SlideShare a Scribd company logo
1 of 32
UMA: 21st century health
information interoperability
+ user control
July 21, 2020
Alec Laws & Adrian Gropper
Agenda
● Moderator's welcome
● Overview of current challenges in Health Care
● How does UMA address those challenges
● Case Study: US Health Care and Trustee by HIE of ONE
● Case Study: CAN Health Care and FPX by IDENTOS
● Discussion: Presenters offer their views
● Q & A
● Current UMA and Community Activity
UMA Implementers Embrace Health Care
ForgeRock – financial, healthcare, IoT, G2C…
Gluu (open source) – API protection, enterprise, G2C…
HIE of One / Trustee (open source) – healthcare
IDENTOS – healthcare, G2C, …
PatientShare – healthcare
HealthyMePHR – healthcare
Pauldron (open source) – healthcare
RedHat Keycloak (open source) – API protection, enterprise, IoT…
ShareMedData – healthcare
WSO2 (open source) – enterprise
(more detail at tinyurl.com/umawg)
~50% of
implementations
have stated
Health Care focus
Desired Patient Experience
Current problems in our healthcare ecosystem
Data Silos
Key information
not visible
Can’t share
information
Lack of trust:
paper based
records
Have to tell my story
over and over to
different providers
No support for
complex patient
journeys
No digital
access
Can’t remember
ID or password
Unnecessary
duplication of
tests & services
Fear of fraud
and security
breaches
Miscommunication,
missed visits,
inefficiencies
Lack of R&D
innovation in digital
spaces
Patient access to
their health data is
limited and
fragmented
across care
settings and
services.
Providers access
patient’s health
data through
different channels.
Home care,
community care,
and non-clinical
providers do not
have access to
Patient’s clinical
data.
Health
Applications are
not connected.
How does UMA address
these challenges?
The Standard - Isolated User Experiences
Me online x 120!
120 Walled Gardens
Services
Data
Account
Have information
about me
Know who I am
Provide me
with service(s)
Outcomes We’ve Learned to Live With
Organizations
normal is also
flawed
Effort & cost to repeatedly
establish, maintain an Identity
Inability to adequately
serve user needs
Friction connecting with
ecosystem partners
Our normal is
fundamentally
flawed
Limited access to our
own data!
Non-transparent consent and
sharing of our personal data
Disconnected user
journeys
We Can Do Better
What if… we can create a user centered ecosystem?
Interoperability of
Services and Data
Sources
UMA is Built for Wide Ecosystems
User Control, Privacy
and Delegation
One Authorization
Server protects many
Data Sources
Person requesting
access different from
data owner/subject
User can create a
fine-grained
authorization policy
Services are protected
from authorization
details
User Centered Data & Authorization
One AS protects many RS
One RS trusted many AS
The AS and RS are decoupled
● Alice can manage many RS’s from a single AS
● An RS can delegate authorization, account
and service management to the AS
● The AS does not need to hold or duplicate
personal data
OUTCOME: scalability and interoperability
Services
Data
Account
Have information
about me
Know who I amProvide me
with service(s)
Data
Data
Data
Services
Data
Account
Services are interoperable
Services decoupled from authorization details
● Services don’t need to know about every
authorization domain (eg scopes)
● Services can dynamically discover user
authx requirements
● Services interoperate against data types
(eg images) or standards (eg FHIR)
against many RS
Have information
about me
Know who I amProvide me
with service(s)
Service
Service
Service
User Directed Delegation
User requesting access is different from Data
owner
Data owner can create fine-grained policy
● There are many use-cases for
delegation/guardianship
● I am not the only person who needs to see
my data
● UMA models this, but doesn’t overspecify
● Policy can be against an entire API, or a
specific file/path
● Policy can consider both the client and the
Requesting User
Provide me
with service(s)
Have information
about me
Know who I am
Services
Bob’s
Account
Services
Data
Account
UMA Puts it All Together
There are still separate
organizations and domains.
However now data and
services are interoperable at
the direction of the person
Alice’s
Account
(AS)
Service
Service
Service
