loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Evangelia Vanezi ; Georgia Kapitsaki and Anna Philippou

Affiliation: Department of Computer Science, University of Cyprus, Cyprus

Keyword(s): GDPR Purpose, Privacy by Design, System Requirements, Use Case Diagrams, Sequence Diagrams.

Abstract: Protecting personal data within software systems is crucial, and as such, several privacy regulations have been enacted, one being the EU’s General Data Protection Regulation (GDPR). While GDPR emphasizes “Purpose Limitation” for rightful personal data handling, the concept of purpose lacks clarity in software development practices. Building on our previous work on DiálogoP, which supports the definition of formal processing purposes, this study introduces purpose-aware system requirements. We present AnálisisP, a methodology for integrating processing purposes into the software engineering requirements analysis phase and visual representations of these enhanced requirements by extending the Unified Modeling Language (UML) Use Case and Sequence diagrams. We show how our approach enables the integration of AnálisisP with DiálogoP towards formal models whose compliance with processing purposes is rigorously validated. Additionally, we showcase how the proposed extended diagrams assist in addressing further GDPR-related system design queries. (More)

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.223.241.5

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Vanezi, E.; Kapitsaki, G. and Philippou, A. (2024). What's Your Purpose? An Approach to Incorporating GDPR Purposes into Requirements Analysis. In Proceedings of the 10th International Conference on Information Systems Security and Privacy - ICISSP; ISBN 978-989-758-683-5; ISSN 2184-4356, SciTePress, pages 907-914. DOI: 10.5220/0012474400003648

@conference{icissp24,
author={Evangelia Vanezi. and Georgia Kapitsaki. and Anna Philippou.},
title={What's Your Purpose? An Approach to Incorporating GDPR Purposes into Requirements Analysis},
booktitle={Proceedings of the 10th International Conference on Information Systems Security and Privacy - ICISSP},
year={2024},
pages={907-914},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0012474400003648},
isbn={978-989-758-683-5},
issn={2184-4356},
}

TY - CONF

JO - Proceedings of the 10th International Conference on Information Systems Security and Privacy - ICISSP
TI - What's Your Purpose? An Approach to Incorporating GDPR Purposes into Requirements Analysis
SN - 978-989-758-683-5
IS - 2184-4356
AU - Vanezi, E.
AU - Kapitsaki, G.
AU - Philippou, A.
PY - 2024
SP - 907
EP - 914
DO - 10.5220/0012474400003648
PB - SciTePress