Continuous compliance auditing readiness and attestation in healthcare cloud solutions

    公开(公告)号:US11164671B2

    公开(公告)日:2021-11-02

    申请号:US16253582

    申请日:2019-01-22

    发明人: Mario E. De Armas

    IPC分类号: G16H40/20 G06Q30/00

    摘要: A mechanism is provided in a data processing system comprising at least one processor and at least one memory, the at least one memory comprising instructions which are executed by the at least one processor and configure the processor to implement a healthcare blockchain framework for continuous compliance auditing readiness and attestation in healthcare cloud solutions. The mechanisms provides a healthcare blockchain framework to create, read, update, and delete elements of a healthcare compliance model supporting a dynamic allocation of cloud resources to a healthcare business network. Compliance with one or more healthcare regulations is built into the blockchain framework. Responsive to an attestation event, a compliance attestation component within the healthcare blockchain framework reviews asset contents, state, and properties of an asset in a compliance repository. The compliance attestation component creates a bottom-up asset manifest for the asset and compares the asset manifest to a test case corresponding to an asset class of the asset. The compliance attestation component validates the asset against evidence rules corresponding to the asset class of the asset based on the comparison. Responsive to the compliance attestation component validating the asset, the mechanism generates a proof-of-validation certification.

    Blockchain Framework for Enforcing Regulatory Compliance in Healthcare Cloud Solutions

    公开(公告)号:US20200234816A1

    公开(公告)日:2020-07-23

    申请号:US16253506

    申请日:2019-01-22

    发明人: Mario E. De Armas

    IPC分类号: G16H40/20 G06Q30/00 G06Q10/06

    摘要: A mechanism is provided in a data processing system comprising at least one processor and at least one memory, the at least one memory comprising instructions which are executed by the at least one processor and configure the processor to implement a healthcare blockchain framework for enforcing regulatory compliance in healthcare cloud solutions. The mechanism provides a healthcare blockchain framework to create, read, update, and delete elements of a healthcare compliance model supporting a dynamic allocation of cloud resources to a healthcare business network. Compliance with one or more healthcare regulations is built into the blockchain framework. Responsive to a cloud operations component within the healthcare blockchain framework attaching at least one evidence record to a compliance repository, the blockchain application stores the at least one evidence record in the compliance repository using chaincode within the healthcare blockchain framework. A compliance attestation component within the healthcare blockchain framework reviews the at least one evidence record using business rules to ensure compliance with the one or more healthcare regulations. The compliance attestation component stores a validation certification in the compliance repository responsive to the compliance attestation component approving the at least one evidence record based on the business rules.

    Visualization of runtime resource policy attachments and applied policy details
    5.
    发明授权
    Visualization of runtime resource policy attachments and applied policy details 有权
    可视化运行时资源策略附件和应用的策略详细信息

    公开(公告)号:US09535564B2

    公开(公告)日:2017-01-03

    申请号:US14224508

    申请日:2014-03-25

    摘要: A service policy visualization interface is provided that is capable of selection and filtering of policy resources associated with a service managed using service policies. In response to detecting a selection of a policy resource within the service policy visualization interface, the selected policy resource is introspected to identify service policies. The service policies are attached to the selected policy resource within a resource hierarchy associated with the selected policy resource. Based upon results of the introspection of the selected policy resource, an effective applied policy configuration associated with the selected policy resource is created, including correlated and combined effects of the attached service policies. The effective applied policy configuration associated with the selected policy resource, including the correlated and combined effects of the attached service policies, is displayed within the service policy visualization interface.

    摘要翻译: 提供了一种服务策略可视化界面,其能够选择和过滤与使用服务策略管理的服务相关联的策略资源。 响应于检测到服务策略可视化界面内的策略资源的选择,所选策略资源被内省以识别服务策略。 服务策略附加到与所选策略资源相关联的资源层次中的所选策略资源。 基于对所选策略资源的内省的结果,创建与所选策略资源相关联的有效的应用策略配置,包括所附服务策略的相关和组合效果。 与所选择的策略资源相关联的有效的应用策略配置,包括所附加服务策略的相关和组合效果,被显示在服务策略可视化界面内。

    SYMMETRIC COHERENT REQUEST/RESPONSE POLICY ENFORCEMENT

    公开(公告)号:US20200153708A1

    公开(公告)日:2020-05-14

    申请号:US16740681

    申请日:2020-01-13

    摘要: A set of service level agreement (SLA) policies and service level definition (SLD) policies that are applied to a request message of a correlated request/response message pair are tracked. A response message of the correlated request/response message pair is detected. A corresponding set of platform-specific policy enforcement processing rules that are used to enforce the set of SLA policies and SLD policies on the response message are identified using the tracked set of SLA policies and SLD policies applied to the request message. The set of SLA policies and SLD policies are enforced on the response message using the identified corresponding set of platform-specific policy enforcement processing rules.