Abstract. This contribution gives an overview of various access control strategies in use in contemporary healthcare scenarios and shows how a broad variety of respective policies can be covered by a single security policy model (UCON). Based on this policy model, the core of this contribution consists in the specialization of the SECTET framework for Model Driven Security towards a Domain Architecture that comprises a Domain Specific Language for healthcare scenarios supporting the modelling of policies with advanced access control requirements, a target architecture for the enforcement of these requirements and model-to-code transformations.