Data
Dara
Data
Bob’s
Services
Bob’s
Account
Demo: What might this look like?
Demo Scope
Alec’s
Account
(AS)
Health
Portal
Banting
Diabetes
Manager
BC EHR
ON EHR
Google
PHR
Google
Account
More Information About UMA
Get more information about the “How” of UMA:
UMA 2:0 Deep Dive: Applying User-Managed Access | Identiverse
2018
https://www.youtube.com/watch?v=0cCXJvJ6GUY
UMA Grant Spec
https://docs.kantarainitiative.org/uma/wg/rec-oauth-uma-grant-2.0.html
UMA Fedz Spec
https://docs.kantarainitiative.org/uma/wg/rec-oauth-uma-federated-
authz-2.0.html
Case Study: US Health Care & Trustee
by HIE of ONE
Case Study: US Healthcare Challenges
(but similar in many countries)
● HIPAA is not based on patient consent
● Un-sustainable
● Health records are not patient-centered
● Un-sustainable
● 80% of outcomes are based on social determinants, not medical treatment
● Patient identity “matching” is a problem unique to US healthcare
● 30% of US health costs (~$ 1T) are unwarranted
● US racial & wealth disparities in survival are unmatched in the rich world
Imagine: A Universal Health Record
● Self-sovereign to the individual
● Global, like medical science
● Open source and peer reviewed, like medical science
● Standards-based
● No institutional lock-in
● Easy to spot disparities across zip-codes and nations
● A human rights economic and sustainability model
Imagine: UMA as the Core of a
Universal Health Record
● UMA 2.0 enables a self-sovereign Authorization Server
● No need to copy information through a “personal data store”
● No worry about loss of provenance
● Subject’s policies are never shared, just the decisions
● No patient matching issues
● Leverages self-sovereign identifier and verifiable credentials work
● Authorization policies are inherited from the community one
chooses
● HIE of One influenced and builds around UMA 2.0
Example Implementation:
Trustee® by HIE of One
● A self-sovereign authorization server enabled by standards
● Standards
● UMA 2.0 - for provenance and consent
● OAuth 2 - for legacy EHRs and Medicare
● OpenID Connect - for federated single sign-on
● W3C Verifiable Credentials - for self-sovereign single sign-on
● DID - W3C Decentralized Identifiers for non-repudiable signatures
● Public Blockchain (ETH) - decentralized timestamps for accountability
● Trustee Community - initializes the policies; competes for patients
● NOSH - A self-sovereign health record that doctors can sign-into with their
credentials
Ontario Identity, Authentication,
& Access by IDENTOS FPX
Case Study: Canadian Healthcare Challenges
(key similarities & differences to the US)
● PHIPA does have provisions for patient consent
● However access is still limited as:
● Health records are not patient-centered
● Un-sustainable
● Patient identity “matching” is a less of a problem
● Due to Provincially issued health insurance and identifiers
What impact will patient digital access have?
Digitally access personal health information (e.g.
lab test results, prescription information), book
appointments and track referrals.
Interact virtually with a health care provider via
video visit or secure messaging.
Digitally share important information with their
health care provider(s).
Digitally ensure that patients control access to
their data through consent and access controls.
Connecting Healthcare Journeys in Canada
Digital
Service
Providers
Identity
Providers
Data
Resource
Servers
Digital
Service
Providers
Data
Resource
Servers
Identity
Providers
FPX
Digital
Service
Providers
Data
Resource
Servers
Identity
Providers
FPX
FPX
National Health
Ecosystem
Regional Health
Ecosystem
Provincial Health
Ecosystem
UMA
Authorization
Hospital Ecosystem
Digital
Service
Providers
Data
Resource
Servers
Identity
Providers
FPX
Discussion
Q&A
Closing Remarks & Current Activity
Current UMA Working Group
● Interested? Join the working group! Meet every Thursday
● Formalizing interop test suite
● Profiles and extensions
● AS first flows
● General resource definitions
● UMA “wallet”
Important Current Work
● TxAuth / OAuth 3
● AS first
● Avoid client registration
● OAuth2 and UMA 2 are hard
● HEART
● Consent-based interop without “personal data stores” as intermediaries
● Influence TEFCA
● SIOP (Self-issued identity provider)
● Harmonize SSI and OpenID Connect

