Towards Formal Modeling of Privacy Policies of Enterprises

被引:0
|
作者
Manna, Asmita [1 ]
Sengupta, Anirban [2 ]
Mazumdar, Chandan [2 ]
机构
[1] Jadavpur Univ, Dept Comp Sci & Engn, Kolkata, India
[2] Jadavpur Univ, Ctr Distributed Comp, Kolkata, India
关键词
privacy requirement; privacy policy; privacy clause; formal representation;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Collection, storage and processing of personally identifiable information and other sensitive information by enterprises are leading to privacy concerns for individuals, in particular, and society, in general. As privacy has been declared as a fundamental right in many countries, authorities are implementing privacy laws and guidelines to be followed by enterprises. Similarly, enterprises are also designing their own privacy policies to assure their clients about privacy concerns. In this paper, privacy has been considered as a business requirement rather than security requirement, and a methodology for formal representation of privacy policies has been presented. Privacy policies of different types of enterprises have been analysed and common privacy clauses have been identified from those policies. The related vocabularies have been defined and clauses have been expressed using a formal language. Finally, a case study has been presented to illustrate the usefulness of this approach.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] Formal modeling and automatic enforcement of Bring Your Own Device policies
    Alessandro Armando
    Gabriele Costa
    Alessio Merlo
    Luca Verderame
    International Journal of Information Security, 2015, 14 : 123 - 140
  • [42] A formal modeling and analysis approach for access control rules, policies, and their combinations
    Karimi, Vahid R.
    Alencar, Paulo S. C.
    Cowan, Donald D.
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2017, 16 (01) : 43 - 74
  • [43] A formal modeling and analysis approach for access control rules, policies, and their combinations
    Vahid R. Karimi
    Paulo S. C. Alencar
    Donald D. Cowan
    International Journal of Information Security, 2017, 16 : 43 - 74
  • [44] NATIONAL TAX POLICIES TOWARDS PRODUCT-INNOVATING MULTINATIONAL-ENTERPRISES
    HUIZINGA, H
    JOURNAL OF PUBLIC ECONOMICS, 1991, 44 (01) : 1 - 14
  • [45] Towards accountable management of identity and privacy: Sticky policies and enforceable tracing services
    Mont, MC
    Pearson, S
    Bramhall, P
    14TH INTERNATIONAL WORKSHOP ON DATABASE AND EXPERT SYSTEMS APPLICATIONS, PROCEEDINGS, 2003, : 377 - 382
  • [47] An MDA approach towards integrating formal and informal modeling languages
    Kim, SK
    Burger, D
    Carrington, D
    FM 2005: FORMAL METHODS, PROCEEDINGS, 2005, 3582 : 448 - 464
  • [48] Towards Facilitating the Exploration of Informal Concepts in Formal Modeling Tools
    Gogolla, Martin
    Clariso, Robert
    Selic, Bran
    Cabot, Jordi
    24TH ACM/IEEE INTERNATIONAL CONFERENCE ON MODEL-DRIVEN ENGINEERING LANGUAGES AND SYSTEMS COMPANION (MODELS-C 2021), 2021, : 246 - 250
  • [49] Towards Probabilistic Formal Modeling of Robotic Cell Injection Systems
    Sardar, Muhammad Usama
    Hasan, Osman
    ELECTRONIC PROCEEDINGS IN THEORETICAL COMPUTER SCIENCE, 2017, (244): : 271 - 282
  • [50] Towards a Modeling and Analysis Framework for Privacy-aware Systems
    Colombo, Pietro
    Ferrari, Elena
    PROCEEDINGS OF 2012 ASE/IEEE INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY, RISK AND TRUST AND 2012 ASE/IEEE INTERNATIONAL CONFERENCE ON SOCIAL COMPUTING (SOCIALCOM/PASSAT 2012), 2012, : 81 - 90