Authors:
Christophe Feltus
1
;
Eric Grandry
1
;
Thomas Kupper
2
and
Jean-Noël Colin
3
Affiliations:
1
Luxembourg Institute of Science and Technology (LIST), Luxembourg
;
2
Luxembourg Institute of Science and Technology (LIST) and University of Namur, Luxembourg
;
3
University of Namur, Belgium
Keyword(s):
Privacy Metamodel, Privacy Management, GDPR, General Data Protection Regulation, Business Ecosystem, Interconnected Society, Model, Service System, Model-driven Approach, Model Design.
Related
Ontology
Subjects/Areas/Topics:
Domain-Specific Modeling and Domain-Specific Languages
;
Languages, Tools and Architectures
;
Model-Driven Software Development
;
Reasoning about Models
;
Software Engineering
Abstract:
Protection of individuals with regard to the processing of personal data and the free movement of such data constitutes new challenges in terms of privacy management. Although this privacy management ought to be conducted in compliance with national and international regulation, for now we observe that no solution, model or method, fully consider and integrate these new regulations yet. Therefore, in this paper, we propose to tackle this problem through the definition of an expressive privacy metamodel which aims to represent and aggregate the concepts that are relevant to define and to deal with privacy issues, at an organizational level. Secondly, we discuss how this privacy metamodel may support and may help understanding the management of the privacy in enterprises involve in interconnected societies, by integrating the privacy metamodel with the systemic business ecosystem.