Healthcare Security and Privacy Policy Compliance: A Blockchain and Smart Contract-Based Assurance Framework
| dc.contributor.author | Al Amin, Md, author | |
| dc.contributor.author | Ray, Indrajit, advisor | |
| dc.contributor.author | Ray, Indrakshi, committee member | |
| dc.contributor.author | Malaiya, Yashwant K., committee member | |
| dc.contributor.author | Vijayasarathy, Leo R., committee member | |
| dc.date.accessioned | 2026-06-08T10:32:59Z | |
| dc.date.issued | 2026 | |
| dc.description.abstract | Access to electronic health records (EHRs) is heavily regulated by various policies, including federal-level policies, state-level statutes, international data protection laws, and local and organizational-level policies. These policies may include procedures to ensure compliance with other organizational-level regulations. In addition, individual patients can establish agreements, formally known as patient-provider agreements (PPA), with their healthcare providers to express their consent to access or share their protected health information (PHI). When such policies are adequately specified and implemented, they go a long way toward protecting EHR data. However, research has shown that significant policy compliance problems or gaps often go undetected until after a breach or security incident. Further, a recent study shows that subcultures within a healthcare organization influence whether employees violate policies, perhaps unintentionally. These observations motivate us to revisit the compliance and provenance aspects of policies. This dissertation proposes a blockchain-powered, smart contract-based policy-compliance assurance framework to enforce patient-provider agreements and other applicable policies and attributes, ensuring policy compliance and provenance in the healthcare sector. This work proposes a novel compliance review mechanism, Proof of Compliance (PoC), that conducts reviews through a set of independent, distributed, decentralized auditor nodes from various stakeholders, such as healthcare organizations, insurance companies, federal and other government agencies, regulatory agencies, and others mandated by the business requirements. Blockchain smart contracts appear to be a promising new technology for enforcing policies. In addition, blockchains' immutable storage properties and strong integrity guarantees provide hope that an adequate trail of policy compliance (or non-compliance) can be maintained, thereby facilitating provenance. | |
| dc.format.medium | born digital | |
| dc.format.medium | doctoral dissertations | |
| dc.identifier | AlAmin_colostate_0053A_19436.pdf | |
| dc.identifier.uri | https://hdl.handle.net/10217/244849 | |
| dc.identifier.uri | https://doi.org/10.25675/3.027209 | |
| dc.language | English | |
| dc.language.iso | eng | |
| dc.publisher | Colorado State University. Libraries | |
| dc.relation.ispartof | 2020- | |
| dc.rights | Copyright and other restrictions may apply. User is responsible for compliance with all applicable laws. For information about copyright law, please see https://libguides.colostate.edu/copyright. | |
| dc.subject | Healthcare Privacy | |
| dc.subject | Patient Consent | |
| dc.subject | Smart Contracts | |
| dc.subject | Healthcare Security | |
| dc.subject | Blockchain | |
| dc.subject | Policy Compliance | |
| dc.title | Healthcare Security and Privacy Policy Compliance: A Blockchain and Smart Contract-Based Assurance Framework | |
| dc.type | Text | |
| dcterms.rights.dpla | This Item is protected by copyright and/or related rights (https://rightsstatements.org/vocab/InC/1.0/). You are free to use this Item in any way that is permitted by the copyright and related rights legislation that applies to your use. For other uses you need to obtain permission from the rights-holder(s). | |
| thesis.degree.discipline | Computer Science | |
| thesis.degree.grantor | Colorado State University | |
| thesis.degree.level | Doctoral | |
| thesis.degree.name | Doctor of Philosophy (Ph.D.) |
Files
Original bundle
1 - 1 of 1
Loading...
- Name:
- AlAmin_colostate_0053A_19436.pdf
- Size:
- 9.86 MB
- Format:
- Adobe Portable Document Format
