Incorporating privacy requirements into the system design process - The PriS conceptual framework

被引:13
|
作者
Kavakli, Evangelia
Kalloniatis, Christos [1 ]
Loucopoulos, Pericles
Gritzalis, Stefanos
机构
[1] Univ Aegean, Dept Cultural Technol & Commun, Mitilini, Greece
[2] Univ Manchester, Sch Informat, Manchester, Lancs, England
[3] Univ Aegean, Dept Informat & Commun Syst Engn, Samos, Greece
关键词
privacy; systems software;
D O I
10.1108/10662240610656483
中图分类号
F [经济];
学科分类号
02 ;
摘要
Purpose - To present a new methodology for incorporating privacy requirements into the system design process called PriS, and describe its applicability in the e-VOTE system for presenting methodology's way-of-working. Design/methodology/approach - PriS is a requirement engineering methodology focused on privacy issues. It provides a set of concepts for modelling privacy requirements (anonymity, pseudonymity, unlinkability and unobservability) in the organisation domain and a systematic way-of-working for translating these requirements into system models. The conceptual model used in PriS is based on the Enterprise Knowledge Development (EKD) framework. PriS models privacy requirements as a special type of goal. Findings - Based on the analysis of a number of well-known privacy-enhancing technologies as well as of existing security requirement engineering methodologies, this paper pinpoints the gap between system design methodologies and technological solutions. To this end, PriS is suggested, with a view to providing a methodological framework for matching privacy-related requirements with the proper implementation techniques. Originality/value - This paper proposes a new methodology for addressing privacy requirements during the design process. It guides developers to choose the most appropriate implementation techniques for realising the identified privacy issues. PriS methodology has a high degree of applicability on Internet systems that wish to provide services that ensure users privacy, such as anonymous browsing, untraceable transactions, etc.
引用
收藏
页码:140 / 158
页数:19
相关论文
共 50 条
  • [1] Addressing privacy requirements in system design: the PriS method
    Kalloniatis, Christos
    Kavakli, Evangelia
    Gritzalis, Stefanos
    REQUIREMENTS ENGINEERING, 2008, 13 (03) : 241 - 255
  • [2] Addressing privacy requirements in system design: the PriS method
    Christos Kalloniatis
    Evangelia Kavakli
    Stefanos Gritzalis
    Requirements Engineering, 2008, 13 : 241 - 255
  • [3] Using privacy process patterns for incorporating privacy requirements into the system design process
    Kalloniatis, Christos
    Kavakh, Evangelia
    Gritzalis, Stefanos
    ARES 2007: SECOND INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2007, : 1009 - +
  • [4] A soft computing approach for privacy requirements engineering: The PriS framework
    Kalloniatis, Christos
    Belsis, Petros
    Gritzalis, Stefanos
    APPLIED SOFT COMPUTING, 2011, 11 (07) : 4341 - 4348
  • [5] TOWARDS A FRAMEWORK INCORPORATING FUNCTIONAL AND NON FUNCTIONAL REQUIREMENTS FOR DATAWAREHOUSE CONCEPTUAL DESIGN
    El Mohajir, Mohammed
    Jellouli, Ismail
    IADIS-INTERNATIONAL JOURNAL ON COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2014, 9 (01): : 43 - 54
  • [6] Requirements and conceptual design for hybrid process plants
    Markaj, Artan
    Fay, Alexander
    Hoernicke, Mario
    Schoch, Nicolai
    Stark, Katharina
    2021 26TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2021,
  • [7] Conceptual Framework for the Interoperability Requirements of Collaborative Planning Process
    Alemany, Maria M. E.
    Alarcon, Faustino
    Lario, Francisco C.
    Poler, Raul
    ENTERPRISE INTEROPERABILITY IV: MAKING THE INTERNET OF THE FUTURE FOR THE FUTURE OF ENTERPRISE, 2010, : 25 - 34
  • [8] A framework for managing conceptual design process
    Eilouti, Buthayna
    ART DESIGN & COMMUNICATION IN HIGHER EDUCATION, 2021, 20 (02) : 223 - 242
  • [9] A conceptual framework for the process system synthesis and design congruent with corporate strategy
    Umeda, T
    INDUSTRIAL & ENGINEERING CHEMISTRY RESEARCH, 2004, 43 (14) : 3827 - 3837
  • [10] Unifying and incorporating functional and non functional requirements in datawarehouse conceptual design
    El Mohajir, Mohammed
    Latrache, Amal
    2012 COLLOQUIUM ON INFORMATION SCIENCE AND TECHNOLOGY (CIST'12), 2012, : 49 - 57