Towards a Semantic Specification for GDPR Data Breach Reporting

被引:1
|
作者
Pandit, Harshvardhan J. [1 ,2 ]
Ryan, Paul [1 ,2 ,3 ,5 ]
Krog, Georg Philip [4 ]
Crane, Martin [2 ]
Brennan, Rob [1 ,3 ]
机构
[1] ADAPT SFI Res Ctr, Dublin, Ireland
[2] Dublin City Univ, Dublin, Ireland
[3] Univ Coll Dublin, Dublin, Ireland
[4] Signatu AS, Oslo, Norway
[5] Uniphar PLC, Dublin, Ireland
来源
基金
爱尔兰科学基金会;
关键词
GDPR; data breach; cybersecurity; semantics;
D O I
10.3233/FAIA230956
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Data breaches and other security incidents are an emerging challenge in the digital era. The General Data Protection Regulation (GDPR) requires conducting an impact assessment to understand the effects of the breach, and to then notify authorities and affected individuals in certain cases. Communication of this information typically takes place via conventional mediums such as emails and forms on the websites of authorities, and is a manual process. To assist in developing tools to support data breach investigations, and to enable automated systems for assisting with breach assessments and GDPR compliance, we present a machine-readable specification for the representation and documentation of information related to data breaches and their communications. The specification uses current requirements from the GDPR obligations and authoritative guidelines. To represent information, it extends the Data Privacy Vocabulary (DPV) by introducing new concepts required for data breach relevant information.
引用
收藏
页码:131 / 136
页数:6
相关论文
共 50 条
  • [1] GDPR-Compliant Data Breach Detection: Leveraging Semantic Web and Blockchain
    Ansar, Kainat
    Ahmed, Mansoor
    Khalid, Muhammad Irfan
    Helfert, Markus
    GOOD PRACTICES AND NEW PERSPECTIVES IN INFORMATION SYSTEMS AND TECHNOLOGIES, VOL 6, WORLDCIST 2024, 2024, 990 : 3 - 11
  • [2] Towards semantic modeling for QoS specification
    Zhou, Lifeng
    Pung, Hung Keng
    Ngoh, Lek Heng
    31ST IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS, PROCEEDINGS, 2006, : 361 - +
  • [3] XBRL reporting in firms with data breach incidents
    Jiang, Wanying
    Xu, Chunhao
    Counts, Roy Wayne
    JOURNAL OF CORPORATE ACCOUNTING AND FINANCE, 2024, 35 (03): : 146 - 156
  • [4] Towards a semantic approach of MBSE frameworks specification
    Duprez, Jean
    Ernadote, Dominique
    INCOSE International Symposium, 2020, 30 (01) : 1405 - 1419
  • [5] Towards Enforcement of the EU GDPR: Enabling Data Erasure
    Sarkar, Subhadeep
    Banatre, Jean-Pierre
    Rilling, Louis
    Morin, Christine
    IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, : 222 - 229
  • [6] Semantic Specification of Data Types for a World of Open Data
    Ma, Xiaogang
    Erickson, John S.
    Zednik, Stephan
    West, Patrick
    Fox, Peter
    ISPRS INTERNATIONAL JOURNAL OF GEO-INFORMATION, 2016, 5 (03)
  • [7] Reporting on gdpr compliance to the board
    Pearce, Guy
    ISACA Journal, 2019, 1 : 32 - 39
  • [8] Towards Specification Based Testing for Semantic Web Services
    Jokhio, M. Shaban
    Dobbie, Gillian
    Sun, Jing
    ASWEC 2009: 20TH AUSTRALIAN SOFTWARE ENGINEERING CONFERENCE, PROCEEDINGS, 2009, : 54 - 63
  • [9] PolicyReplay: Misconfiguration-Response Queries for Data Breach Reporting
    Fabbri, Daniel
    LeFevre, Kristen
    Zhu, Qiang
    PROCEEDINGS OF THE VLDB ENDOWMENT, 2010, 3 (01): : 36 - 47
  • [10] VIEW SPECIFICATION AND MANIPULATION FOR A SEMANTIC DATA MODEL
    CZEJDO, B
    EMBLEY, DW
    INFORMATION SYSTEMS, 1991, 16 (06) : 585 - 612