首页> 外文会议>Annual Privacy Forum >Sharing Cyber Threat Intelligence Under the General Data Protection Regulation
【24h】

Sharing Cyber Threat Intelligence Under the General Data Protection Regulation

机译:在一般数据保护规范下分享网络威胁情报

获取原文

摘要

Sharing Cyber Threat Intelligence (CTI) is a key strategy for improving cyber defense, but there are risks of breaching regulations and laws regarding privacy. With regulations such as the General Data Protection Regulation (GDPR) that are designed to protect citizens' data privacy, the managers of CTI datasets need clear guidance on how and when it is legal to share such information. This paper defines the impact that GDPR legal aspects may have on the sharing of CTI. In addition, we define adequate protection levels for sharing CTI to ensure compliance with the GDPR. We also present a model for evaluating the legal requirements for supporting decision making when sharing CTI, which also includes advice on the required protection level. Finally, we evaluate our model using use cases of sharing CTI datasets between entities.
机译:分享网络威胁情报(CTI)是改善网络防御的关键策略,但有风险的违约法规和有关隐私的法律。通过旨在保护公民数据隐私的一般数据保护规范(GDPR)等法规,CTI数据集的管理人员需要明确指导如何以及何时合法分享此类信息。本文定义了GDPR法律方面可能对CTI共享的影响。此外,我们为共享CTI定义了足够的保护水平,以确保遵守GDPR。我们还提出了一种评估在分享CTI时支持决策的法律要求的型号,这也包括关于所需保护水平的建议。最后,我们使用在实体之间共享CTI数据集的用例来评估我们的模型。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号