Publication Date:
2020
abstract:
The General Data Protection Regulation (GDPR) defines the principle of Integrity and Confidentiality, and implicitly calls for the adoption of authorization systems for regulating the access to personal data. We present here a process development life cycle for the specification, deployment and testing of authorization systems. The life cycle targets legal aspects, such as the data usage purpose, the user consent and the data retention period. We also present its preliminary architecture where available solutions for extracting, implementing and testing the data protection regulation are integrated. The objective is to propose for the first time a unique improved solution for addressing different aspects of the GDPR development and enforcement along all the life cycle phases.
Iris type:
04.01 Contributo in Atti di convegno
Keywords:
Life cycle; Authorization systems development; GDPR perspective
List of contributors:
Daoudagh, Said; Marchetti, Eda
Book title:
Italian Conference on Cyber Security.
Published in: