From GDPR to Privacy Design Patterns: The MATERIALIST Framework

被引:5
|
作者
Barletta, Vita [1 ]
Desolda, Giuseppe [1 ]
Gigante, Domenico [1 ]
Lanzilotti, Rosa [1 ]
Saltarella, Marco [1 ,2 ]
机构
[1] Univ Bari Aldo Moro, Comp Sci Dept, Via Edoardo Orabona 4, I-70125 Bari, BA, Italy
[2] FINCONS SpA, Via Orfeo Mazzitelli 258-E, I-70124 Bari, BA, Italy
来源
SECRYPT : PROCEEDINGS OF THE 19TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY | 2022年
关键词
Privacy Design Patterns; GDPR; ISO; 9241-210; Code Vulnerabilities;
D O I
10.5220/0011305900003283
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Privacy is becoming an increasingly important factor in software production. Indeed, besides increasing software quality, privacy is a mandatory aspect of national and supranational regulations like GDPR. However, several aspects like lack of knowledge on privacy and data protection regulations ambiguities limit the adoption of proper privacy implementation mechanisms during the software lifecycle. To fill this gap, this paper presents a framework, MATERIALIST, which aims to guide developers in choosing privacy design patterns to be used during software development. In particular, this paper focuses on the selection of privacy design patterns starting from the GDPR requirements. In this way, what is currently prescribed by GDPR in a non-technical way becomes a practical solution that software developers can adopt during their work.
引用
收藏
页码:642 / 648
页数:7
相关论文
共 50 条
  • [11] Designing privacy-friendly data repositories: a framework for a blockchain that follows the GDPR
    Al-Abdullah, Muhammad
    Alsmadi, Izzat
    AlAbdullah, Ruwaida
    Farkas, Bernie
    DIGITAL POLICY REGULATION AND GOVERNANCE, 2020, 22 (5-6) : 389 - 411
  • [12] Location Privacy in the Wake of the GDPR
    Georgiadou, Yola
    de By, Rolf A.
    Kounadi, Ourania
    ISPRS INTERNATIONAL JOURNAL OF GEO-INFORMATION, 2019, 8 (03)
  • [13] A Novel Privacy Framework for Secure M-health Applications: The Case of the GDPR
    Mustafa, Uzma
    Pflugel, Eckhard
    Philip, Nada
    PROCEEDINGS OF 2019 IEEE 12TH INTERNATIONAL CONFERENCE ON GLOBAL SECURITY, SAFETY AND SUSTAINABILITY (ICGS3-2019), 2019, : 226 - 234
  • [14] The Impact of Privacy Regulation on Web Traffic: Evidence From the GDPR
    Congiu, Raffaele
    Sabatino, Lorien
    Sapi, Geza
    INFORMATION ECONOMICS AND POLICY, 2022, 61
  • [15] Trends in Privacy Dialog Design after the GDPR: The Impact of Industry and Government Actions
    Warberg, Logan
    Lefrere, Vincent
    Cheyre, Cristobal
    Acquisti, Alessandro
    PROCEEDINGS OF THE 22ND WORKSHOP ON PRIVACY IN THE ELECTRONIC SOCIETY, WPES 2023, 2023, : 107 - 121
  • [16] A GDPR International Transfer Compliance Framework Based on an Extended Data Privacy Vocabulary (DPV)
    Hickey, David
    Brennan, Rob
    LEGAL KNOWLEDGE AND INFORMATION SYSTEMS, 2021, 346 : 161 - 170
  • [17] On GDPR Compliance of Companies' Privacy Policies
    Mueller, Nicolas M.
    Kowatsch, Daniel
    Debus, Pascal
    Mirdita, Donika
    Boettinger, Konstantin
    TEXT, SPEECH, AND DIALOGUE (TSD 2019), 2019, 11697 : 151 - 159
  • [18] FROM PRIVACY BY DESIGN TO DESIGN FOR PRIVACY
    Rostama, Guilda
    Bekhradi, Alexandre
    Yannou, Bernard
    DS87-5 PROCEEDINGS OF THE 21ST INTERNATIONAL CONFERENCE ON ENGINEERING DESIGN (ICED 17), VOL 5: DESIGN FOR X, DESIGN TO X, 2017, : 317 - 326
  • [19] A Tale of Two Privacy Laws: The GDPR and the International Right to Privacy
    Krishnamurthy, Vivek
    AJIL UNBOUND, 2020, 114 : 26 - 30
  • [20] The effect of privacy regulation on the data industry: empirical evidence from GDPR
    Aridor, Guy
    Che, Yeon-Koo
    Salz, Tobias
    RAND JOURNAL OF ECONOMICS, 2023, 54 (04): : 695 - 730