Scalable Cloud Storage Models for National Digital Identity Systems

Authors

  • Mallesham Goli Independent Researcher, India Author

DOI:

https://doi.org/10.15680/IJCTECE.2020.0306004

Keywords:

National Digital Identity Systems, Cloud-Based Identity Services, Federated Identity Architecture, Digital Identity Platform-as-a-Service, Identity-Management-as-a-Service (IDaaS), Trusted Credential Repositories, Privacy-Preserving Identity Design, Data Protection and Regulatory Compliance, Federated versus Centralized Storage Models, Data Localization and Jurisdictional Governance, Identity Infrastructure Resilience, Security and Integrity in Digital Identity, Incident Reporting and Auditability, Single-Point-of-Failure Mitigation, Government Digital Trust Frameworks.

Abstract

Cloud-based identity services are evolving to meet the needs of National Digital Identity systems, which function as the main trust anchors underpinning key government services, including Social Security, taxation, and healthcare. To bridge the gap between existing data-protection regulations and the design of federated National Digital Identity systems, specific attributes need to be articulated—these should be privacy-protective, allow for custom content, include preventive and remedial compliance measures, and make auditing obligatory. A trusted credential repository serves as the basis for a Digital Identity platform-as-a-service provider that integrates supporting identity-management-as-a-service solutions

The Digital Identity Infrastructure must include suitable data storage models allowing for protected privacy, security, integrity, and reliability, together with defined incident-reporting and auditing procedures. The models should encompass architecture choices supporting operation and resilience, including availability, regulatory obligations, jurisdiction, data localization, and mitigation of single-point-of-failure issues. Two cloud-storage models for national identity services are examined—centralized storage managed by a single entity and federated storage operated by multiple identity providers—as well as a hybrid combination

References

[1] Mell, P., & Grance, T. (2011). The NIST definition of cloud computing. National Institute of Standards and Technology.

[2] Buyya, R., Broberg, J., & Goscinski, A. (2011). Cloud computing: Principles and paradigms. Wiley.

[3] Rongali, S. K. (2020). Predictive Modeling and Machine Learning Frameworks for Early Disease Detection in Healthcare Data Systems. Current Research in Public Health, 1(1), 1-15.

[4] Zhang, Q., Chen, M., Li, L., & Li, Y. (2010). A survey on cloud computing. Journal of Grid Computing, 8(4), 449–472.

[5] Dean, J., & Ghemawat, S. (2008). MapReduce. Communications of the ACM, 51(1), 107–113.

[6] Inala, R. (2020). Building Foundational Data Products for Financial Services: A MDM-Based Approach to Customer, and Product Data Integration. Universal Journal of Finance and Economics, 1(1), 1-18.

[7] Newman, S. (2015). Building microservices. O’Reilly Media.

[8] Pahl, C. (2015). Containerization and the PaaS cloud. IEEE Cloud Computing, 2(3), 24–31.

[9] Bass, L., Clements, P., & Kazman, R. (2013). Software architecture in practice (3rd ed.). Addison-Wesley.

[10] Fielding, R. T. (2000). Architectural styles and the design of network-based software architectures. Doctoral dissertation, University of California.

[11] Gamma, E., Helm, R., Johnson, R., & Vlissides, J. (1994). Design patterns. Addison-Wesley.

[12] Singireddy, S., & Adusupalli, B. (2019). Cloud Security Challenges in Modernizing Insurance Operations with Multi-Tenant Architectures. International Journal of Engineering and Computer Science, 8, 12.

[13] Kreps, J., Narkhede, N., & Rao, J. (2011). Kafka. Proceedings of NetDB Workshop.

[14] Stonebraker, M., Çetintemel, U., & Zdonik, S. (2005). The 8 requirements of real-time stream processing. ACM SIGMOD Record, 34(4), 42–47.

[15] Akidau, T., Chernyak, S., & Lax, R. (2018). Streaming systems. O’Reilly Media.

[16] Zaharia, M., et al. (2016). Apache Spark. Communications of the ACM, 59(11), 56–65.

[17] Davuluri, P. N. (2020). Improving Data Quality and Lineage in Regulated Financial Data Platforms. Finance and Economics, 1(1), 1-14.

[18] Bernstein, P. A., & Newcomer, E. (2009). Principles of transaction processing (2nd ed.). Morgan Kaufmann.

[19] Gray, J., & Reuter, A. (1993). Transaction processing. Morgan Kaufmann.

[20] Amistapuram, K. Energy-Efficient System Design for High-Volume Insurance Applications in Cloud-Native Environments. International Journal of Innovative Research in Electrical, Electronics, Instrumentation and Control Engineering (IJIREEICE), DOI, 10.

[21] Bender, D., & Sartipi, K. (2013). HL7 FHIR. Proceedings of CBMS, 326–331.

[22] Mandel, J. C., et al. (2016). SMART on FHIR. Journal of the American Medical Informatics Association, 23(5), 899–908.

[23] Benson, T., & Grieve, G. (2016). Principles of health interoperability. Springer.

[24] Lehne, M., et al. (2019). The use of FHIR in digital health. Studies in Health Technology and Informatics, 267, 52–58.

[25] Vadisetty, R., Polamarasetti, A., Guntupalli, R., Rongali, S. K., Raghunath, V., Jyothi, V. K., & Kudithipudi, K. (2020). Generative AI for Cloud Infrastructure Automation. International Journal of Artificial Intelligence, Data Science, and Machine Learning, 1(3), 15-20.

[26] Allen, C. (2016). The path to self-sovereign identity. Internet Identity Workshop.

[27] Hardt, D. (2012). The OAuth 2.0 authorization framework. IETF RFC 6749.

