Fuzzy-based approach to assess and prioritize privacy risks

被引:8
|
作者
Hart, Stephen [1 ]
Ferrara, Anna Lisa [2 ]
Paci, Federica [3 ]
机构
[1] Univ Southampton, Southampton, England
[2] Univ Molise, Campobasso, Italy
[3] Univ Verona, Verona, Italy
关键词
Privacy risks; Privacy risk assessment; Fuzzy set theory;
D O I
10.1007/s00500-019-03986-5
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The newgeneral data protection regulation requires organizations to conduct a data protection impact assessment (DPIA) when the processing of personal information may result in high risk to individual rights and freedoms. DPIA allows organizations to identify, assess and prioritize the risks related to the processing of personal information and select suitable mitigations to reduce the severity of the risks. The existing DPIA methodologies measure the severity of privacy risks according to analysts' opinions about the likelihood and the impact factors of the threats. The assessment is therefore subjective to the expertise of the analysts. To reduce subjectivity, we propose a set of well-defined criteria that analysts can use to measure the likelihood and the impact of a privacy risk. Then, we adopt the fuzzy multi-criteria decision-making approach to systematically measure the severity of privacy risks while modeling the imprecision and vagueness inherent in linguistic assessment. Our approach is illustrated for a realistic scenario with respect to LINDDUN threat categories.
引用
下载
收藏
页码:1553 / 1563
页数:11
相关论文
共 50 条
  • [21] A fuzzy-based approach for generation system reliability evaluation
    Narasimhan, S
    Asgarpoor, S
    ELECTRIC POWER SYSTEMS RESEARCH, 2000, 53 (02) : 133 - 138
  • [22] A fuzzy-based approach to residual income equity valuation
    Beynon M.J.
    Clatworthy M.A.
    Review of Quantitative Finance and Accounting, 2013, 40 (4) : 675 - 690
  • [23] Development of a fuzzy-based approach for assessing water quality
    Gulati, Sumita
    Bansal, Anshul
    Pal, Ashok
    WATER SUPPLY, 2023, 23 (11) : 4374 - 4385
  • [24] Fuzzy-Based Approach for Clustering Data with Multivalued Features
    Prakash, L. N. C. K.
    Vimaladevi, M.
    Chakravarthy, V. Deeban
    Narayana, G. Surya
    Srinivasulu, Asadi
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [25] A fuzzy-based conceptual KDD approach: The SaintEtiQ system
    Raschia, G
    Mouaddib, N
    DATA MINING II, 2000, 2 : 259 - 268
  • [26] A fuzzy-based approach for text representation in text categorization
    Doan, S
    FUZZ-IEEE 2005: PROCEEDINGS OF THE IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS: BIGGEST LITTLE CONFERENCE IN THE WORLD, 2005, : 1008 - 1013
  • [27] A new fuzzy-based approach for environmental risk assessment
    Oturakci, Murat
    HUMAN AND ECOLOGICAL RISK ASSESSMENT, 2019, 25 (07): : 1718 - 1728
  • [28] A Fuzzy-Based Approach for the Multilevel Component Selection Problem
    Vescan, Andreea
    Serban, Camelia
    HYBRID ARTIFICIAL INTELLIGENT SYSTEMS, 2016, 9648 : 463 - 474
  • [29] A fuzzy-based instance selection approach for data mining
    Wright, P
    Hodges, J
    NINTH IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS (FUZZ-IEEE 2000), VOLS 1 AND 2, 2000, : 381 - 386
  • [30] A fuzzy-based genetic approach to the diagnosis of manufacturing systems
    Khoo, LP
    Ang, CL
    Zhang, J
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2000, 13 (03) : 303 - 310