Tool-Assisted Risk Analysis for Data Protection Impact Assessment - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2020

Tool-Assisted Risk Analysis for Data Protection Impact Assessment

Résumé

Unlike the classical risk analysis that protects the assets of the company in question, the GDPR protects data subject’s rights and freedoms, that is, the right to data protection and the right to have full control and knowledge about data processing concerning them. The GDPR articulates Data Protection Impact Assessment (DPIA) in article 35. DPIA is a risk-based process to enhance and demonstrate compliance with these requirements. We propose a methodology to conduct the DPIA in three steps and provide a supporting tool. In this paper, we particularly elaborate on risk analysis as a step of this methodology. The provided tool assists controllers to facilitate data subject’s rights and freedoms. The assistance that our tool provides differentiates our work from the existing ones.
Fichier principal
Vignette du fichier
496005_1_En_20_Chapter.pdf (493.1 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

hal-03378957 , version 1 (14-10-2021)

Licence

Paternité

Identifiants

Citer

Salimeh Dashti, Silvio Ranise. Tool-Assisted Risk Analysis for Data Protection Impact Assessment. 14th IFIP International Summer School on Privacy and Identity Management (Privacy and Identity), Aug 2019, Windisch, Switzerland. pp.308-324, ⟨10.1007/978-3-030-42504-3_20⟩. ⟨hal-03378957⟩
33 Consultations
51 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More