论文标题

一项关于开发安全移动健康应用程序的实证研究:开发人员的观点

An Empirical Study on Developing Secure Mobile Health Apps: The Developers Perspective

论文作者

Aljedaani, Bakheet, Ahmad, Aakash, Zahedi, Mansooreh, Babar, M. Ali

论文摘要

移动应用程序利用设备的嵌入式传感器和无线连接,以通过便携式计算,上下文感知的通信和增强的交互授权用户。具体来说,移动健康应用程序(简称MHealth应用程序)已成为移动和普遍计算的组成部分,以提高医疗服务的可用性和质量。尽管提供了带来的好处,但MHealth应用程序面临着一个关键的挑战,即该应用程序生产和消费的健康关键数据安全性。几项研究表明,MHealth应用程序的安全特定问题尚未得到充分解决。这项研究的目标是凭经验(a)调查阻碍安全MHealth应用程序发展的挑战,(b)确定实践以开发安全的应用程序,以及(c)探索影响安全开发的激励因素。我们通过收集来自06大洲的25个国家的97个开发人员的回应,以各种各样的团队和角色为Android,iOS和Windows平台开发MHealth应用程序,从而进行了这项研究。对调查数据的定性分析基于(i)8个关键挑战,(ii)最佳实践的分类法,以确保安全性,以及(iii)6的激励因素,影响安全的MHealth应用程序。这项研究提供了经验证据,因为从业人员认为和开发新兴和下一代安全的MHealth应用程序的指南。

Mobile apps exploit embedded sensors and wireless connectivity of a device to empower users with portable computations, context-aware communication, and enhanced interaction. Specifically, mobile health apps (mHealth apps for short) are becoming integral part of mobile and pervasive computing to improve the availability and quality of healthcare services. Despite the offered benefits, mHealth apps face a critical challenge, i.e., security of health critical data that is produced and consumed by the app. Several studies have revealed that security specific issues of mHealth apps have not been adequately addressed. The objectives of this study are to empirically (a) investigate the challenges that hinder development of secure mHealth apps, (b) identify practices to develop secure apps, and (c) explore motivating factors that influence secure development. We conducted this study by collecting responses of 97 developers from 25 countries, across 06 continents, working in diverse teams and roles to develop mHealth apps for Android, iOS, and Windows platform. Qualitative analysis of the survey data is based on (i) 8 critical challenges, (ii) taxonomy of best practices to ensure security, and (iii) 6 motivating factors that impact secure mHealth apps. This research provides empirical evidence as practitioners view and guidelines to develop emerging and next generation of secure mHealth apps.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源