More Related Content

What's hot

Webinar on Using MS D365 for Hospitals During the COVID-19 Pandemic
Webinar on Using MS D365 for Hospitals During the COVID-19 PandemicWebinar on Using MS D365 for Hospitals During the COVID-19 Pandemic
Webinar on Using MS D365 for Hospitals During the COVID-19 PandemicNalashaa Healthcare Solutions
 
Uptake and spread of digital technologies
Uptake and spread of digital technologiesUptake and spread of digital technologies
Uptake and spread of digital technologieseHealthCareers
 
Health insurance information platform (hiip)
Health insurance information platform (hiip)Health insurance information platform (hiip)
Health insurance information platform (hiip)ACCESS Health Digital
 
Building blockchain based Healthcare infrastructure with beyond block labs
Building blockchain based Healthcare infrastructure with beyond block labsBuilding blockchain based Healthcare infrastructure with beyond block labs
Building blockchain based Healthcare infrastructure with beyond block labsBeyond Block Labs
 
Direct Boot Camp 2.0 - Tennesse Directories
Direct Boot Camp 2.0 - Tennesse DirectoriesDirect Boot Camp 2.0 - Tennesse Directories
Direct Boot Camp 2.0 - Tennesse DirectoriesBrian Ahier
 
mHealth & the Medical Provider
mHealth & the Medical ProvidermHealth & the Medical Provider
mHealth & the Medical ProviderLuca Sergio
 
Dialogue on HIPAA/HITECH Compliance
Dialogue on HIPAA/HITECH  ComplianceDialogue on HIPAA/HITECH  Compliance
Dialogue on HIPAA/HITECH ComplianceBrian Ahier
 
Himss Revenue Cycle Task Force Panel Presentation[1]
Himss Revenue Cycle Task Force Panel Presentation[1]Himss Revenue Cycle Task Force Panel Presentation[1]
Himss Revenue Cycle Task Force Panel Presentation[1]William Kirsh, DO, MPH
 
SOA enabled next generatione EMR/EHR
SOA enabled next generatione EMR/EHRSOA enabled next generatione EMR/EHR
SOA enabled next generatione EMR/EHRVictor Chai
 
Patient Confidentiality wk1_dq2_mha690
Patient Confidentiality wk1_dq2_mha690Patient Confidentiality wk1_dq2_mha690
Patient Confidentiality wk1_dq2_mha690BrooklynRose1267
 

What's hot (20)

Health information exchange (HIE)
Health information exchange (HIE)Health information exchange (HIE)
Health information exchange (HIE)
 
Webinar on Using MS D365 for Hospitals During the COVID-19 Pandemic
Webinar on Using MS D365 for Hospitals During the COVID-19 PandemicWebinar on Using MS D365 for Hospitals During the COVID-19 Pandemic
Webinar on Using MS D365 for Hospitals During the COVID-19 Pandemic
 
Kairon overview
Kairon overviewKairon overview
Kairon overview
 
Uptake and spread of digital technologies
Uptake and spread of digital technologiesUptake and spread of digital technologies
Uptake and spread of digital technologies
 
Health insurance information platform (hiip)
Health insurance information platform (hiip)Health insurance information platform (hiip)
Health insurance information platform (hiip)
 
Building blockchain based Healthcare infrastructure with beyond block labs
Building blockchain based Healthcare infrastructure with beyond block labsBuilding blockchain based Healthcare infrastructure with beyond block labs
Building blockchain based Healthcare infrastructure with beyond block labs
 
Direct Boot Camp 2.0 - Tennesse Directories
Direct Boot Camp 2.0 - Tennesse DirectoriesDirect Boot Camp 2.0 - Tennesse Directories
Direct Boot Camp 2.0 - Tennesse Directories
 
mHealth & the Medical Provider
mHealth & the Medical ProvidermHealth & the Medical Provider
mHealth & the Medical Provider
 
Himss12 Meet The Expert
Himss12 Meet The ExpertHimss12 Meet The Expert
Himss12 Meet The Expert
 
Nicolas Terry, "Big Data, Regulatory Disruption, and Arbitrage in Health Care"
Nicolas Terry, "Big Data, Regulatory Disruption, and Arbitrage in Health Care"Nicolas Terry, "Big Data, Regulatory Disruption, and Arbitrage in Health Care"
Nicolas Terry, "Big Data, Regulatory Disruption, and Arbitrage in Health Care"
 
Dialogue on HIPAA/HITECH Compliance
Dialogue on HIPAA/HITECH  ComplianceDialogue on HIPAA/HITECH  Compliance
Dialogue on HIPAA/HITECH Compliance
 
HIMSS12 Sentry Data System
HIMSS12 Sentry Data SystemHIMSS12 Sentry Data System
HIMSS12 Sentry Data System
 
Ghana Medical Banking Institute
Ghana Medical Banking InstituteGhana Medical Banking Institute
Ghana Medical Banking Institute
 
Himss Revenue Cycle Task Force Panel Presentation[1]
Himss Revenue Cycle Task Force Panel Presentation[1]Himss Revenue Cycle Task Force Panel Presentation[1]
Himss Revenue Cycle Task Force Panel Presentation[1]
 
SOA enabled next generatione EMR/EHR
SOA enabled next generatione EMR/EHRSOA enabled next generatione EMR/EHR
SOA enabled next generatione EMR/EHR
 
2016 iHT2 San Diego Health IT Summit
2016 iHT2 San Diego Health IT Summit2016 iHT2 San Diego Health IT Summit
2016 iHT2 San Diego Health IT Summit
 
Patient Confidentiality wk1_dq2_mha690
Patient Confidentiality wk1_dq2_mha690Patient Confidentiality wk1_dq2_mha690
Patient Confidentiality wk1_dq2_mha690
 
