A UML Profile for Privacy-Aware Data Lifecycle Models

被引:8
作者
Alshammari, Majed [1 ]
Simpson, Andrew [1 ]
机构
[1] Univ Oxford, Dept Comp Sci, Wolfson Bldg,Parks Rd, Oxford OX1 3QD, England
来源
COMPUTER SECURITY, 2017 | 2018年 / 10683卷
关键词
D O I
10.1007/978-3-319-72817-9_13
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Concerns over data-processing activities that may lead to privacy violations or harms have motivated the development of legal frameworks and standards to govern the processing of personal data. However, it is widely recognised that there is a disconnect between policy-makers' intentions and software engineering reality. The Abstract Personal Data Lifecycle (APDL) model, which was proposed to serve as an abstract model for personal data life-cycles, distinguishes between the main operations that can be performed on personal data during its life-cycle by outlining the various distinct activities for each operation. We show how the APDL can be represented in terms of the Unified Modeling Language (UML). The profile is illustrated via a realistic case study.
引用
收藏
页码:189 / 209
页数:21
相关论文
共 20 条
[1]  
[Anonymous], 2005, Secure Systems Development with UML, DOI DOI 10.1007/B137706
[2]  
[Anonymous], PERSONAL DATA MANAGE
[3]  
[Anonymous], EUR EL TOLL SERV EET
[4]  
[Anonymous], 2009, GEN ACC PRIV PRINC
[5]  
[Anonymous], P 5 ENISA ANN PRIV F
[6]  
[Anonymous], 2006, Creation of a global privacy standard
[7]  
[Anonymous], SECR ADV COMM AUT PE
[8]   A Privacy-Aware Conceptual Model for Handling Personal Data [J].
Antignac, Thibaud ;
Scandariato, Riccardo ;
Schneider, Gerardo .
LEVERAGING APPLICATIONS OF FORMAL METHODS, VERIFICATION AND VALIDATION: FOUNDATIONAL TECHNIQUES, PT I, 2016, 9952 :942-957
[9]  
Balasch Josep., 2010, USENIX SECURITY S, V10, P63, DOI DOI 10.5555/1929820.1929827
[10]  
Cavoukian A., 2009, Privacy by design. Take the challenge. Information and privacy commissioner of Ontario