首页> 外文会议>Federated Conference on Computer Science and Information Systems >Deriving Workflow Privacy Patterns from Legal Documents
【24h】

Deriving Workflow Privacy Patterns from Legal Documents

机译:从法律文件推导工作流程隐私模式

获取原文

摘要

The General Data Protection Regulation (GDPR) has strengthened the importance of data privacy and protection for enterprises offering their services in the EU. An important part of intensified efforts towards better privacy protection is enterprise workflow (re)design. In particular, the GDPR as strengthen the imperative to apply the privacy by design principle when (re)designing workflows. A conforming and promising approach is to model privacy relevant workflow fragments as Workflow Privacy Patterns (WPPs). Such WPPs allow to specify abstract templates for recurring data-privacy problems in workflows. Thus, WPPs are intended to support workflow engineers, auditors and privacy officers by providing pre-validated patterns that comply with existing data privacy regulations. However, it is unclear yet how to obtain WPPs systematically with an appropriate level of detail. In this paper, we introduce our approach to derive WPPs from legal texts and similar normative regulations. We propose a structure of a WPP, which we derive from pattern approaches from other research areas. We also introduce a framework that allows to design WPPs which make legal regulations accessible for persons who do not possess in-depth legal expertise. We have applied our approach to different articles of the GDPR, and we have obtained evidence that we can transfer legal text into a structured WPP representation. If a workflow correctly implements a WPP that has been designed that way, the workflow automatically complies to the respective fragment of the underlying legal text.
机译:通用数据保护条例(GDPR)增强了数据隐私和保护对于在欧盟提供服务的企业的重要性。加强努力以更好地保护隐私的重要部分是企业工作流程(重新)设计。特别是,GDPR加强了在(重新)设计工作流时根据设计原则应用隐私的必要性。一种一致且有前途的方法是将与隐私相关的工作流片段建模为工作流隐私模式(WPP)。此类WPP允许为工作流中反复出现的数据隐私问题指定抽象模板。因此,WPP旨在通过提供符合现有数据隐私法规的预验证模式来支持工作流程工程师,审核员和隐私官。但是,尚不清楚如何以适当的详细程度系统地获取WPP。在本文中,我们介绍了从法律文本和类似规范性法规中得出WPP的方法。我们提出了WPP的结构,该结构是从其他研究领域的模式方法得出的。我们还引入了一个框架,该框架允许设计WPP,从而使不具备深入法律专业知识的人员可以访问法律法规。我们已经将我们的方法应用于GDPR的不同条款,并且已经获得了可以将法律文本转换为结构化的WPP表示形式的证据。如果工作流正确地实现了以这种方式设计的WPP,则工作流将自动遵守基础法律文本的各个片段。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号