论文标题
制定安全移动健康应用程序的挑战,系统审查
Challenges in Developing Secure Mobile Health Applications, A Systematic Review
论文作者
论文摘要
移动健康(MHealth)应用程序(APP)由于其巨大好处,例如降低医疗保健成本和提高患者意识,在过去几年中广受欢迎。但是,医疗保健数据的敏感性使MHealth应用程序的安全性成为一个严重的问题。在这篇综述中,我们旨在确定和分析MHealth应用程序开发人员在安全性方面面临的报告挑战。此外,我们的研究旨在开发一个概念框架,并采用MHealth Apps开发组织对开发安全应用程序面临的挑战。对此类挑战的了解可以帮助减少开发不安全的MHealth应用程序的风险。我们遵循了本综述的系统文献综述方法。我们选择了在2008年1月至2020年10月之间发表的研究。我们使用预定义标准选择了32项主要研究,并使用主题分析方法来分析提取的数据。我们确定了9个挑战,可以影响安全的MHealth应用程序的开发。例如1)缺乏开发安全MHealth应用程序的安全指南和法规,2)开发人员缺乏安全MHealth应用程序开发的知识和专业知识,3)缺乏在MHealth应用程序开发期间的利益相关者参与等。基于我们的分析,我们提出了一个概念框架,该框架突出了所确定的挑战之间的相关性。我们得出的结论是,我们的发现可以帮助他们确定自己的弱点并改善其安全实践。同样,MHealth应用程序开发人员可以确定他们在开发不给用户带来安全风险的MHealth应用程序面临的挑战。我们的审查是提供有关安全MHealth应用程序开发的洞察力的一步。我们提出的概念框架可以充当从业者增强安全MHealth应用程序开发的实践指南。
Mobile health (mHealth) applications (apps) have gained significant popularity over the last few years due to its tremendous benefits, such as lowering healthcare cost and increasing patient awareness. However, the sensitivity of healthcare data makes the security of mHealth apps a serious concern. In this review, we aim to identify and analyse the reported challenges that the developers of mHealth apps face concerning security. Additionally, our study aimed to develop a conceptual framework with the challenges faced by mHealth apps development organization for developing secure apps. The knowledge of such challenges can help to reduce the risk of developing insecure mHealth apps. We followed the Systematic Literature Review method for this review. We selected studies that have been published between January 2008 and October 2020. We selected 32 primary studies using predefined criteria and used thematic analysis method for analysing the extracted data. We identified nine challenges that can affect the development of secure mHealth apps. Such as 1) lack of security guidelines and regulations for developing secure mHealth apps, 2) developers lack of knowledge and expertise for secure mHealth app development, 3) lack of stakeholders involvement during mHealth app development, etc . Based on our analysis, we have presented a conceptual framework which highlights the correlation between the identified challenges. We conclude that our findings can help them identify their weaknesses and improve their security practices. Similarly, mHealth apps developers can identify the challenges they face to develop mHealth apps that do not pose security risks for users. Our review is a step towards providing insights into the development of secure mHealth apps. Our proposed conceptual framework can act as a practice guideline for practitioners to enhance secure mHealth apps development.