Demonstration of the DPMF for Data Protection Analysis

L Sion, D Van Landuyt, P Dewitte… - 2023 ACM/IEEE …, 2023 - ieeexplore.ieee.org
L Sion, D Van Landuyt, P Dewitte, P Valcke, W Joosen
2023 ACM/IEEE International Conference on Model Driven Engineering …, 2023ieeexplore.ieee.org
Frameworks such as the EU General Data Protection Regulation (GDPR) call for Data
Protection Impact Assessment (DPIA), a systematic analysis of privacy risks at the basis of a
comprehensive and detailed characterization of the system. This is often a cumbersome
document-driven effort. The Data Protection Modeling Framework (DPMF) supports the
creation of a comprehensive model-based description of all data processing activities,
involved stakeholders, and affected data subjects, and implements a number of analysis …
Frameworks such as the EU General Data Protection Regulation (GDPR) call for Data Protection Impact Assessment (DPIA), a systematic analysis of privacy risks at the basis of a comprehensive and detailed characterization of the system. This is often a cumbersome document-driven effort. The Data Protection Modeling Framework (DPMF) supports the creation of a comprehensive model-based description of all data processing activities, involved stakeholders, and affected data subjects, and implements a number of analysis steps essential for meeting accountability requirements. In this paper, we demonstrate and highlight the benefits of using a single comprehensive DMPF data protection model and, more specifically, we argue that these models constitute sufficiently detailed and exhaustive views of the system to support: (i) explicit documentation and framing of legal argumentations (e.g., on the different processing purposes and compatibility assessments), (ii) automated and semi-automated verification of core data protection principles, and (iii) generation of appropriate accountability documentation at different levels of detail and customized for different stakeholders such as data subjects or supervisory authorities. The DPMF tool builds upon the Eclipse Modeling Framework (EMF) and its models are specified in a Sirius Viewpoint Specification. The VIATRA model query engine is used to efficiently traverse and analyze the created models for verification and document generation.
ieeexplore.ieee.org
Showing the best result for this search. See all results