Publications-Theses

Article View/Open

Publication Export

Google ScholarTM

NCCU Library

Citation Infomation

Related Publications in TAIR

題名 健康資料之個人資料類別屬性研究──以IoT設備之蒐集、處理或利用為中心
A Study on Personal Health Data Attributes: Focus on the Data Collection, Process or Use of IoT Device
作者 張幼文
Chang, Yu Wen
貢獻者 宋皇志
張幼文
Chang, Yu Wen
關鍵詞 個人資料保護法
特種個人資料
敏感性資料
健康資料
大數據
物聯網
Personal information protection act
Special categories of data
Sensitive data
Health data
Big data
Internet of Things
日期 2018
上傳時間 2-Mar-2018 12:04:09 (UTC+8)
摘要 我國於2015年底通過新修正之個人資料保護法(以下簡稱「個資法」),將病歷納入特種個人資料中保護。目前個資法第六條特種個人資料列舉包含病歷、醫療、基因、性生活、健康檢查及犯罪前科之個人資料。雖然該條文係取法自國際賦予敏感性個人資料特別保護的模式,惟在個人相關健康資料保護部分,我國個資法不若歐盟一般資料保護規則(EU General Data Protection Regulation, GDPR)保護寬廣,納入資料之類型仍較國際立法例狹窄。尤其此次GDPR修法擴大特種個人資料空間,增列基因資料、生物性資料和性傾向,檢視我國特種個人資料列舉類型是否符合現今科技社會需求有其必要性。\n過去研究針對健康資料個資法適用問題較少。大數據資料來源來自各處,以一般健康保健物聯網模式為例,自行操作之檢查數據或穿戴式裝置所蒐集之資料,若非須由醫師或其他之醫事人員施以檢查,而可由一般民眾自行測量之行為,該民眾自行測量之結果應不屬於個資法所謂之病歷、醫療或健康檢查個人資料,即非為特種個人資料。\n惟大數據分析技術進步之環境下,健康資料亦攸關資料主體生理健康之敏感性,且容易連結並識別個人,考量健康資料敏感性提升,蒐集、處理、利用健康資料易侵犯到個人隱私,因此有加強保護之需求。將來可刪除個資法第六條第一項各種個人資料例示之「醫療」、「病歷」與「健康」資料,並新增「健康」或「與健康相關」之列舉項目。\n但解釋「與健康相關」資料之內涵時不能無限上綱,在適用時應考量情境說,依據不同使用情境判斷是否為係作為特種個人資料利用,以排除一般性描述健康的使用情境。
The change to the regulation of special categories of data (sensitive data) in the Taiwan Personal Information Protection Act (PIPA) in 2015 comes with the inclusion of medical records. The definition of sensitive data in the PIPA Article 6(1) refers to personal information of medical records, medical treatment, genetic information, sexual life, health examination and criminal records.\nHowever, the list of sensitive data in PIPA do not contain categories as broad as foreign legislation such as EU General Data Protection Regulation (GDPR). It is important to review the continuing relevance of existing categories of sensitive data in the light of change in social structures and advances in technology.\nDiffer from “medical data” such as medical records, medical treatment and health examination, the collection, process and use of “health data” which is measured from wearable device, is not included in the sensitive data. Concerning the development of big data analysis, the “health data” which sensitivity enhanced is easy to identify an individual. It needs to give a higher level of protection to “health data” under PIPA.\nTherefore, this thesis suggests that medical records, medical treatment and health examination in PIPA Article 6(1) should be consolidated and amended to health records or data concerning health. However, this is not to say that the processing of all kinds of medical and health data should be regarded as the processing of sensitive data. But data, under certain contexts/circumstances may be treated as the processing of sensitive data.
參考文獻 一、中文部分\n(一)書籍\n黃茂榮(2006),債法各論,第一冊增訂版,臺北:植根法學叢書。\n劉佐國、李世德(2015),個人資料保護法釋義與實務,臺北:碁峰資訊。\n(二)專書論文\nDavid E. Parkhill著(2017),管理未結構化的健康照護資料,Katherine Marconi、Harold Lehmann編,醫療大數據,頁64-85,臺北:遠見天下文化。\nDonald A. Donahue, Jr.著(2017),大數據之初:熟練運用現有資訊,作為建立大數據的基礎, Katherine Marconi、Harold Lehmann編,醫療大數據頁,42-61,臺北:遠見天下文化。\nLinda Dimitropoulos、Charles (Chuck) Thompson著(2017),健康資料治理──尋找資料治理與管理的最佳實務及使用者需求的平衡點,Katherine Marconi、Harold Lehmann編,醫療大數據,頁244-259,臺北:遠見天下文化。\n(三)期刊論文\n王文娟(2016),物聯網概念及應用,經濟前瞻,168期,頁29-36。\n江浣翠(2017),公共衛生監測之規範問題研究──以美國法及我國現況為中心,東吳法律學報,29卷1期,頁81-126。\n吳世琳、王惟溫(2014),物聯網在健康醫療與照護之應用,科學月刊,534期,頁428-432。\n李國維(2017),創新智慧醫院經驗分享,以病人為中心──智慧化醫療照護產業的整合與課技創新研討會,2017年12月9日。\n林維信(2007),基因資訊保護之研究──以個人資料保護法草案為中心,科技法學評論,4卷1期,頁153-224。\n范光中、許永河(2010),台灣人口高齡化的社經衝擊,台灣老年醫學暨老年學雜誌,5卷3期,頁149-168。\n范姜真媺(2016),個人醫療資料之保護與利用──以全民健康保險為中心,法學叢刊,61卷3期,頁41-72。\n徐彪豪(2016),物聯網時代的資料保護防線──以歐盟GDPR為中心,科技法律透析,28卷10期,頁56-71。\n陳聰富、蔡甫昌(2017),大數據應用於醫學研究之法律議題,台灣醫學,21卷1期,頁34-42。\n張志勇、陳正昌(2014),物物相聯的龐大網路──物聯網,科學月刊,534期,頁419-427。\n張陳弘(2016),個人資料之認定──個人資料保護法適用之啟動閥,法令月刊,頁67-101。\n葉志良(2016),大數據應用下個人資料定義的檢討:以我國法院判決為例,資訊社會研究,31期,頁1-36。\n彭金隆、陳俞沛、孫群(2017),巨量資料應用在台灣個資法架構下的法律風險,台大管理論叢,27卷2S期,頁93-118。\n黃維民(2016),開放政府資料下應加強醫療隱私法律規範,軍法專刊,62卷6期,頁62-86。\n黃瀚萱、陳信希(2016),醫療大數據及其應用,台灣醫學,20卷6期,頁589-594。\n廖淑君(2013),從英國 NHS 國家 IT 計畫看電子病歷之推動:以病患個人資訊隱私保護為中心,科技法律透析,25卷5期,頁25-49。\n劉定基(2010),「個人資料保護法」初論,台灣法學雜誌,159期,頁1-8。\n劉定基(2017),大數據與物聯網時代的個人資料自主權,憲政時代,42卷3期,頁265-308。\n劉靜怡(2010),不算進步的立法:「個人資料保護法」初步評析,月旦法學雜誌,183期,頁147-164。\n蔡博坤(2015),美國行動健康照護新近法制趨勢─兼論對我國法之觀察與建議,科技法律透析,27卷5期,頁25-30。\n(四)學位論文\n蔡秉錡(2012),敏感性個人資料保護之研究,國立臺灣大學國家發展研究所。\n(五)研究報告\n國家發展委員會(2016),中華民國人口推估(105至150年)。\n(六)行政機關函釋\n行政院衛生署民國65年6月14日衛署醫字第116053號函釋。\n行政院衛生署民國81年8月11日衛署醫字第8156514號函釋。\n行政院衛生署民國85年5月20日衛署醫字第85008542號函釋。\n行政院衛生署民國93年4月13日衛署醫字第0930013213號函釋。\n(七)網路資訊\niThome,IoT vs. BoT──物聯網颳起的資安風暴,iThome,2017年3月25日,https://www.ithome.com.tw/guest-post/112833。\n王芝蘭,Key Health Solutions, Inchttp://www.khs1.com/articles-chinese-1-intro.php#8。\n方俊德,時事關注,透過預防性照顧來減輕長照與健保財務負擔,台灣經濟研究院,2016年4月6日,http://www.tier.org.tw/comment/pec5010.aspx?GUID=0151b2a9-58b2-4378-89bb-7d3242760588。\n法務部個人資料保護專區,有關於新頭殼Newtalk網路新聞提及「新版個資法將上路,民團呼籲通盤檢討」乙文,法務部提出說明,2012年9月30日,http://pipa.moj.gov.tw/cp.asp?xItem=1184&ctNode=379&mp=1。\n法務部,法務部對個人資料保護法部分條文修正說明,2016年7月11日,https://www.moj.gov.tw/cp-280-45102-5a83e-001.html。\n唐震寰,照護、製造業 引領2020物聯網,中時電子報,2015年07月19日,http://www.chinatimes.com/newspapers/20150719000098-260204。\n高行,醫師法將修法 最快明年開放六類病患遠距醫療,聯合新聞網,2017年10月31日,https://udn.com/news/story/7238/2789718。\n葉席吟,精準醫療之各國推動政策觀察,Research Portal,2016年10月7日,https://portal.stpi.narl.org.tw/index/article/10278。