2015 iHT2 Health IT Beverly Hills Summit
2015 iHT2 Health IT Beverly Hills Summit 2015 iHT2 Health IT Beverly Hills Summit
2015 iHT2 Health IT Beverly Hills Summit
 
Telemedicine: Expanding Access to Medicaid Services
Telemedicine: Expanding Access to Medicaid ServicesTelemedicine: Expanding Access to Medicaid Services
Telemedicine: Expanding Access to Medicaid Services
 
E Health Trust
E Health TrustE Health Trust
E Health Trust
 

Similar to Kantara uma webinar july 2020

Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...
Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...
Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...Rowan Purdy
 
2016 IBM Interconnect - medical devices transformation
2016 IBM Interconnect  - medical devices transformation2016 IBM Interconnect  - medical devices transformation
2016 IBM Interconnect - medical devices transformationElizabeth Koumpan
 
People, health professionals and health information Working together in 2014
People, health professionals and health information Working together in 2014People, health professionals and health information Working together in 2014
People, health professionals and health information Working together in 2014Health Informatics New Zealand
 
Citizen controlled health data lockers as a game changer
Citizen controlled health data lockers as a game changerCitizen controlled health data lockers as a game changer
Citizen controlled health data lockers as a game changerWessel Kraaij
 
Mobile Health Symposium #HIMSS15 Session Mh1
Mobile Health Symposium #HIMSS15 Session Mh1Mobile Health Symposium #HIMSS15 Session Mh1
Mobile Health Symposium #HIMSS15 Session Mh13GDR
 
In search of a digital health compass: My data, my decision, our power
In search of a digital health compass: My data, my decision, our powerIn search of a digital health compass: My data, my decision, our power
In search of a digital health compass: My data, my decision, our powerchronaki
 
اینترنت اشیاء در حوزه سلامت
اینترنت  اشیاء در حوزه سلامت اینترنت  اشیاء در حوزه سلامت
اینترنت اشیاء در حوزه سلامت Mahmood Khosravi
 
WV transformation slide show may conference2
WV transformation slide show may conference2WV transformation slide show may conference2
WV transformation slide show may conference2Jack Shaffer
 
Misadventures in Interoperability
Misadventures in InteroperabilityMisadventures in Interoperability
Misadventures in InteroperabilityCedric Dark
 
From personal health data to a personalized advice
From personal health data to a personalized adviceFrom personal health data to a personalized advice
From personal health data to a personalized adviceWessel Kraaij
 
1)Health data is sensitive and confidential; hence, it should .docx
1)Health data is sensitive and confidential; hence, it should .docx1)Health data is sensitive and confidential; hence, it should .docx
1)Health data is sensitive and confidential; hence, it should .docxteresehearn
 
MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15
MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15
MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15mihinpr
 
Big Data in Healthcare -- What Does it Mean?
Big Data in Healthcare -- What Does it Mean?Big Data in Healthcare -- What Does it Mean?
Big Data in Healthcare -- What Does it Mean?M2SYS Technology
 
HEALTHieR Cloud Overview
HEALTHieR Cloud OverviewHEALTHieR Cloud Overview
HEALTHieR Cloud OverviewJenna Bourgeois
 
Cisco for Health Plans
Cisco for Health PlansCisco for Health Plans
Cisco for Health PlansEJ Bowen
 
Why FIDO Matters: Healthcare Services
Why FIDO Matters: Healthcare ServicesWhy FIDO Matters: Healthcare Services
Why FIDO Matters: Healthcare ServicesFIDO Alliance
 
Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...
Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...
Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...Innovation Enterprise
 
Eysenbach: Medicine 2.0: The Second Wave On The Web
Eysenbach: Medicine 2.0: The Second Wave On The WebEysenbach: Medicine 2.0: The Second Wave On The Web
Eysenbach: Medicine 2.0: The Second Wave On The WebGunther Eysenbach
 
Web 2.0 and PMRs
Web 2.0 and PMRsWeb 2.0 and PMRs
Web 2.0 and PMRsRowan Purdy
 
Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...
Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...
Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...AHRQ Health Care Innovations Exchange
 

Similar to Kantara uma webinar july 2020 (20)

Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...
Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...
Healthcare over Internet Protocol, Web 2.0, Health 2.0 and the Personal Healt...
 
