首页> 外文会议>International conference on web information systems and technologies >A Declarative Data Protection Approach: From Human-Readable Policies to Automatic Enforcement
【24h】

A Declarative Data Protection Approach: From Human-Readable Policies to Automatic Enforcement

机译:声明数据保护方法:从人类可读的政策到自动执行

获取原文

摘要

In recent years, almost any object we use in our lives is connected and able to generate, collect and share data and information. This leads to the need of having, on the one hand, legal regulations, such as the new General Data Protection Regulation, able to guarantee that privacy of humans is preserved within the sharing process, and on the other hand, automatic mechanisms to guarantee that such regulations, in addition to user privacy preferences, are applied. The goal of this work is to propose an approach to manage data protection policy, from their specification in a controlled natural language to their translation into an automatically enforceable policy language, UPOL, for access and usage control of personal information, aiming at transparent and accountable data usage. UPOL extends and combines previous research results, U-XACML and PPL, and it is part of a more general proposal to regulate multi-party data sharing operations. A use case is proposed, considering challenges brought by the new EU's GDPR.
机译:近年来,我们在我们生活中使用的几乎任何对象都是连接并能够生成,收集和共享数据和信息。这导致了一方面需要进行法律规定,例如新的一般数据保护条例,能够保证人类的隐私在共享过程中保存,另一方面,自动机制保证除了用户隐私偏好之外,此类法规是应用的。这项工作的目标是提出一种方法来管理数据保护政策,从他们的规范中以受控的自然语言到他们的翻译成自动可执行的政策语言,以获取个人信息的访问和使用控制,旨在透明和负责数据使用。 UPOL扩展并结合了以前的研究结果,U-XACML和PPL,并且它是规范多方数据共享操作的更一般提案的一部分。提出了一种用例,考虑到新欧盟的GDPR带来的挑战。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号