Tool-Assisted Risk Analysis for Data Protection Impact Assessment - Privacy and Identity Management. Data for Better Living: AI and Privacy
Conference Papers Year : 2020

Tool-Assisted Risk Analysis for Data Protection Impact Assessment

Abstract

Unlike the classical risk analysis that protects the assets of the company in question, the GDPR protects data subject’s rights and freedoms, that is, the right to data protection and the right to have full control and knowledge about data processing concerning them. The GDPR articulates Data Protection Impact Assessment (DPIA) in article 35. DPIA is a risk-based process to enhance and demonstrate compliance with these requirements. We propose a methodology to conduct the DPIA in three steps and provide a supporting tool. In this paper, we particularly elaborate on risk analysis as a step of this methodology. The provided tool assists controllers to facilitate data subject’s rights and freedoms. The assistance that our tool provides differentiates our work from the existing ones.
Fichier principal
Vignette du fichier
496005_1_En_20_Chapter.pdf (493.1 Ko) Télécharger le fichier
Origin Files produced by the author(s)

Dates and versions

hal-03378957 , version 1 (14-10-2021)

Licence

Identifiers

Cite

Salimeh Dashti, Silvio Ranise. Tool-Assisted Risk Analysis for Data Protection Impact Assessment. 14th IFIP International Summer School on Privacy and Identity Management (Privacy and Identity), Aug 2019, Windisch, Switzerland. pp.308-324, ⟨10.1007/978-3-030-42504-3_20⟩. ⟨hal-03378957⟩
62 View
105 Download

Altmetric

Share

More