2016 IBM Interconnect - medical devices transformation
2016 IBM Interconnect  - medical devices transformation2016 IBM Interconnect  - medical devices transformation
2016 IBM Interconnect - medical devices transformation
 
People, health professionals and health information Working together in 2014
People, health professionals and health information Working together in 2014People, health professionals and health information Working together in 2014
People, health professionals and health information Working together in 2014
 
Citizen controlled health data lockers as a game changer
Citizen controlled health data lockers as a game changerCitizen controlled health data lockers as a game changer
Citizen controlled health data lockers as a game changer
 
Mobile Health Symposium #HIMSS15 Session Mh1
Mobile Health Symposium #HIMSS15 Session Mh1Mobile Health Symposium #HIMSS15 Session Mh1
Mobile Health Symposium #HIMSS15 Session Mh1
 
In search of a digital health compass: My data, my decision, our power
In search of a digital health compass: My data, my decision, our powerIn search of a digital health compass: My data, my decision, our power
In search of a digital health compass: My data, my decision, our power
 
اینترنت اشیاء در حوزه سلامت
اینترنت  اشیاء در حوزه سلامت اینترنت  اشیاء در حوزه سلامت
اینترنت اشیاء در حوزه سلامت
 
WV transformation slide show may conference2
WV transformation slide show may conference2WV transformation slide show may conference2
WV transformation slide show may conference2
 
Misadventures in Interoperability
Misadventures in InteroperabilityMisadventures in Interoperability
Misadventures in Interoperability
 
From personal health data to a personalized advice
From personal health data to a personalized adviceFrom personal health data to a personalized advice
From personal health data to a personalized advice
 
1)Health data is sensitive and confidential; hence, it should .docx
1)Health data is sensitive and confidential; hence, it should .docx1)Health data is sensitive and confidential; hence, it should .docx
1)Health data is sensitive and confidential; hence, it should .docx
 
MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15
MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15
MiHIN Statewide Consumer Directory Overview - Direct Workgroup v4 03-09-15
 
Big Data in Healthcare -- What Does it Mean?
Big Data in Healthcare -- What Does it Mean?Big Data in Healthcare -- What Does it Mean?
Big Data in Healthcare -- What Does it Mean?
 
HEALTHieR Cloud Overview
HEALTHieR Cloud OverviewHEALTHieR Cloud Overview
HEALTHieR Cloud Overview
 
Cisco for Health Plans
Cisco for Health PlansCisco for Health Plans
Cisco for Health Plans
 
Why FIDO Matters: Healthcare Services
Why FIDO Matters: Healthcare ServicesWhy FIDO Matters: Healthcare Services
Why FIDO Matters: Healthcare Services
 
Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...
Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...
Big Data Analytics - Opportunities, Enablers, Challenges and Risks to Conside...
 
Eysenbach: Medicine 2.0: The Second Wave On The Web
Eysenbach: Medicine 2.0: The Second Wave On The WebEysenbach: Medicine 2.0: The Second Wave On The Web
Eysenbach: Medicine 2.0: The Second Wave On The Web
 
Web 2.0 and PMRs
Web 2.0 and PMRsWeb 2.0 and PMRs
Web 2.0 and PMRs
 
Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...
Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...
Building Health Information Exchanges To Support ACOs and Medical Homes: Dela...
 

More from kantarainitiative

Kantara initiative - AGM 2022
Kantara initiative - AGM 2022Kantara initiative - AGM 2022
Kantara initiative - AGM 2022kantarainitiative
 
2020 Annual General Meeting Executive Summary
2020 Annual General Meeting Executive Summary2020 Annual General Meeting Executive Summary
2020 Annual General Meeting Executive Summarykantarainitiative
 
AARC Assurance Profiles for Kantara Initiative
AARC Assurance Profiles for Kantara InitiativeAARC Assurance Profiles for Kantara Initiative
AARC Assurance Profiles for Kantara Initiativekantarainitiative
 
Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15kantarainitiative
 
Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15kantarainitiative
 
Kantara orientation april 2020
Kantara orientation april 2020Kantara orientation april 2020
Kantara orientation april 2020kantarainitiative
 
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)kantarainitiative
 
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)kantarainitiative
 
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)kantarainitiative
 
Mobile Device and Attribute Validation (MDAV)
Mobile Device and Attribute Validation (MDAV)Mobile Device and Attribute Validation (MDAV)
Mobile Device and Attribute Validation (MDAV)kantarainitiative
 
Kantara Initiative, Inc in 2016
Kantara Initiative, Inc in 2016 Kantara Initiative, Inc in 2016
Kantara Initiative, Inc in 2016 kantarainitiative
 
Kantara - Consent & Information Sharing WG Update
Kantara - Consent & Information Sharing WG UpdateKantara - Consent & Information Sharing WG Update
Kantara - Consent & Information Sharing WG Updatekantarainitiative
 
Extending the Power of Consent with User-Managed Access & OpenUMA
Extending the Power of Consent with User-Managed Access & OpenUMAExtending the Power of Consent with User-Managed Access & OpenUMA
Extending the Power of Consent with User-Managed Access & OpenUMAkantarainitiative
 

More from kantarainitiative (20)

