Exploring the Relationships between Privacy by Design Schemes and Privacy Laws: A Comparative Analysis

10/06/2022
by   Atheer Aljeraisy, et al.
0

Internet of Things (IoT) applications have the potential to derive sensitive information about individuals. Therefore, developers must exercise due diligence to make sure that data are managed according to the privacy regulations and data protection laws. However, doing so can be a difficult and challenging task. Recent research has revealed that developers typically face difficulties when complying with regulations. One key reason is that, at times, regulations are vague, and could be challenging to extract and enact such legal requirements. In our research paper, we have conducted a systematic analysis of the data protection laws that are used across different continents, namely: (i) General Data Protection Regulations (GDPR), (ii) the Personal Information Protection and Electronic Documents Act (PIPEDA), (iii) the California Consumer Privacy Act (CCPA), (iv) Australian Privacy Principles (APPs), and (v) New Zealand's Privacy Act 1993. In this technical report, we presented the detailed results of the conducted framework analysis method to attain a comprehensive view of different data protection laws and highlighted the disparities, in order to assist developers in adhering to the regulations across different regions, along with creating a Combined Privacy Law Framework (CPLF). After that, we gave an overview of various Privacy by Design (PbD) schemes developed previously by different researchers. Then, the key principles and individuals' rights of the CPLF were mapped with the privacy principles, strategies, guidelines, and patterns of the Privacy by Design (PbD) schemes in order to investigate the gaps in existing schemes.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/04/2022

Privacy-Patterns for IoT Application Developers

Designing Internet of things (IoT) applications (apps) is challenging du...
research
07/19/2021

The approach with the Data Protection and Privacy Relationships Model (DAPPREMO)

We describe the Data Protection and Privacy Relationships Model (DAPPREM...
research
08/25/2018

Privacy in Internet of Things: from Principles to Technologies

Ubiquitous deployment of low-cost smart devices and widespread use of hi...
research
05/15/2022

Regulating Facial Processing Technologies: Tensions Between Legal and Technical Considerations in the Application of Illinois BIPA

Harms resulting from the development and deployment of facial processing...
research
04/24/2020

Predicted by Orwell: A discourse on the gradual shift in electronic surveillance law

At some point in the history of most nations, one or more events of ille...
research
12/08/2020

Class Clown: Data Redaction in Machine Unlearning at Enterprise Scale

Individuals are gaining more control of their personal data through rece...
research
06/28/2022

Creation and Analysis of an International Corpus of Privacy Laws

The landscape of privacy laws and regulations around the world is comple...

Please sign up or login with your details

Forgot password? Click here to reset