Using Organisational Safeguards to Make Justifiable Decisions when Processing Personal Data

Martin S Olivier

2003 / 2004

Citation information

MS Olivier, "Using Organisational Safeguards to Make Justifiable Decisions when Processing Personal Data," South African Computer Journal, 33, 78-88, 2004

or

MS Olivier, "Using Organisational Safeguards to Make Justifiable Decisions when Processing Personal Data", in JHP Eloff, P Kotzé, AP Engelbrecht and MM Eloff (eds.), IT Research in Developing Countries (SAICSIT 2003), Sandton, South Africa, 275-284, September 2003

Abstract

Privacy-enhancing technologies can be used to enhance the privacy of individuals who interact with information processing systems. This paper considers such technologies that can be used by the organisation to safeguard personal information it processes. The paper focuses on how access control could be used to protect the individual against misuse of personal data inside the organisation. More specifically the paper considers how such a privacy-enhancing technology can make a just choice when deciding whether an access request to personal data should be allowed or not.

Access control decisions in this paper are based on the regulations that govern the interaction, the organisational policies that apply and the individual's privacy preferences.

The proposed model forms part of the Organisational Safeguards Layer of the Layered Privacy Architecture (LaPA) proposed earlier.

Keywords

Personal privacy, privacy architecture, privacy-enhancing technologies

BibTeX entry

@ARTICLE(privosl2,
  AUTHOR={Martin S Olivier},
  TITLE={Using Organisational Safeguards to Make Justifiable Decisions 
         when Processing Personal Data},
  JOURNAL={South African Computer Journal},
  VOLUME={33},
  PAGES={78--88},
  YEAR={2004} )

or

@INPROCEEDINGS(privosl,
  AUTHOR={Martin S Olivier},
  TITLE={Using Organisational Safeguards to Make Justifiable Decisions 
         when Processing Personal Data},
  BOOKTITLE={IT Research in Developing Countries (SAICSIT 2003)},
  EDITOR={Jan H P Eloff and Paula Kotz\'e and Andries P Engelbrecht and 
          Mariki M Eloff},
  PAGES={275--284},
  MONTH={September},
  YEAR={2003},
  ADDRESS={Sandton, South Africa} )

Full text

The full text may be downloaded from http://mo.co.za/open/privosl2.pdf (PDF, 117K) (journal version) or http://mo.co.za/open/privosl.pdf (PDF, 109K) (conference version).


[Publications] [Home]
Page maintained by Martin Olivier
Last update: 27 November 2004