Data-CASE: Grounding Data Regulations for Compliant Data Processing Systems

Vishal Chakraborty, Stacy Ann-Elvy,Sharad Mehrotra,Faisal Nawab,Mohammad Sadoghi,Shantanu Sharma, Nalini Venkatsubhramanian, Farhan Saeed

CoRR(2023)

引用 0|浏览33
暂无评分
摘要
Data regulations, such as GDPR, are increasingly being adopted globally to protect against unsafe data management practices. Such regulations are, often ambiguous (with multiple valid interpretations) when it comes to defining the expected dynamic behavior of data processing systems. This paper argues that it is possible to represent regulations such as GDPR formally as invariants using a (small set of) data processing concepts that capture system behavior. When such concepts are grounded, i.e., they are provided with a single unambiguous interpretation, systems can achieve compliance by demonstrating that the system-actions they implement maintain the invariants (representing the regulations). To illustrate our vision, we propose Data-CASE, a simple yet powerful model that (a) captures key data processing concepts (b) a set of invariants that describe regulations in terms of these concepts. We further illustrate the concept of grounding using "deletion" as an example and highlight several ways in which end-users, companies, and software designers/engineers can use Data-CASE.
更多
查看译文
关键词
data-case regulations,compliant data-case processing
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要