Towards Formal Modeling of Privacy Policies of Enterprises

被引:0
|
作者
Manna, Asmita [1 ]
Sengupta, Anirban [2 ]
Mazumdar, Chandan [2 ]
机构
[1] Jadavpur Univ, Dept Comp Sci & Engn, Kolkata, India
[2] Jadavpur Univ, Ctr Distributed Comp, Kolkata, India
关键词
privacy requirement; privacy policy; privacy clause; formal representation;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Collection, storage and processing of personally identifiable information and other sensitive information by enterprises are leading to privacy concerns for individuals, in particular, and society, in general. As privacy has been declared as a fundamental right in many countries, authorities are implementing privacy laws and guidelines to be followed by enterprises. Similarly, enterprises are also designing their own privacy policies to assure their clients about privacy concerns. In this paper, privacy has been considered as a business requirement rather than security requirement, and a methodology for formal representation of privacy policies has been presented. Privacy policies of different types of enterprises have been analysed and common privacy clauses have been identified from those policies. The related vocabularies have been defined and clauses have been expressed using a formal language. Finally, a case study has been presented to illustrate the usefulness of this approach.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Formal Modeling towards the Context Free Grammar
    Zafar, Nazir Ahmad
    Khan, Sher Afzal
    Alhumaidan, Fahad
    Kamran, Bushra
    LIFE SCIENCE JOURNAL-ACTA ZHENGZHOU UNIVERSITY OVERSEAS EDITION, 2012, 9 (04): : 988 - 993
  • [22] PPChecker: Towards Accessing the Trustworthiness of Android Apps' Privacy Policies
    Yu, Le
    Luo, Xiapu
    Chen, Jiachi
    Zhou, Hao
    Zhang, Tao
    Chang, Henry
    Leung, Hareton K. N.
    IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 2021, 47 (02) : 221 - 242
  • [23] Towards Change Detection in Privacy Policies with Natural Language Processing
    Adhikari, Andrick
    Dewri, Rinku
    2021 18TH INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2021,
  • [24] Legally Binding but Unfair? Towards Assessing Fairness of Privacy Policies
    Freiberger, Vincent
    Buchmann, Erik
    PROCEEDINGS OF THE 10TH ACM INTERNATIONAL WORKSHOP ON SECURITY AND PRIVACY ANALYTICS, IWSPA 2024, 2024, : 15 - 22
  • [25] Towards client privacy policy enforcement for Small-Medium Enterprises
    Khurat, Assadarat
    Abendroth, Joerg
    Bracher, Shane
    Krishnan, Padmanabhan
    2007 INAUGURAL IEEE INTERNATIONAL CONFERENCE ON DIGITAL ECOSYSTEMS AND TECHNOLOGIES, 2007, : 369 - +
  • [26] Towards privacy-aware software design in small and medium enterprises
    Campanile, Lelio
    Iacono, Mauro
    Mastroianni, Michele
    2022 IEEE INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, INTL CONF ON CLOUD AND BIG DATA COMPUTING, INTL CONF ON CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/CBDCOM/CYBERSCITECH), 2022, : 256 - 263
  • [27] Towards Privacy-Aware Smart Buildings: Capturing, Communicating, and Enforcing Privacy Policies and Preferences
    Pappachan, Primal
    Degeling, Martin
    Yus, Roberto
    Das, Anupam
    Bhagavatula, Sruti
    Melicher, William
    Naeini, Pardis Emami
    Zhang, Shikun
    Bauer, Lujo
    Kobsa, Alfred
    Mehrotra, Sharad
    Sadeh, Norman
    Venkatasubramanian, Nalini
    2017 IEEE 37TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS WORKSHOPS (ICDCSW), 2017, : 193 - 198
  • [28] On parametric obligation policies: Enabling privacy-aware information lifecycle management in enterprises
    Mont, Marco Casassa
    Beato, Fpe
    EIGHTH IEEE INTERNATIONAL WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS - PROCEEDINGS, 2007, : 51 - +
  • [29] Poporo: A Formal Methods Tool for Fast-Checking of Social Network Privacy Policies
    Catano, Nestor
    Hanvey, Sorren
    Rueda, Camilo
    OBJECTS, MODELS, COMPONENTS, PATTERNS, TOOLS 2012, 2012, 7304 : 9 - 16
  • [30] TOWARDS FORMAL SECURITY ANALYSIS OF DECENTRALIZED INFORMATION FLOW CONTROL POLICIES
    Yang, Zhi
    Yin, Lihua
    Jin, Shuyuan
    Duan, MiYi
    INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2012, 8 (11): : 7969 - 7981