首页> 外文会议>International joint conference on electronic voting >My Vote, My (Personal) Data: Remote Electronic Voting and the General Data Protection Regulation
【24h】

My Vote, My (Personal) Data: Remote Electronic Voting and the General Data Protection Regulation

机译:我的投票,我的(个人)数据:远程电子投票和一般数据保护规范

获取原文

摘要

On 19 September 2019, the Data Protection Authority of the Aland Islands (in Finland) published its findings on the data processing audit for the autonomous region's parliamentary election special internet voting procedure. It claimed that there were faults in the documentation provided by the processor, which in turn meant that the election's integrity could not be guaranteed without further precautions from the government of the Aland Islands. Since the European Union's General Data Protection Regulation (GDPR) entered into force in May 2018, it has set new critical requirements for remote electronic voting projects. Yet, to date, no specific guidance nor research has been conducted on the impact of GDPR on remote electronic voting. Tacking stock of two recent internet voting experiences in the Aland Islands and France, this paper aims at identifying and understanding these new requirements. More specifically, based on these two case studies it analyses four different challenges on the processing of personal data in remote electronic voting under the GDPR: the definitions and categories of personal data processed in online voting projects; the separation of duties between data controllers and data processors; the secure processing of (sensitive) personal data, including the use of anonymisation and pseudonymisation techniques; as well as post-election processing of personal data, and possible limits to (universal) verifiability and public access to personal data.
机译:2019年9月19日,Aland Islands(芬兰)的数据保护机构发表了关于自治区议会选举特殊互联网投票程序的数据处理审计的调查结果。它声称,处理器提供的文件中存在故障,这反过来意味着在没有奥兰群岛政府的进一步预防措施,不能保证选举的诚信。自欧洲联盟的一般数据保护条例(GDPR)于2018年5月生效以来,它为远程电子投票项目设定了新的关键要求。然而,迄今为止,没有对GDPR对远程电子投票的影响进行了具体的指导性或研究。本文旨在识别和理解这些新要求的近期互联网投票体验。更具体地说,基于这两种案例研究,它分析了GDPR下的远程电子投票中的个人数据的四种不同挑战:在线投票项目中处理的个人数据的定义和类别;数据控制器和数据处理器之间的职责分离; (敏感)个人数据的安全处理,包括使用匿名和假名匿名技术;以及选举后的个人数据处理,以及可能限制(普遍)核复性和公众访问个人数据的限制。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号