A UML Profile for Privacy Enforcement

被引:4
作者
Canovas Izquierdo, Javier Luis [1 ]
Salas, Julian [1 ]
机构
[1] Univ Oberta Catalunya UOC, Internet Interdisciplinary Inst IN3, Barcelona, Spain
来源
SOFTWARE TECHNOLOGIES: APPLICATIONS AND FOUNDATIONS | 2018年 / 11176卷
关键词
UML; UML-profile; Privacy;
D O I
10.1007/978-3-030-04771-9_46
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Nowadays most software applications have to deal with personal data, specially with the emergence of Web-based applications, where user profile information has become one of their main assets. Due to regulation laws and to protect the privacy of users, customers and companies; most of this information is considered private, and therefore convenient ways to gather, process and store them have to be proposed. A common problem when modeling software systems is the lack of support to specify how to enforce privacy concerns in data models. Current approaches for modeling privacy cover high-level privacy aspects to describe what should be done with the data (e.g., elements to be private) instead of how to do it (e.g., which privacy enhancing technology to use); or propose access control policies, which may cover privacy only partially. In this paper we propose a profile to define and enforce privacy concerns in UML class diagrams. Models annotated with our profile can be used in model-driven methodologies to generate privacy-aware applications.
引用
收藏
页码:609 / 616
页数:8
相关论文
共 17 条
[11]  
Jurjens J., 2002, "UML" 2002 - Unified Modeling Language. Model Engineering, Concepts, and Tools. 5th International Conference. Proceedings (Lecture Notes in Computer Science Vol.2460), P412
[12]  
Mont MC, 2011, IFIP ADV INF COMM TE, V352, P258
[13]   Privacy-Aware Role-Based Access Control [J].
Ni, Qun ;
Bertino, Elisa ;
Lobo, Jorge ;
Brodie, Carolyn ;
Karat, Clare-Marie ;
Karat, John ;
Trombetta, Alberto .
ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2010, 13 (03)
[14]  
Salas J., 2018, MATH COMPUT SCI
[15]  
Samarati P., 1998, PROTECTING PRIVACY W
[16]   Big Data Privacy: Challenges to Privacy Principles and Models [J].
Soria-Comas, Jordi ;
Domingo-Ferrer, Josep .
DATA SCIENCE AND ENGINEERING, 2016, 1 (01) :21-28
[17]   Big Data Privacy and Anonymization [J].
Torra, Vicenc ;
Navarro-Arribas, Guillermo .
PRIVACY AND IDENTITY MANAGEMENT: FACING UP TO NEXT STEPS, 2016, 498 :15-26