[28] Sakimura, N., Bradley, J., Jones, M., de Medeiros, B., & Mortimore, C. (2014). OpenID Connect core 1.0. OpenID Foundation.

[29] Jøsang, A., Fabre, J., Hay, B., Dalziel, J., & Pope, S. (2005). Trust requirements in identity management. Proceedings of ACSW Frontiers.

[30] Bertino, E., & Takahashi, K. (2011). Identity management: Concepts, technologies, and systems. Artech House.

[31] Pandiri, L., Singireddy, S., & Adusupalli, B. (2020). Digital Transformation of Underwriting Processes through Automation and Data Integration. Global Research Development (GRD) ISSN, 2455-5703.

[32] Cavoukian, A. (2011). Privacy by design. Information and Privacy Commissioner of Ontario.

[33] Solove, D. J., & Schwartz, P. M. (2018). Information privacy law (6th ed.). Wolters Kluwer.

[34] European Union. (2016). General Data Protection Regulation. Official Journal of the European Union.

[35] OECD. (2013). The OECD privacy framework. OECD Publishing.

[36] Inala, R. Designing Scalable Technology Architectures for Customer Data in Group Insurance and Investment Platforms.

[37] ISO/IEC. (2018). ISO/IEC 27018: Protection of PII in public clouds.

[38] Cloud Security Alliance. (2017). Cloud controls matrix (v3.0).

[39] NIST. (2018). Framework for improving critical infrastructure cybersecurity.

[40] Anderson, R. (2008). Security engineering (2nd ed.). Wiley.

[41] Kahn Academy & Diffie, W., & Hellman, M. (1976). New directions in cryptography. IEEE Transactions on Information Theory, 22(6), 644–654.

[42] Rivest, R. L., Shamir, A., & Adleman, L. (1978). A method for obtaining digital signatures. Communications of the ACM, 21(2), 120–126.

[43] Menezes, A. J., van Oorschot, P. C., & Vanstone, S. A. (1996). Handbook of applied cryptography. CRC Press.

[44] Kahn Academy & Merkle, R. (1988). A digital signature based on a conventional encryption function. Advances in Cryptology, 369–378.

[45] Boneh, D., & Franklin, M. (2001). Identity-based encryption. Advances in Cryptology—CRYPTO.

[46] Gottimukkala, V. R. R. (2020). Energy-Efficient Design Patterns for Large-Scale Banking Applications Deployed on AWS Cloud. power, 9(12).

[47] Dwork, C. (2006). Differential privacy. ICALP.

[48] Chaum, D. (1985). Security without identification. Communications of the ACM, 28(10), 1030–1044.

[49] Sabahi, F. (2011). Cloud computing security threats and responses. IEEE.

[50] Behl, A., & Behl, K. (2017). Cyberwar. Oxford University Press.

[51] Laudon, K. C., & Laudon, J. P. (2018). Management information systems (15th ed.). Pearson.

[52Varri, D. B. S. (2020). Automated Vulnerability Detection and Remediation Framework for Enterprise Databases. Available at SSRN 5774865.

[53] McAfee, A., & Brynjolfsson, E. (2012). Big data. Harvard Business Review, 90(10), 60–68.

[54] Fox, A., & Patterson, D. (2012). Engineering long-lived software. Communications of the ACM, 55(5), 71–79.

[55] Davuluri, P. N. (2020). Event-Driven Architectures for Real-Time Regulatory Monitoring in Global Banking.

[56] Brewer, E. A. (2000). Towards robust distributed systems. PODC.

[57] Gilbert, S., & Lynch, N. (2002). Brewer’s conjecture and feasibility of consistent, available, partition-tolerant web services. ACM SIGACT News, 33(2), 51–59.

[58] Hohpe, G., & Woolf, B. (2003). Enterprise integration patterns. Addison-Wesley.

[59] Segireddy, A. R. (2020). Cloud Migration Strategies for High-Volume Financial Messaging Systems.

[60] Adusupalli, B., Pandiri, L., & Singireddy, S. (2019). DevOps Enablement in Legacy Insurance Infrastructure for Agile Policy and Claims Deployment. risk, 7(12).

[61] Bernstein, P. A. (2011). Middleware: A model for distributed system services. Communications of the ACM, 39(2), 86–98.

[62] Weiser, M. (1991). The computer for the 21st century. Scientific American, 265(3), 94–104.

[63] Haux, R. (2010). Medical informatics: Past, present, future. International Journal of Medical Informatics, 79(9), 599–610.

[64] Meystre, S. M., et al. (2017). Clinical data reuse. Yearbook of Medical Informatics, 26(1), 38–52.

[65] Greenhalgh, T., et al. (2017). Beyond adoption. Journal of Medical Internet Research, 19(11), e367.

[66] Jensen, P. B., Jensen, L. J., & Brunak, S. (2012). Mining electronic health records. Nature Reviews Genetics, 13(6), 395–405.

[67] Shickel, B., et al. (2018). Deep EHR. IEEE Journal of Biomedical and Health Informatics, 22(5), 1589–1604.

[68] Rajkomar, A., et al. (2018). Scalable and accurate deep learning with EHRs. npj Digital Medicine, 1, 18.

[69] Esteva, A., et al. (2019). A guide to deep learning in healthcare. Nature Medicine, 25(1), 24–29.

Downloads

Published

2020-12-15

How to Cite

Scalable Cloud Storage Models for National Digital Identity Systems. (2020). International Journal of Computer Technology and Electronics Communication, 3(6), 2923-2936. https://doi.org/10.15680/IJCTECE.2020.0306004

Most read articles by the same author(s)