From GDPR to Privacy Design Patterns: The MATERIALIST Framework

被引:5
|
作者
Barletta, Vita [1 ]
Desolda, Giuseppe [1 ]
Gigante, Domenico [1 ]
Lanzilotti, Rosa [1 ]
Saltarella, Marco [1 ,2 ]
机构
[1] Univ Bari Aldo Moro, Comp Sci Dept, Via Edoardo Orabona 4, I-70125 Bari, BA, Italy
[2] FINCONS SpA, Via Orfeo Mazzitelli 258-E, I-70124 Bari, BA, Italy
来源
SECRYPT : PROCEEDINGS OF THE 19TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY | 2022年
关键词
Privacy Design Patterns; GDPR; ISO; 9241-210; Code Vulnerabilities;
D O I
10.5220/0011305900003283
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Privacy is becoming an increasingly important factor in software production. Indeed, besides increasing software quality, privacy is a mandatory aspect of national and supranational regulations like GDPR. However, several aspects like lack of knowledge on privacy and data protection regulations ambiguities limit the adoption of proper privacy implementation mechanisms during the software lifecycle. To fill this gap, this paper presents a framework, MATERIALIST, which aims to guide developers in choosing privacy design patterns to be used during software development. In particular, this paper focuses on the selection of privacy design patterns starting from the GDPR requirements. In this way, what is currently prescribed by GDPR in a non-technical way becomes a practical solution that software developers can adopt during their work.
引用
收藏
页码:642 / 648
页数:7
相关论文
共 50 条
  • [31] Privacy by Design Enterprise Architecture Patterns
    Coelho, Maria Dias
    Vasconcelos, Andre
    Sousa, Pedro
    ICEIS: PROCEEDINGS OF THE 23RD INTERNATIONAL CONFERENCE ON ENTERPRISE INFORMATION SYSTEMS - VOL 2, 2021, : 743 - 750
  • [32] Promise not fulfilled: FinTech, data privacy, and the GDPR
    Gregor Dorfleitner
    Lars Hornuf
    Julia Kreppmeier
    Electronic Markets, 2023, 33
  • [33] Promise not fulfilled: FinTech, data privacy, and the GDPR
    Dorfleitner, Gregor
    Hornuf, Lars
    Kreppmeier, Julia
    ELECTRONIC MARKETS, 2023, 33 (01)
  • [34] Development of Privacy Design Patterns Based on Privacy Principles and UML
    Suphakul, Theeraporn
    Senivongse, Twittie
    2017 18TH IEEE/ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING AND PARALLEL/DISTRIBUTED COMPUTING (SNDP 2017), 2017, : 369 - 375
  • [35] Design and Development of Policy Enforcement for the Privacy by Design Framework
    Lescisin, Michael
    Mahmoud, Qusay H.
    2023 20TH ACS/IEEE INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS, AICCSA, 2023,
  • [36] Privacy as a Service (PraaS): A Conceptual Model of GDPR to Construct Privacy Services
    Roubtsova, Ella
    Bosua, Rachelle
    BUSINESS MODELING AND SOFTWARE DESIGN (BMSD 2021), 2021, 422 : 170 - 189
  • [37] Automatic Assessment of Privacy Policies under the GDPR
    Sanchez, David
    Viejo, Alexandre
    Batet, Montserrat
    APPLIED SCIENCES-BASEL, 2021, 11 (04): : 1 - 11
  • [38] Regulating Privacy Online: An Economic Evaluation of the GDPR
    Goldberg, Samuel G.
    Johnson, Garrett A.
    Shriver, Scott K.
    AMERICAN ECONOMIC JOURNAL-ECONOMIC POLICY, 2024, 16 (01) : 325 - 358
  • [39] The conflict between privacy and scientific research in the GDPR
    Meszaros, Janos
    PROCEEDINGS OF THE 2018 PACIFIC NEIGHBORHOOD CONSORTIUM ANNUAL CONFERENCE AND JOINT MEETINGS (PNC) - HUMAN RIGHTS IN CYBERSPACE, 2018, : 94 - 99
  • [40] GDPR Transparency Requirements and Data Privacy Vocabularies
    Schlehahn, Eva
    Wenning, Rigo
    PRIVACY AND IDENTITY MANAGEMENT: FAIRNESS, ACCOUNTABILITY, AND TRANSPARENCY IN THE AGE OF BIG DATA, 2019, 547 : 95 - 113