\n二、外文部分\n(一)期刊論文\nA. Dohr et al., (2010). The Internet of Things for Ambient Assisted Living, 2010 Seventh International Conference on Information Technology and New Generations (ITNG), Las Vegas, NV, USA, 12-14 April 2010, 804-809. \nBrent Mittelstadt, (2017). Designing the Health-Related Internet of Things: Ethical Principles and Guidelines, Information 8(3), 77, 1-25.\nDaniele Miorandi,et al., (2012). Internet of Things: Vision, applications and research challenges, AD HOC NETWORKS 10, 1497-1516.\nDimiter V. Dimitrov, (2016). Medical Internet of Things and Big Data in Healthcare, Health Information Research 22(3), 156-163.\nJavier Andreu-Perez et al, Big Data for Health, (2015). IEEE Journal of Biomedical and Health Informatics 19, 1193-1208.\nJennifer Rowley, (2007). The wisdom hierarchy: representations of the DIKW hierarchy, Journal of Information Science 33(2), 163-180.\nKaren McCullagh, (2007). Data Sensitivity: Proposals for Resolving the Conundrum, Journal of International Commercial Law and Technology 2(4), 190-201.\nParisa Rashidi et al., (2013). A Survey on Ambient-Assisted Living Tools for Adults, IEEE Journal of Biomedical and Health Informatics 17(3), 579-590.\nPaul Ohm, (2010). Broken Promises of Privacy: Responding to the Surprising Failure of Anonymization, UCLA Law Review 57, 1701-1777.\nRaul Parada et al., (2015). Using RFID to Detect Interactions in Ambient Assisted Living Environments, IEEE Intelligent Systems 30(4), 16-22.\nRebecca Wong, (2007). Data Protection Online: Alternative Approaches to Sensitive Data?, Journal of International Commercial Law and Technology 2(1), 9-16.\nSara Amendola et al., (2014). RFID Technology for IoT-Based Personal Healthcare in Smart Spaces, IEEE Internet of Things Journal 1(2), 144-152.\nS. M. R. Islam et al., (2015). Internet of Things for Health Care: A Comprehensive Survey, IEEE ACCESS 3, 678-708.\nSpiros Simitis, (2010). Privacy – An Endless Debate, California Law Review 98, 1989-2005.\n(二)研究報告\nJames Manyika et al., (2015). The Internet of Things: Mapping the Value beyond the Hype, McKinsey Global Institute.\n(三)網路資訊\n78 FR 5565-5702, 2013-01073, January 25, 2013. Retrieved from https://www.gpo.gov/fdsys/pkg/FR-2013-01-25/pdf/2013-01073.pdf.\nBowdeya Tweh, Anthem Agrees to $115 Million Settlement of Data Breach Lawsuit, Fox Business (Jun. 23, 2017). Retrieved from http://www.foxbusiness.com/features/2017/06/23/anthem-agrees-to-115-million-settlement-data-breach-lawsuit.html.\nEUGDPR.org, GDPR Portal: Site Overview. Retrieved from https://www.eugdpr.org/.