Multi-level privacy analysis of business processes: the Pleak toolset

被引:0
|
作者
Marlon Dumas
Luciano García-Bañuelos
Joosep Jääger
Peeter Laud
Raimundas Matulevičius
Alisa Pankova
Martin Pettai
Pille Pullonen-Raudvere
Aivo Toots
Reedik Tuuling
Maksym Yerokhin
机构
[1] University of Tartu,
[2] Cybernetica AS,undefined
[3] Tecnologico de Monterrey,undefined
关键词
Business process management; Business process modeling; Privacy-enhancing technologies; Differential privacy; Privacy analysis;
D O I
暂无
中图分类号
学科分类号
摘要
Privacy regulations, such as GDPR, impose strict requirements to organizations that store and process private data. Privacy-enhancing technologies (PETs), such as secure multi-party computation and differential privacy, provide mechanisms to perform computations over private data and to protect the disclosure of private data and derivatives thereof. When PETs are used to protect individual computations or disclosures, their privacy properties and their effect on the utility of the disclosed data can be straightforwardly asserted. However, when multiple PETs are used as part of a complex and possibly inter-organizational business process, it becomes non-trivial for analysts to fully grasp the guarantees that the combined set of PETs provide overall. This article presents a multi-level approach to analyze privacy properties of business processes that rely on PETs to protect private data. The approach is embodied in an open-source toolset, Pleak , that allows analysts to capture privacy-enhanced business process models and to characterize and quantify to what extent the outputs of a process leak information about its inputs. Pleak incorporates an extensible set of analysis plugins, which enable users to inspect potential leakages at multiple levels of detail.
引用
收藏
页码:183 / 203
页数:20
相关论文
共 50 条
  • [1] Multi-level privacy analysis of business processes: the Pleak toolset
    Dumas, Marlon
    Garcia-Banuelos, Luciano
    Jaager, Joosep
    Laud, Peeter
    Matulevicius, Raimundas
    Pankova, Alisa
    Pettai, Martin
    Pullonen-Raudvere, Pille
    Toots, Aivo
    Tuuling, Reedik
    Yerokhin, Maksym
    INTERNATIONAL JOURNAL ON SOFTWARE TOOLS FOR TECHNOLOGY TRANSFER, 2022, 24 (02) : 183 - 203
  • [2] Business Process Privacy Analysis in PLEAK
    Toots, Aivo
    Tuuling, Reedik
    Yerokhin, Maksym
    Dumas, Marlon
    Garcia-Banuelos, Luciano
    Laud, Peeter
    Matulevicius, Raimundas
    Pankova, Alisa
    Pettai, Martin
    Pullonen, Pille
    Tom, Jake
    FUNDAMENTAL APPROACHES TO SOFTWARE ENGINEERING (FASE 2019), 2019, 11424 : 306 - 312
  • [3] Business Process Privacy Analysis in Pleak: (Extended Abstract)
    Toots A.
    Tuuling R.
    Yerokhin M.
    Dumas M.
    García-Bañuelos L.
    Laud P.
    Matulevičius R.
    Pankova A.
    Pettai M.
    Pullonen P.
    Tom J.
    Informatik-Spektrum, 2019, 42 (05) : 354 - 355
  • [4] Dual Deep Modeling of Business Processes A Contribution to the Multi-Level Process Challenge
    Neumayr, Bernd
    Schuetz, Christoph G.
    Schrefl, Michael
    ENTERPRISE MODELLING AND INFORMATION SYSTEMS ARCHITECTURES-AN INTERNATIONAL JOURNAL, 2022, 17 : 1 - 31
  • [5] Multi-level Team Assignment in Social Business Processes: An Algorithm and Simulation Study
    Rong Liu
    Akhil Kumar
    Juhnyoung Lee
    Information Systems Frontiers, 2022, 24 : 1949 - 1969
  • [6] Multi-level Team Assignment in Social Business Processes: An Algorithm and Simulation Study
    Liu, Rong
    Kumar, Akhil
    Lee, Juhnyoung
    INFORMATION SYSTEMS FRONTIERS, 2022, 24 (06) : 1949 - 1969
  • [7] Multi-level analysis
    Lydersen, Stian
    TIDSSKRIFT FOR DEN NORSKE LAEGEFORENING, 2024, 144 (12)
  • [8] Multi-level Synthesis of Chemical Processes
    Montolio-Rodriguez, Daniel
    Linke, David
    Linke, Patrick
    DESIGN FOR ENERGY AND THE ENVIRONMENT, 2010, : 823 - 830
  • [9] Mindfulness in the business context: a multi-level model
    Esteves, Lurdes
    Franco, Mario
    Rodrigues, Margarida
    INTERNATIONAL JOURNAL OF ORGANIZATIONAL ANALYSIS, 2024,
  • [10] Multi-level Autonomic Business Process Management
    Oliveira, Karolyne
    Castro, Jaelson
    Espana, Sergio
    Pastor, Oscar
    ENTERPRISE, BUSINESS-PROCESS AND INFORMATION SYSTEMS MODELING, BPMDS 2013, 2013, 147 : 184 - 198