Fuzzy-based approach to assess and prioritize privacy risks

被引:8
|
作者
Hart, Stephen [1 ]
Ferrara, Anna Lisa [2 ]
Paci, Federica [3 ]
机构
[1] Univ Southampton, Southampton, England
[2] Univ Molise, Campobasso, Italy
[3] Univ Verona, Verona, Italy
关键词
Privacy risks; Privacy risk assessment; Fuzzy set theory;
D O I
10.1007/s00500-019-03986-5
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The newgeneral data protection regulation requires organizations to conduct a data protection impact assessment (DPIA) when the processing of personal information may result in high risk to individual rights and freedoms. DPIA allows organizations to identify, assess and prioritize the risks related to the processing of personal information and select suitable mitigations to reduce the severity of the risks. The existing DPIA methodologies measure the severity of privacy risks according to analysts' opinions about the likelihood and the impact factors of the threats. The assessment is therefore subjective to the expertise of the analysts. To reduce subjectivity, we propose a set of well-defined criteria that analysts can use to measure the likelihood and the impact of a privacy risk. Then, we adopt the fuzzy multi-criteria decision-making approach to systematically measure the severity of privacy risks while modeling the imprecision and vagueness inherent in linguistic assessment. Our approach is illustrated for a realistic scenario with respect to LINDDUN threat categories.
引用
下载
收藏
页码:1553 / 1563
页数:11
相关论文
共 50 条
  • [31] Communicating human health risks associated with disinfection by-products in drinking water supplies: a fuzzy-based approach
    Rehan Sadiq
    Manuel J. Rodriguez
    Syed A. Imran
    Homayoun Najjaran
    Stochastic Environmental Research and Risk Assessment, 2007, 21 : 341 - 353
  • [32] Communicating human health risks associated with disinfection by-products in drinking water supplies: a fuzzy-based approach
    Sadiq, Rehan
    Rodriguez, Manuel J.
    Imran, Syed A.
    Najjaran, Homayoun
    STOCHASTIC ENVIRONMENTAL RESEARCH AND RISK ASSESSMENT, 2007, 21 (04) : 341 - 353
  • [33] A fuzzy-based credibility model to assess Web services trust under uncertainty
    Saoud, Zohra
    Faci, Noura
    Maamar, Zakaria
    Benslimane, Djamal
    JOURNAL OF SYSTEMS AND SOFTWARE, 2016, 122 : 496 - 506
  • [34] SUPPORTING THE SOLUTION SELECTION FOR A DIGITAL CITY WITH A FUZZY-BASED APPROACH
    Anthopoulos, Leonidas
    Gerogiannis, Vassilis C.
    Fitsilis, Panos
    KMIS 2011: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON KNOWLEDGE MANAGEMENT AND INFORMATION SHARING, 2011, : 355 - 358
  • [35] A Fuzzy-Based Greedy Behaviour Attack Detection Approach in VANETs
    Tayssir Ismail
    Nasreddine Hajlaoui
    Haifa Touati
    Mohamed Elhadad
    Paul Muhlethaler
    Leila Azouz Saidane
    SN Computer Science, 5 (7)
  • [36] A Fuzzy-Based Hybrid Approach for Estimating Interdisciplinary Learning Efficiency
    Chiang, Tzuping
    IEEE ACCESS, 2021, 9 : 143275 - 143283
  • [37] A fuzzy-based black-box approach to IGBT modelling
    Monti, A
    ICECS 96 - PROCEEDINGS OF THE THIRD IEEE INTERNATIONAL CONFERENCE ON ELECTRONICS, CIRCUITS, AND SYSTEMS, VOLS 1 AND 2, 1996, : 1147 - 1150
  • [38] Fuzzy-Based Approach for Context-aware Service Retrieval
    Madkour, Mohcine
    Maach, Abdelilah
    Driss, Elghanami
    Hasbi, Abderrahim
    2012 SECOND INTERNATIONAL CONFERENCE ON INNOVATIVE COMPUTING TECHNOLOGY (INTECH), 2012, : 396 - 401
  • [39] A fuzzy-based approach for optimal allocation and sizing of capacitor banks
    Ramadan, Husam A.
    Wahab, Mohamed A. A.
    El-Sayed, Abou-Hashema M.
    Hamada, Mohamed M.
    ELECTRIC POWER SYSTEMS RESEARCH, 2014, 106 : 232 - 240
  • [40] A hybrid fuzzy-based approach for identifying global logistics strategies
    Sheu, JB
    TRANSPORTATION RESEARCH PART E-LOGISTICS AND TRANSPORTATION REVIEW, 2004, 40 (01) : 39 - 61