\nFTC Staff Report, Internet of Things: Privacy & Security in a Connected World (January, 2015). Retrieved from https://www.ftc.gov/system/files/documents/reports/federal-trade-commission-staff-report-november-2013-workshop-entitled-internet-things-privacy/150127iotrpt.pdf.\nKevin Ashton, RFID Journal, June 22, 2009. Retrieved from http://www.rfidjournal.com/articles/view?4986.\nOECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data. Retrieved from http://www.oecd.org/sti/ieconomy/oecdguidelinesontheprotectionofprivacyandtransborderflowsofpersonaldata.htm#guidelines.\nRecord Breach Settlement in Anthem Class Action Receives Judge Approval, Hunton&Williams (Aug. 30, 2017). Retrieved from https://www.huntonprivacyblog.com/2017/08/30/record-breach-settlement-anthem-class-action-receives-judge-approval/.\nSharon R. Klein, Beyond HIPAA: Connected Health Care and the Internet of Things (April 14, 2015). Retrieved from http://www.pepperlaw.com/publications/beyond-hipaa-connected-health-care-and-the-internet-of-things-2015-04-14/.\nThe OECD Privacy Framework. Retrieved from http://www.oecd.org/sti/ieconomy/oecd_privacy_framework.pdf.
描述 碩士
國立政治大學
科技管理與智慧財產研究所
104364204
資料來源 http://thesis.lib.nccu.edu.tw/record/#G1043642041
資料類型 thesis
dc.contributor.advisor 宋皇志zh_TW
dc.contributor.author (Authors) 張幼文zh_TW
dc.contributor.author (Authors) Chang, Yu Wenen_US
dc.creator (作者) 張幼文zh_TW
dc.creator (作者) Chang, Yu Wenen_US
dc.date (日期) 2018en_US
dc.date.accessioned 2-Mar-2018 12:04:09 (UTC+8)-
dc.date.available 2-Mar-2018 12:04:09 (UTC+8)-
dc.date.issued (上傳時間) 2-Mar-2018 12:04:09 (UTC+8)-
dc.identifier (Other Identifiers) G1043642041en_US
dc.identifier.uri (URI) https://ah.lib.nccu.edu.tw/item?item_id=133599-
dc.description (描述) 碩士zh_TW
dc.description (描述) 國立政治大學zh_TW
dc.description (描述) 科技管理與智慧財產研究所zh_TW
dc.description (描述) 104364204zh_TW
dc.description.abstract (摘要) 我國於2015年底通過新修正之個人資料保護法(以下簡稱「個資法」),將病歷納入特種個人資料中保護。目前個資法第六條特種個人資料列舉包含病歷、醫療、基因、性生活、健康檢查及犯罪前科之個人資料。雖然該條文係取法自國際賦予敏感性個人資料特別保護的模式,惟在個人相關健康資料保護部分,我國個資法不若歐盟一般資料保護規則(EU General Data Protection Regulation, GDPR)保護寬廣,納入資料之類型仍較國際立法例狹窄。尤其此次GDPR修法擴大特種個人資料空間,增列基因資料、生物性資料和性傾向,檢視我國特種個人資料列舉類型是否符合現今科技社會需求有其必要性。\n過去研究針對健康資料個資法適用問題較少。大數據資料來源來自各處,以一般健康保健物聯網模式為例,自行操作之檢查數據或穿戴式裝置所蒐集之資料,若非須由醫師或其他之醫事人員施以檢查,而可由一般民眾自行測量之行為,該民眾自行測量之結果應不屬於個資法所謂之病歷、醫療或健康檢查個人資料,即非為特種個人資料。\n惟大數據分析技術進步之環境下,健康資料亦攸關資料主體生理健康之敏感性,且容易連結並識別個人,考量健康資料敏感性提升,蒐集、處理、利用健康資料易侵犯到個人隱私,因此有加強保護之需求。將來可刪除個資法第六條第一項各種個人資料例示之「醫療」、「病歷」與「健康」資料,並新增「健康」或「與健康相關」之列舉項目。\n但解釋「與健康相關」資料之內涵時不能無限上綱,在適用時應考量情境說,依據不同使用情境判斷是否為係作為特種個人資料利用,以排除一般性描述健康的使用情境。zh_TW
