Fuzzy-based approach to assess and prioritize privacy risks

被引:8
|
作者
Hart, Stephen [1 ]
Ferrara, Anna Lisa [2 ]
Paci, Federica [3 ]
机构
[1] Univ Southampton, Southampton, England
[2] Univ Molise, Campobasso, Italy
[3] Univ Verona, Verona, Italy
关键词
Privacy risks; Privacy risk assessment; Fuzzy set theory;
D O I
10.1007/s00500-019-03986-5
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The newgeneral data protection regulation requires organizations to conduct a data protection impact assessment (DPIA) when the processing of personal information may result in high risk to individual rights and freedoms. DPIA allows organizations to identify, assess and prioritize the risks related to the processing of personal information and select suitable mitigations to reduce the severity of the risks. The existing DPIA methodologies measure the severity of privacy risks according to analysts' opinions about the likelihood and the impact factors of the threats. The assessment is therefore subjective to the expertise of the analysts. To reduce subjectivity, we propose a set of well-defined criteria that analysts can use to measure the likelihood and the impact of a privacy risk. Then, we adopt the fuzzy multi-criteria decision-making approach to systematically measure the severity of privacy risks while modeling the imprecision and vagueness inherent in linguistic assessment. Our approach is illustrated for a realistic scenario with respect to LINDDUN threat categories.
引用
下载
收藏
页码:1553 / 1563
页数:11
相关论文
共 50 条
  • [1] Fuzzy-based approach to assess and prioritize privacy risks
    Stephen Hart
    Anna Lisa Ferrara
    Federica Paci
    Soft Computing, 2020, 24 : 1553 - 1563
  • [2] A Fuzzy-Based Approach to Estimate Management Processes Risks
    Hawas, Yaser E.
    Al-Nahyan, Moza T.
    APPLICATION OF FUZZY LOGIC FOR MANAGERIAL DECISION MAKING PROCESSES: LATEST RESEARCH AND CASE STUDIES, 2017, : 73 - 84
  • [3] Fuzzy-Based Privacy Preserving Approach in Centralized Database Environment
    Saxena, V. K.
    Pushkar, Shashank
    ADVANCES IN COMPUTATIONAL INTELLIGENCE, 2017, 509 : 299 - 307
  • [4] A Fuzzy-based Methodology to Assess Software Usability Risk
    Kartika, Afriyanti Dwi
    Surendro, Kridanto
    2016 4TH INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY (ICOICT), 2016,
  • [5] A fuzzy-based approach to mesh simplification
    Chang, CC
    Yang, SK
    Duan, DZ
    Lin, MF
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2002, 18 (03) : 459 - 466
  • [6] Fuzzy-Based Approach of Concept Alignment
    de Lourdes Martinez-Villasenor, Maria
    Gonzalez-Mendoza, Miguel
    UBIQUITOUS COMPUTING AND AMBIENT INTELLIGENCE, UCAMI 2017, 2017, 10586 : 172 - 180
  • [7] Fuzzy-based Severity Evaluation in Privacy Problems: an Application to Healthcare
    Barzegar, Atrin
    Campanile, Lelio
    Marrone, Stefano
    Marulli, Fiammetta
    Verde, Laura
    Mastroianni, Michele
    2024 19TH EUROPEAN DEPENDABLE COMPUTING CONFERENCE, EDCC, 2024, : 147 - 154
  • [8] A fuzzy-based approach for cluster management in VANETs: Performance evaluation for two fuzzy-based systems
    Ozera, Kosuke
    Bylykbashi, Kevin
    Liu, Yi
    Barolli, Leonard
    INTERNET OF THINGS, 2018, 3-4 : 120 - 133
  • [9] A fuzzy-based approach to stereotype selection in hypermedia
    Di Lascio, L
    Fischetti, E
    Gisolfi, A
    USER MODELING AND USER-ADAPTED INTERACTION, 1999, 9 (04) : 285 - 320
  • [10] Hypermedia linking and querying: A fuzzy-based approach
    Petrou, C
    Martakos, D
    Hadjiefthymiades, S
    1998 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS, VOLS 1-5, 1998, : 1235 - 1240