发表机构
Blekinge Institute of Technology; Birmingham City University; Tallinn University of Technology; University of Kent(布莱金格理工学院; 伯明翰城市大学; 塔林科技大学; 肯特大学)
机构由 AI 辅助整理,请以论文原文为准。AI 中文总结
本文分析公共数据交换基础设施(如X-Road)中数据使用控制的挑战与需求,提出跨学科概念愿景,以实现隐私设计合规。
AI 中文摘要
公共数据交换基础设施(如X-Road)对于数据密集型数字公共服务和欧盟数字经济至关重要。其下一代需要先进的数据使用控制(DUC)机制,以满足新兴需求(包括隐私设计),从而缓解大规模自动化数据交换中固有的隐私威胁。尽管各学科内部的研究已涉及许多新兴需求,但在学科交叉处出现了重大的实际挑战。本文通过分析方式审视了公共数据交换基础设施中数据使用控制的实际挑战和需求。我们通过一个跨学科视角考察爱沙尼亚X-Road系统及新兴用例,该视角整合了使用控制的形式化验证与监控、需求工程和数字治理研究。我们制定了关键需求,并提出了在公共数据交换基础设施中发展使用控制的概念愿景,以使未来的数字治理系统能够通过设计满足隐私要求。
英文摘要
Public data exchange infrastructures, such as X-Road, are essential to data-intensive digital public services and the EU digital economy. Their next generation requires advanced data usage control (DUC) mechanisms that address emerging requirements, including privacy by design, to mitigate privacy threats inherent in large-scale automated data exchange. Although research within the individual disciplines already addresses many of the emerging requirements, significant practical challenges arise at the intersection of the disciplines. This paper analytically examines the practical challenges and requirements of data usage control in public data exchange infrastructures. We examine the Estonian X-Road system and emerging use cases through an interdisciplinary lens that integrates formal verification and monitoring of usage control, requirements engineering, and digital governance research. We formulate key requirements and propose a conceptual vision for developing usage control in public data-exchange infrastructures to enable future digital-governance systems to comply with privacy requirements by design.