【24h】

SCHENGENDB: A Data Protection Database Proposal

机译:SCHENGENDB:数据保护数据库建议

获取原文

摘要

GDPR in Europe and similar regulations, such as the California CCPA, require new levels of privacy support for consumers. Most challenging to IT departments is the 'right to be forgotten'. Hence, an enterprise must ensure that ALL information about a specific consumer be deleted from enterprise storage, when requested. Since enterprises are internally heavily 'siloed', sharing of information is usually accomplished by copying data between systems. This makes finding and deleting all copies of data on a particular consumer difficult. GDPR also requires the notion of purposes, which is an access control model orthogonal to the one customarily in SQL. Herein, we sketch an implementation of purposes and show how it fits within a conventional access control framework. We then propose two solutions to supporting GDPR in a DBMS. When a 'green field' environment is present, we propose a solution which directly supports the process of ensuring GDPR compliance at enterprise-scale. Specifically, it is designed to store every fact about a consumer exactly once. Therefore, the right to be forgotten is readily supported by deleting that fact. On the other hand, when dealing with legacy systems in the enterprise, we propose a second solution which tracks all copies of personal information, so they can be deleted on request. Of course, this solution entails additional overhead in the DBMS. Once data leaves the DBMS, it is in some application. We propose 'sandboxing' applications in a novel way that will prevent them from leaking data to the outside world when inappropriate. Lastly, we discuss the challenges associated with auditing and logging of data. This paper sketches the design of the above GDPR compliant facilities, which we collectively term SchengenDB.
机译:欧洲的GDPR和类似法规(例如加利福尼亚CCPA)要求为消费者提供更高级别的隐私支持。对于IT部门而言,最具挑战性的是“被遗忘的权利”。因此,企业必须确保在请求时从企业存储中删除有关特定使用者的所有信息。由于企业内部严重“孤立”,因此信息共享通常是通过在系统之间复制数据来完成的。这使得查找和删除特定使用者的所有数据副本变得很困难。 GDPR还要求使用目的概念,这是一种与SQL中惯用的正交的访问控制模型。在此,我们概述了目的的实现,并说明了它如何适合常规的访问控制框架。然后,我们提出了两种在DBMS中支持GDPR的解决方案。当存在“绿地”环境时,我们提出一种解决方案,直接支持确保企业规模的GDPR合规性的过程。具体来说,它旨在将有关消费者的所有事实存储一次。因此,通过删除该事实很容易支持被遗忘的权利。另一方面,当处理企业中的旧系统时,我们提出了第二种解决方案,该解决方案可跟踪个人信息的所有副本,因此可以根据要求将其删除。当然,此解决方案在DBMS中需要额外的开销。数据离开DBMS后,就可以在某些应用程序中使用了。我们以新颖的方式提出“沙盒”应用程序,以防止它们在不适当的情况下将数据泄漏到外界。最后,我们讨论了与数据审计和日志记录相关的挑战。本文概述了上述符合GDPR的设施的设计,我们将其统称为SchengenDB。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号