Ir directamente a la navegación principal Ir directamente a la búsqueda Ir directamente al contenido principal

A Zero-Trust, AI-RMF–Governed Architecture for LLM-Enabled Telemedicine-as-a-Service: Mitigating Poisoning, Leakage and Unsafe-Output Threats

  • Julio Yair Rivera
  • , Ángel D. Pinto Mangones
  • , Nelson A. Pérez García
  • , Mónica Karel Huerta
  • , César Viloria Núñez
  • , Frank Ibarra Hernández
  • , Juan Torres Tovio
  • , Horderlin Robles Vega
  • , Jorge Enrique De la Rosa Pareja

Producción científica: Capítulo del libro/informe/acta de congresoContribución de conferenciarevisión exhaustiva

Resumen

Large-Language-Model (LLM) functionality is rapidly becoming a cornerstone of Telemedicine-as-a-Service (PGaaS) platforms. Recent Q1 studies demonstrate that even minuscule training-set or parameter perturbations can introduce persistent back-doors, while inference pipelines leak protected health information (PHI) if left unguarded. Building on the NIST AI Risk Management Framework (AI RMF), this paper proposes and implements a zero-trust, multi-cloud security architecture that couples (i) knowledge-graph–driven data-integrity validation, (ii) containerised fine-tuning isolation, (iii) AI-RMF–centred governance and continuous risk registers, (iv) a privacy-preserving response-sanitisation gateway enhanced with one-time-password (OTP) and KYC identity binding, and (v) remote-attestation-backed zero-knowledge-proof (ZKP) integrity challenges for model weights at runtime. An extensive multi-cloud evaluation shows that the framework detects 94.6 % of tainted samples before ingestion and blocks 91.3 % of unsafe outputs, with a median latency overhead of 66 ms—well below clinical tele-consultation thresholds.

Idioma originalInglés
Título de la publicación alojadaProceedings - 2025 51st Latin American Computer Conference, CLEI 2025
EditorialInstitute of Electrical and Electronics Engineers Inc.
ISBN (versión digital)9798331594534
DOI
EstadoPublicada - 2025
Evento51st Latin American Computer Conference, CLEI 2025 - Valparaiso, Chile
Duración: 27 oct. 202531 oct. 2025

Serie de la publicación

NombreProceedings - 2025 51st Latin American Computer Conference, CLEI 2025

Conferencia

Conferencia51st Latin American Computer Conference, CLEI 2025
País/TerritorioChile
CiudadValparaiso
Período27/10/2531/10/25

Nota bibliográfica

Publisher Copyright:
© 2025 IEEE.

Huella

Profundice en los temas de investigación de 'A Zero-Trust, AI-RMF–Governed Architecture for LLM-Enabled Telemedicine-as-a-Service: Mitigating Poisoning, Leakage and Unsafe-Output Threats'. En conjunto forman una huella única.

Citar esto