dc.description.abstract (摘要) The change to the regulation of special categories of data (sensitive data) in the Taiwan Personal Information Protection Act (PIPA) in 2015 comes with the inclusion of medical records. The definition of sensitive data in the PIPA Article 6(1) refers to personal information of medical records, medical treatment, genetic information, sexual life, health examination and criminal records.\nHowever, the list of sensitive data in PIPA do not contain categories as broad as foreign legislation such as EU General Data Protection Regulation (GDPR). It is important to review the continuing relevance of existing categories of sensitive data in the light of change in social structures and advances in technology.\nDiffer from “medical data” such as medical records, medical treatment and health examination, the collection, process and use of “health data” which is measured from wearable device, is not included in the sensitive data. Concerning the development of big data analysis, the “health data” which sensitivity enhanced is easy to identify an individual. It needs to give a higher level of protection to “health data” under PIPA.\nTherefore, this thesis suggests that medical records, medical treatment and health examination in PIPA Article 6(1) should be consolidated and amended to health records or data concerning health. However, this is not to say that the processing of all kinds of medical and health data should be regarded as the processing of sensitive data. But data, under certain contexts/circumstances may be treated as the processing of sensitive data.en_US
dc.description.tableofcontents 第一章 緒論 1\n第一節 研究背景 1\n第二節 研究動機與目的 2\n一、科技社會中,何謂醫療健康資料? 3\n二、醫療資料與健康資料在個資法規上應遵循規則有無不同? 3\n三、我國是否有將特種個人資料類別重整之必要? 4\n第三節 研究方法與範圍 4\n第四節 研究架構 5\n第二章 健康醫療照護生態系 7\n第一節 健康醫療照護 7\n一、高齡化對醫療照護系統產生之壓力 7\n二、醫療照護整合模式 8\n三、健康與物聯網 9\n第二節 物聯網 10\n一、實體層(Physical devices with sensors) 12\n二、感知層(Sensors and Sensor networks):其他支援技術 12\n三、網路層(Networks):網路與智慧裝置連接 13\n四、應用層(Applications):新的商業模式 14\n第三節 健康醫療照護物聯網應用領域 16\n一、健康保健 17\n(一)服務應用模式 18\n(二)現有範例 19\n(三)資料蒐集類型 20\n二、智慧照護 20\n(一)服務應用模式 21\n(二)現有範例 22\n(三)資料蒐集類型 23\n三、智慧醫療 23\n(一)服務應用模式 24\n(二)現有範例 25\n(三)資料蒐集類型 26\n第四節 健康醫療照護物聯網對隱私及資訊安全帶來的危害 26\n一、健康醫療照護物聯網資料蒐集類型 26\n二、健康醫療照護物聯網之隱私及資訊安全危害 27\n第五節 小結 29\n第三章 敏感性資料法律保護概念 31\n第一節 敏感性個資界定方法 31\n一、資料概說 31\n二、特種個人資料保護源起 32\n(一)定義說(definition-based approach) 34\n(二)目的說(purpose-based approach) 36\n(三)情境說(context-based approach) 36\n第二節 國外立法例 37\n一、歐盟 37\n(一)保護客體 38\n(二)適用主體 39\n(三)健康相關特種個人資料定義 40\n二、美國 41\n(一)保護客體 42\n(二)適用主體 43\n(三)HIPAA/HITECH下對於大數據保護之疑慮 44\n第三節 我國醫療和健康個人資料保護法制 45\n一、個人料保護法修法背景 45\n二、保護客體 46\n三、適用主體 47\n四、資料利用之情形 48\n(一)告知義務 49\n(二)特定目的利用 50\n(三)二次目的利用限制 51\n(四)書面同意 53\n(五)去識別化利用 55\n第四節 小結 55\n第四章 特種個人資料類別重整之探討 57\n第一節 探討醫療領域特種個人資料範疇 57\n一、醫療健康資料整體涵蓋範圍 57\n二、醫療領域特種個人資料之範疇 58\n三、健康資料與醫療資料再定義 61\n(一)以血壓量測為例 61\n(二)由醫師或其他醫事人員囑咐之測量 62\n第二節 健康資料受科技之影響 62\n一、健康資料大數據特性 63\n(一)敏感性 63\n(二)可識別性 63\n(三)結構化/未結構化 64\n(四)技術特性 65\n(五)去識別化再連結 65\n二、醫療和健康大數據應用 66\n第三節 檢視特種個人資料類別 67\n一、特種個人資料保護 67\n二、物聯網和大數據對健康資料之影響 68\n三、健康資料納入特種個人資料 68\n第五章 結果與建議 70\n第一節 基於醫療健康大數據我國法制應予修正部分 70\n一、醫療資料與健康資料在科技社會中界線模糊 70\n二、醫療資料與健康資料在個資法規上應遵循規則依各國有不同之處 71\n三、我國特種個人資料類別待重整 72\n第二節 健康服務管理層面之建議 73\n第三節 後續研究之建議 73\n參考資料 75zh_TW
dc.format.extent 2247413 bytes-
dc.format.mimetype application/pdf-
dc.source.uri (資料來源) http://thesis.lib.nccu.edu.tw/record/#G1043642041en_US
dc.subject (關鍵詞) 個人資料保護法zh_TW
dc.subject (關鍵詞) 特種個人資料zh_TW
dc.subject (關鍵詞) 敏感性資料zh_TW
dc.subject (關鍵詞) 健康資料zh_TW
dc.subject (關鍵詞) 大數據zh_TW
dc.subject (關鍵詞) 物聯網zh_TW
dc.subject (關鍵詞) Personal information protection acten_US
dc.subject (關鍵詞) Special categories of dataen_US
dc.subject (關鍵詞) Sensitive dataen_US
dc.subject (關鍵詞) Health dataen_US
dc.subject (關鍵詞) Big dataen_US
dc.subject (關鍵詞) Internet of Thingsen_US
dc.title (題名) 健康資料之個人資料類別屬性研究──以IoT設備之蒐集、處理或利用為中心zh_TW
dc.title (題名) A Study on Personal Health Data Attributes: Focus on the Data Collection, Process or Use of IoT Deviceen_US
dc.type (資料類型) thesisen_US
dc.relation.reference (參考文獻) 一、中文部分\n(一)書籍\n黃茂榮(2006),債法各論,第一冊增訂版,臺北:植根法學叢書。\n劉佐國、李世德(2015),個人資料保護法釋義與實務,臺北:碁峰資訊。\n(二)專書論文\nDavid E. Parkhill著(2017),管理未結構化的健康照護資料,Katherine Marconi、Harold Lehmann編,醫療大數據,頁64-85,臺北:遠見天下文化。\nDonald A. Donahue, Jr.著(2017),大數據之初:熟練運用現有資訊,作為建立大數據的基礎, Katherine Marconi、Harold Lehmann編,醫療大數據頁,42-61,臺北:遠見天下文化。\nLinda Dimitropoulos、Charles (Chuck) Thompson著(2017),健康資料治理──尋找資料治理與管理的最佳實務及使用者需求的平衡點,Katherine Marconi、Harold Lehmann編,醫療大數據,頁244-259,臺北:遠見天下文化。\n(三)期刊論文\n王文娟(2016),物聯網概念及應用,經濟前瞻,168期,頁29-36。\n江浣翠(2017),公共衛生監測之規範問題研究──以美國法及我國現況為中心,東吳法律學報,29卷1期,頁81-126。\n吳世琳、王惟溫(2014),物聯網在健康醫療與照護之應用,科學月刊,534期,頁428-432。\n李國維(2017),創新智慧醫院經驗分享,以病人為中心──智慧化醫療照護產業的整合與課技創新研討會,2017年12月9日。\n林維信(2007),基因資訊保護之研究──以個人資料保護法草案為中心,科技法學評論,4卷1期,頁153-224。\n范光中、許永河(2010),台灣人口高齡化的社經衝擊,台灣老年醫學暨老年學雜誌,5卷3期,頁149-168。\n范姜真媺(2016),個人醫療資料之保護與利用──以全民健康保險為中心,法學叢刊,61卷3期,頁41-72。\n徐彪豪(2016),物聯網時代的資料保護防線──以歐盟GDPR為中心,科技法律透析,28卷10期,頁56-71。\n陳聰富、蔡甫昌(2017),大數據應用於醫學研究之法律議題,台灣醫學,21卷1期,頁34-42。\n張志勇、陳正昌(2014),物物相聯的龐大網路──物聯網,科學月刊,534期,頁419-427。\n張陳弘(2016),個人資料之認定──個人資料保護法適用之啟動閥,法令月刊,頁67-101。\n葉志良(2016),大數據應用下個人資料定義的檢討:以我國法院判決為例,資訊社會研究,31期,頁1-36。\n彭金隆、陳俞沛、孫群(2017),巨量資料應用在台灣個資法架構下的法律風險,台大管理論叢,27卷2S期,頁93-118。