Kantara initiative - AGM 2022
Kantara initiative - AGM 2022Kantara initiative - AGM 2022
Kantara initiative - AGM 2022
 
2021 Annual General Meeting
2021 Annual General Meeting2021 Annual General Meeting
2021 Annual General Meeting
 
2020 Annual General Meeting Executive Summary
2020 Annual General Meeting Executive Summary2020 Annual General Meeting Executive Summary
2020 Annual General Meeting Executive Summary
 
2020 Annual General Meeting
2020 Annual General Meeting2020 Annual General Meeting
2020 Annual General Meeting
 
AARC Assurance Profiles for Kantara Initiative
AARC Assurance Profiles for Kantara InitiativeAARC Assurance Profiles for Kantara Initiative
AARC Assurance Profiles for Kantara Initiative
 
Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15
 
Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15Kantara webinar 800 63-3 approval 2020-07-15
Kantara webinar 800 63-3 approval 2020-07-15
 
Kantara orientation april 2020
Kantara orientation april 2020Kantara orientation april 2020
Kantara orientation april 2020
 
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
 
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
 
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
Kantara Initiative orientation 2019 (incl. 10th Anniversary video)
 
Kantara orientation 2018
Kantara orientation 2018Kantara orientation 2018
Kantara orientation 2018
 
Kantara Overview 2017
Kantara Overview 2017Kantara Overview 2017
Kantara Overview 2017
 
Kantara Workshop at CIS
Kantara Workshop at CISKantara Workshop at CIS
Kantara Workshop at CIS
 
Cloud Identity Summit
Cloud Identity SummitCloud Identity Summit
Cloud Identity Summit
 
Trust Frameworks Explained
Trust Frameworks ExplainedTrust Frameworks Explained
Trust Frameworks Explained
 
Mobile Device and Attribute Validation (MDAV)
Mobile Device and Attribute Validation (MDAV)Mobile Device and Attribute Validation (MDAV)
Mobile Device and Attribute Validation (MDAV)
 
Kantara Initiative, Inc in 2016
Kantara Initiative, Inc in 2016 Kantara Initiative, Inc in 2016
Kantara Initiative, Inc in 2016
 
Kantara - Consent & Information Sharing WG Update
Kantara - Consent & Information Sharing WG UpdateKantara - Consent & Information Sharing WG Update
Kantara - Consent & Information Sharing WG Update
 
Extending the Power of Consent with User-Managed Access & OpenUMA
Extending the Power of Consent with User-Managed Access & OpenUMAExtending the Power of Consent with User-Managed Access & OpenUMA
Extending the Power of Consent with User-Managed Access & OpenUMA
 

Recently uploaded

Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsMiki Katsuragi
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clashcharlottematthew16
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr LapshynFwdays
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLScyllaDB
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Wonjun Hwang
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 

Recently uploaded (20)

Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering Tips
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clash
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQL
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
 
