US 12,406,099 B2
Method for securely storing and retrieving medical data
Srikrishna Prasad, Erlangen (DE); Michael Kelm, Erlangen (DE); Ute Rosenbaum, Kempten (DE); Daniel Nottebrock, Nuremberg (DE); Anthony Jay, Erlangen (DE); Manuel Sujith, Erlangen (DE); Srividya Tirunellai Rajamani, Erlangen (DE); Amatzia Tov, Kibbutz Reshafim (IL); and Matityahu Amit, Zur-Yigal (IL)
Assigned to Siemens Healthineers AG, Erlangen (DE)
Filed by Siemens Healthcare GmbH, Erlangen (DE); and Biosense Webster (Israel) Ltd., Yokneam (IL)
Filed on Sep. 9, 2021, as Appl. No. 17/470,369.
Claims priority of application No. 20195563 (EP), filed on Sep. 10, 2020.
Prior Publication US 2022/0075903 A1, Mar. 10, 2022
Int. Cl. G06F 21/78 (2013.01); G06F 21/60 (2013.01); G16H 10/60 (2018.01); G16H 30/20 (2018.01); H04L 9/08 (2006.01)
CPC G06F 21/78 (2013.01) [G06F 21/602 (2013.01); G16H 10/60 (2018.01); G16H 30/20 (2018.01); H04L 9/0825 (2013.01)] 13 Claims
OG exemplary drawing
 
1. A computer-implemented method for securely storing medical data comprising at least steps of:
obtaining, in a secure environment, medical data which include patient property data as well as patient identifier data wherein the patient identifier data indicate at least one patient to which the patient property data correspond;
generating, in the secure environment de-identified medical data by replacing the patient identifier data in the medical data, with respective non-patient-identifying coded identifiers, wherein each non-patient-identifying coded identifier is a hash key of the patient identifier data PID, of parts of the patient identifier data PID, and/or is based on at least parts of the patient identifier data PID and other data;
generating, in the secure environment, a re-identifying database indicating correspondences between the non-patient-identifying coded identifiers and the patient identifier data;
generating an encrypted re-identifying database by applying, in the secure environment, at least one asymmetric encryption method to the re-identifying database, wherein at least an asymmetric encryption method is applied when generating the encrypted re-identifying database, the asymmetric encryption method being based on a private key and a public key wherein a public key of the asymmetric encryption method is used for the asymmetric encryption and wherein a private key for a corresponding decryption remains in the secure environment;
storing the encrypted re-identifying database and the de-identified medical data on a cloud storage outside of the secure environment.