\n黃維民(2016),開放政府資料下應加強醫療隱私法律規範,軍法專刊,62卷6期,頁62-86。\n黃瀚萱、陳信希(2016),醫療大數據及其應用,台灣醫學,20卷6期,頁589-594。\n廖淑君(2013),從英國 NHS 國家 IT 計畫看電子病歷之推動:以病患個人資訊隱私保護為中心,科技法律透析,25卷5期,頁25-49。\n劉定基(2010),「個人資料保護法」初論,台灣法學雜誌,159期,頁1-8。\n劉定基(2017),大數據與物聯網時代的個人資料自主權,憲政時代,42卷3期,頁265-308。\n劉靜怡(2010),不算進步的立法:「個人資料保護法」初步評析,月旦法學雜誌,183期,頁147-164。\n蔡博坤(2015),美國行動健康照護新近法制趨勢─兼論對我國法之觀察與建議,科技法律透析,27卷5期,頁25-30。\n(四)學位論文\n蔡秉錡(2012),敏感性個人資料保護之研究,國立臺灣大學國家發展研究所。\n(五)研究報告\n國家發展委員會(2016),中華民國人口推估(105至150年)。\n(六)行政機關函釋\n行政院衛生署民國65年6月14日衛署醫字第116053號函釋。\n行政院衛生署民國81年8月11日衛署醫字第8156514號函釋。\n行政院衛生署民國85年5月20日衛署醫字第85008542號函釋。\n行政院衛生署民國93年4月13日衛署醫字第0930013213號函釋。\n(七)網路資訊\niThome,IoT vs. BoT──物聯網颳起的資安風暴,iThome,2017年3月25日,https://www.ithome.com.tw/guest-post/112833。\n王芝蘭,Key Health Solutions, Inchttp://www.khs1.com/articles-chinese-1-intro.php#8。\n方俊德,時事關注,透過預防性照顧來減輕長照與健保財務負擔,台灣經濟研究院,2016年4月6日,http://www.tier.org.tw/comment/pec5010.aspx?GUID=0151b2a9-58b2-4378-89bb-7d3242760588。\n法務部個人資料保護專區,有關於新頭殼Newtalk網路新聞提及「新版個資法將上路,民團呼籲通盤檢討」乙文,法務部提出說明,2012年9月30日,http://pipa.moj.gov.tw/cp.asp?xItem=1184&ctNode=379&mp=1。\n法務部,法務部對個人資料保護法部分條文修正說明,2016年7月11日,https://www.moj.gov.tw/cp-280-45102-5a83e-001.html。\n唐震寰,照護、製造業 引領2020物聯網,中時電子報,2015年07月19日,http://www.chinatimes.com/newspapers/20150719000098-260204。\n高行,醫師法將修法 最快明年開放六類病患遠距醫療,聯合新聞網,2017年10月31日,https://udn.com/news/story/7238/2789718。\n葉席吟,精準醫療之各國推動政策觀察,Research Portal,2016年10月7日,https://portal.stpi.narl.org.tw/index/article/10278。\n二、外文部分\n(一)期刊論文\nA. Dohr et al., (2010). The Internet of Things for Ambient Assisted Living, 2010 Seventh International Conference on Information Technology and New Generations (ITNG), Las Vegas, NV, USA, 12-14 April 2010, 804-809. \nBrent Mittelstadt, (2017). Designing the Health-Related Internet of Things: Ethical Principles and Guidelines, Information 8(3), 77, 1-25.\nDaniele Miorandi,et al., (2012). Internet of Things: Vision, applications and research challenges, AD HOC NETWORKS 10, 1497-1516.\nDimiter V. Dimitrov, (2016). Medical Internet of Things and Big Data in Healthcare, Health Information Research 22(3), 156-163.\nJavier Andreu-Perez et al, Big Data for Health, (2015). IEEE Journal of Biomedical and Health Informatics 19, 1193-1208.\nJennifer Rowley, (2007). The wisdom hierarchy: representations of the DIKW hierarchy, Journal of Information Science 33(2), 163-180.\nKaren McCullagh, (2007). Data Sensitivity: Proposals for Resolving the Conundrum, Journal of International Commercial Law and Technology 2(4), 190-201.\nParisa Rashidi et al., (2013). A Survey on Ambient-Assisted Living Tools for Adults, IEEE Journal of Biomedical and Health Informatics 17(3), 579-590.