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 

Kantara uma webinar july 2020

  • 1. UMA: 21st century health information interoperability + user control July 21, 2020 Alec Laws & Adrian Gropper
  • 2. Agenda ● Moderator's welcome ● Overview of current challenges in Health Care ● How does UMA address those challenges ● Case Study: US Health Care and Trustee by HIE of ONE ● Case Study: CAN Health Care and FPX by IDENTOS ● Discussion: Presenters offer their views ● Q & A ● Current UMA and Community Activity
  • 3. UMA Implementers Embrace Health Care ForgeRock – financial, healthcare, IoT, G2C… Gluu (open source) – API protection, enterprise, G2C… HIE of One / Trustee (open source) – healthcare IDENTOS – healthcare, G2C, … PatientShare – healthcare HealthyMePHR – healthcare Pauldron (open source) – healthcare RedHat Keycloak (open source) – API protection, enterprise, IoT… ShareMedData – healthcare WSO2 (open source) – enterprise (more detail at tinyurl.com/umawg) ~50% of implementations have stated Health Care focus
  • 5. Current problems in our healthcare ecosystem Data Silos Key information not visible Can’t share information Lack of trust: paper based records Have to tell my story over and over to different providers No support for complex patient journeys No digital access Can’t remember ID or password Unnecessary duplication of tests & services Fear of fraud and security breaches Miscommunication, missed visits, inefficiencies Lack of R&D innovation in digital spaces
  • 6. Patient access to their health data is limited and fragmented across care settings and services. Providers access patient’s health data through different channels. Home care, community care, and non-clinical providers do not have access to Patient’s clinical data. Health Applications are not connected.
  • 7. How does UMA address these challenges?
  • 8. The Standard - Isolated User Experiences Me online x 120! 120 Walled Gardens Services Data Account Have information about me Know who I am Provide me with service(s)
  • 9. Outcomes We’ve Learned to Live With Organizations normal is also flawed Effort & cost to repeatedly establish, maintain an Identity Inability to adequately serve user needs Friction connecting with ecosystem partners Our normal is fundamentally flawed Limited access to our own data! Non-transparent consent and sharing of our personal data Disconnected user journeys
  • 10. We Can Do Better What if… we can create a user centered ecosystem?
  • 11. Interoperability of Services and Data Sources UMA is Built for Wide Ecosystems User Control, Privacy and Delegation One Authorization Server protects many Data Sources Person requesting access different from data owner/subject User can create a fine-grained authorization policy Services are protected from authorization details
  • 12. User Centered Data & Authorization One AS protects many RS One RS trusted many AS The AS and RS are decoupled ● Alice can manage many RS’s from a single AS ● An RS can delegate authorization, account and service management to the AS ● The AS does not need to hold or duplicate personal data OUTCOME: scalability and interoperability Services Data Account Have information about me Know who I amProvide me with service(s) Data Data Data
  • 13. Services Data Account Services are interoperable Services decoupled from authorization details ● Services don’t need to know about every authorization domain (eg scopes) ● Services can dynamically discover user authx requirements ● Services interoperate against data types (eg images) or standards (eg FHIR) against many RS Have information about me Know who I amProvide me with service(s) Service Service Service
  • 14. User Directed Delegation User requesting access is different from Data owner Data owner can create fine-grained policy ● There are many use-cases for delegation/guardianship ● I am not the only person who needs to see my data ● UMA models this, but doesn’t overspecify ● Policy can be against an entire API, or a specific file/path ● Policy can consider both the client and the Requesting User Provide me with service(s) Have information about me Know who I am Services Bob’s Account Services Data Account
  • 15. UMA Puts it All Together There are still separate organizations and domains. However now data and services are interoperable at the direction of the person Alice’s Account (AS) Service Service Service Data Dara Data Bob’s Services Bob’s Account
  • 16. Demo: What might this look like?
  • 18. More Information About UMA Get more information about the “How” of UMA: UMA 2:0 Deep Dive: Applying User-Managed Access | Identiverse 2018 https://www.youtube.com/watch?v=0cCXJvJ6GUY UMA Grant Spec https://docs.kantarainitiative.org/uma/wg/rec-oauth-uma-grant-2.0.html UMA Fedz Spec https://docs.kantarainitiative.org/uma/wg/rec-oauth-uma-federated- authz-2.0.html
  • 19. Case Study: US Health Care & Trustee by HIE of ONE
  • 20. Case Study: US Healthcare Challenges (but similar in many countries) ● HIPAA is not based on patient consent ● Un-sustainable ● Health records are not patient-centered ● Un-sustainable ● 80% of outcomes are based on social determinants, not medical treatment ● Patient identity “matching” is a problem unique to US healthcare ● 30% of US health costs (~$ 1T) are unwarranted ● US racial & wealth disparities in survival are unmatched in the rich world
  • 21. Imagine: A Universal Health Record ● Self-sovereign to the individual ● Global, like medical science ● Open source and peer reviewed, like medical science ● Standards-based ● No institutional lock-in ● Easy to spot disparities across zip-codes and nations ● A human rights economic and sustainability model
  • 22. Imagine: UMA as the Core of a Universal Health Record ● UMA 2.0 enables a self-sovereign Authorization Server ● No need to copy information through a “personal data store” ● No worry about loss of provenance ● Subject’s policies are never shared, just the decisions ● No patient matching issues ● Leverages self-sovereign identifier and verifiable credentials work ● Authorization policies are inherited from the community one chooses ● HIE of One influenced and builds around UMA 2.0
  • 23. Example Implementation: Trustee® by HIE of One ● A self-sovereign authorization server enabled by standards ● Standards ● UMA 2.0 - for provenance and consent ● OAuth 2 - for legacy EHRs and Medicare ● OpenID Connect - for federated single sign-on ● W3C Verifiable Credentials - for self-sovereign single sign-on ● DID - W3C Decentralized Identifiers for non-repudiable signatures ● Public Blockchain (ETH) - decentralized timestamps for accountability ● Trustee Community - initializes the policies; competes for patients ● NOSH - A self-sovereign health record that doctors can sign-into with their credentials
  • 24. Ontario Identity, Authentication, & Access by IDENTOS FPX
  • 25. Case Study: Canadian Healthcare Challenges (key similarities & differences to the US) ● PHIPA does have provisions for patient consent ● However access is still limited as: ● Health records are not patient-centered ● Un-sustainable ● Patient identity “matching” is a less of a problem ● Due to Provincially issued health insurance and identifiers
  • 26. What impact will patient digital access have? Digitally access personal health information (e.g. lab test results, prescription information), book appointments and track referrals. Interact virtually with a health care provider via video visit or secure messaging. Digitally share important information with their health care provider(s). Digitally ensure that patients control access to their data through consent and access controls.
  • 27. Connecting Healthcare Journeys in Canada Digital Service Providers Identity Providers Data Resource Servers Digital Service Providers Data Resource Servers Identity Providers FPX Digital Service Providers Data Resource Servers Identity Providers FPX FPX National Health Ecosystem Regional Health Ecosystem Provincial Health Ecosystem UMA Authorization Hospital Ecosystem Digital Service Providers Data Resource Servers Identity Providers FPX
  • 29. Q&A
  • 30. Closing Remarks & Current Activity
  • 31. Current UMA Working Group ● Interested? Join the working group! Meet every Thursday ● Formalizing interop test suite ● Profiles and extensions ● AS first flows ● General resource definitions ● UMA “wallet”
  • 32. Important Current Work ● TxAuth / OAuth 3 ● AS first ● Avoid client registration ● OAuth2 and UMA 2 are hard ● HEART ● Consent-based interop without “personal data stores” as intermediaries ● Influence TEFCA ● SIOP (Self-issued identity provider) ● Harmonize SSI and OpenID Connect

