21
Damon Berry Damon Berry HISI 2011 Health Identity Standards and Specifications TeaPOT, School of Electrical Engineering Systems, DIT. http://teapot.dit.ie

Identity Standards - Damon Berry

Embed Size (px)

DESCRIPTION

 

Citation preview

Page 1: Identity Standards - Damon Berry

Damon BerryDamon Berry

HISI 2011

Health Identity Standards and Specifications

TeaPOT, School of Electrical Engineering Systems, DIT. http://teapot.dit.ie

Page 2: Identity Standards - Damon Berry

Introduction

• Some identity definitions• Demographics models / trait sets• Standards for identity matching• Gaps in standardisation

Page 3: Identity Standards - Damon Berry

Matching concepts

EN13606

Access Control (PMAC)

entity

principal

policy

document

role

act

authentication

Policy management

authorisation

audit

Privilege management

Principal management

Access control management

“entity”

attester

subject

committerIXSentity

Page 4: Identity Standards - Damon Berry

Identity Domain

Identity (trait set +,…)

Background terms

• Definition– Identifier– Trait– Identity– Identity domain

Identifier

Identifier

Trait

Trait

Trait

Trait

Trait Trait

Page 5: Identity Standards - Damon Berry

Primary identifiers – assigned at a national

level

• Individual Healthcare Identifiers (IHIs)

• Healthcare Provider Identifiers – Individual (HPI-Is) assigned to healthcare professionals

• Healthcare Provider Identifiers – Organisation (HPI-Os) assigned to organisations where healthcare is provided.

Page 6: Identity Standards - Damon Berry

Demographics models

Page 7: Identity Standards - Damon Berry

Identity cross reference service(OMG/HL7)

Page 8: Identity Standards - Damon Berry

Standardised trait sets for people and organisation

ISO/TS 22220:2009 Health Informatics -

Identification of subjects of health care

ISO/TS 27527:2010 Health informatics -

Provider identification

Page 9: Identity Standards - Damon Berry

EHRcom Demographics Model

Page 10: Identity Standards - Damon Berry

Commonly occurring features in demographic

models

• “Identified entity”

• Data types

• Trait – trait part

• Validity time

• Role

Page 11: Identity Standards - Damon Berry

Gap 2 - Identity of other types of entities

• Samples / specimens

• Orders

• Episode

• Instrument (there already)

• Omic entities

Page 12: Identity Standards - Damon Berry

Secondary identifiers in the EHR

• Lab number

• Sample / Specimen Number

• Order Number

• Episode ID

Page 13: Identity Standards - Damon Berry

Gap 3: turning local identifiers into global ones(just to uniquely identify - not to link

entities)

Three approaches

• OIDS

• UUIDs

• URIs

Page 14: Identity Standards - Damon Berry

ISO Object Identifiers (OIDs)

• a standardised identification scheme. • developed in 1985 now widely used in the standards

community. • Each OID forms a node in a tree. • The arcs (edges or branches) between nodes in tree are

numbered and can also be associated with an alphanumeric identifier.

• Some examples of different OID notations.– Numeric form 2.16.382.1 – Alphanumeric form {joint-iso-itu}.{country}.{ire}.{organisation}.– URN notation urn:oid: 2.16.382.1 – IRI notation oid:/joint-iso-itu/country/ire/organisation

Page 15: Identity Standards - Damon Berry

OIDs

ISO-ITU

IRE

HSE HRB CSOESRI

Acute Care PrimaryCare

Patients HCPs Pharma

SJH

AMNCH

Parklands MC

Beamont MC

UHIC. 123 UHCP. 123

5 million3,000800 120,000

Snomed-CT

Drug A

??

Drug B

International OIDs

National OIDs

Page 16: Identity Standards - Damon Berry

National OID repositories

• Germany

• Switzerland

• Spain

• United Kingdom

• Norway

• … using Excel.

Page 17: Identity Standards - Damon Berry

A better way, OID Resolution Protocol

• The OID resolution protocol (ORP), defined in a IEC work item will define the interaction between– OID resolution client which sends an OID as

part of a request and – OID resolution server which returns the OID

information available at the corresponding node in the tree.

• Similar to the Domain Name Service.

Page 18: Identity Standards - Damon Berry

UUID Universally Unique Identifier

• Formed by a series of 16 octets or a total of 128 bits or 32 hexadecimal digits (often separated in groups of four).

• A new unique UUID could be created every 100 nanoseconds on every internet machine for the next 1600 years.

• UUIDs can be registered in an OID registry. For example the OID 2.25 has been reserved as a registration authority for UUIDs.

Page 19: Identity Standards - Damon Berry

Scope of the three types of unique

identifiers

.

URIs

UUIDs OIDsRegistered

UUIDs(in OID

repository)

Page 20: Identity Standards - Damon Berry

URI or Uniform Resource Locator

• A string that identifies a name or internet resource. There are two types of URI and a resource can be addressed by both types simultaneously.– URL (Uniform Resource Locator) is a widely used

type of URI that identifies and provides a means for retrieving an internet resource.

– URN (Uniform Resource Name) is a mechanism for naming or finding a resource and associating meta-information with a name. The presence of a URN for a resource does not necessarily imply that the resource is available. A URN can be used to represent an OID. The joint ISO-ITU OID for Ireland in URN syntax is

– urn:oid:2.16.382

Page 21: Identity Standards - Damon Berry

Thank [email protected]