\nPaul Ohm, (2010). Broken Promises of Privacy: Responding to the Surprising Failure of Anonymization, UCLA Law Review 57, 1701-1777.\nRaul Parada et al., (2015). Using RFID to Detect Interactions in Ambient Assisted Living Environments, IEEE Intelligent Systems 30(4), 16-22.\nRebecca Wong, (2007). Data Protection Online: Alternative Approaches to Sensitive Data?, Journal of International Commercial Law and Technology 2(1), 9-16.\nSara Amendola et al., (2014). RFID Technology for IoT-Based Personal Healthcare in Smart Spaces, IEEE Internet of Things Journal 1(2), 144-152.\nS. M. R. Islam et al., (2015). Internet of Things for Health Care: A Comprehensive Survey, IEEE ACCESS 3, 678-708.\nSpiros Simitis, (2010). Privacy – An Endless Debate, California Law Review 98, 1989-2005.\n(二)研究報告\nJames Manyika et al., (2015). The Internet of Things: Mapping the Value beyond the Hype, McKinsey Global Institute.\n(三)網路資訊\n78 FR 5565-5702, 2013-01073, January 25, 2013. Retrieved from https://www.gpo.gov/fdsys/pkg/FR-2013-01-25/pdf/2013-01073.pdf.\nBowdeya Tweh, Anthem Agrees to $115 Million Settlement of Data Breach Lawsuit, Fox Business (Jun. 23, 2017). Retrieved from http://www.foxbusiness.com/features/2017/06/23/anthem-agrees-to-115-million-settlement-data-breach-lawsuit.html.\nEUGDPR.org, GDPR Portal: Site Overview. Retrieved from https://www.eugdpr.org/.\nFTC Staff Report, Internet of Things: Privacy & Security in a Connected World (January, 2015). Retrieved from https://www.ftc.gov/system/files/documents/reports/federal-trade-commission-staff-report-november-2013-workshop-entitled-internet-things-privacy/150127iotrpt.pdf.\nKevin Ashton, RFID Journal, June 22, 2009. Retrieved from http://www.rfidjournal.com/articles/view?4986.\nOECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data. Retrieved from http://www.oecd.org/sti/ieconomy/oecdguidelinesontheprotectionofprivacyandtransborderflowsofpersonaldata.htm#guidelines.\nRecord Breach Settlement in Anthem Class Action Receives Judge Approval, Hunton&Williams (Aug. 30, 2017). Retrieved from https://www.huntonprivacyblog.com/2017/08/30/record-breach-settlement-anthem-class-action-receives-judge-approval/.\nSharon R. Klein, Beyond HIPAA: Connected Health Care and the Internet of Things (April 14, 2015). Retrieved from http://www.pepperlaw.com/publications/beyond-hipaa-connected-health-care-and-the-internet-of-things-2015-04-14/.\nThe OECD Privacy Framework. Retrieved from http://www.oecd.org/sti/ieconomy/oecd_privacy_framework.pdf.zh_TW