Editor's Notes

  1. Virtual health is more important than ever
  2. Ecosystems we’re designed for orgs to manage their risk. However the outcome for people is this
  3. Why UMA is made to solve the HC challenges BRIEF HOW SO WHAT -> 1 closed vs wide ecosystems, 2 user control and choicce (privacy!)
  4. The internet evolved amazingly through the introduction of new services - we were amazed by the value created as we could do more on the internet … This evolution happened quickly - and happenstance led us to the emergent topology we see today… We have many relationships with online services, each operating in silos each knowing a different digital version of me … each collecting, maintaining and we hope protecting some data about me. Research has shown that the average person has in excess of 120 online accounts/passwords.
  5. As users - we are not in control…the disconnect in our journey becomes critically obvious in ecosystems like healthcare where the handoffs and silos make for repetitive effort/frustration...and very little access to digital. Organizations are all investing over and over to solve the same problem and create another version of me…their burden, and friction to innovate and collaborate is at an all time high….
  6. 7. What if the internet protocols and organizations evolved …. ? --- what ive trust over IP existed and allowed organizations to know how and how its safe to connect with? --- imagine how we can unbind and accelerate the data economy with when the internet is working for the consumer who is actively participating to drive the exchange of value online --- how amazing would it be to have less version of you online...less
  7. Loosely coupled AS and RS This allows a person to protect many distributed resources from a single control point. This breaks the siloed data centered experience and presents a user centered ecosystem Dynamic Client Flows Client traditionally need significant knowledge of the resource and authorization setup. By enabling dynamic flows UMA supports wider choice in client and interoperability between authorization domains Party to Party Authz Alice isn’t the only person who needs access to her files. The ability to share her data with others, using policy under her control better represents the real world and quickly expands possible use cases. Fine Grained Authorization Alec TODO
  8. Ex Data is HIE, no manage account/services HIE/Repository introduction HC example/link back to our 4 challenges
  9. Make sure contrast to OAuth is highlighted, Alice->Alice doesn’t need fine grained Link back to doctor
  10. I will show an RS, AS, and two services, all in different domains. THe API access is entirely controlled by Alice. This shows some elements of fine grained auth, but not delegate
  11. Why UMA is made to solve the HC challenges BRIEF HOW SO WHAT -> 1 closed vs wide ecosystems, 2 user control and choice (privacy!)
  12. Trustee Community - policy initialization Policies are never on the wire Credentialed users can bypass institutions Public blockchain for accountability Patient is the customer
  13. Why UMA is made to solve the HC challenges BRIEF HOW SO WHAT -> 1 closed vs wide ecosystems, 2 user control and choice (privacy!)
  14. HICs require a high level of assurance and a lot of trust in the consumer apps that connect to sensitive digital health assets in order to minimize the risk of inappropriate access. In ON we’re giving people Options to login with required assurance for Health Care A hospital operated Authorization Server People may then put their HC data, such as provincial health records, under UMA protection And share these resources to existing public and private health portals, apps and services
  15. We started in healthcare...but more importantly instead of boiling the ocean, we’re introducing trust and access control, one ecosystem at a time... From the perspective that online trust, and access control needs to start with meaningful ecosystems...and interop is critical to move from bootstrapping to a meaningfully connected online experience. Interoperability of trust is the expansion of and connection of these local ecosystems
  16. Why UMA is made to solve the HC challenges BRIEF HOW SO WHAT -> 1 closed vs wide ecosystems, 2 user control and choice (privacy!)