    Butpheng, Chanapha
    Yeh, Kuo-Hui
    Xiong, Hu
    SYMMETRY-BASEL, 2020, 12 (07):
  • [9] Security and privacy issues in e-health cloud-based system: A comprehensive content analysis
    Azeez, Nureni Ayofe
    Van der Vyver, Charles
    EGYPTIAN INFORMATICS JOURNAL, 2019, 20 (02) : 97 - 108
  • [10] Cyber Resilience, Risk Management, and Security Challenges in Enterprise-Scale Cloud Systems: Comprehensive Review
    Abdi, Abdiaziz
    Bennouri, Hajar
    Keane, Anthony
    2024 13TH MEDITERRANEAN CONFERENCE ON EMBEDDED COMPUTING, MECO 2024, 2024, : 132 - 139