Necessary processing of personal data: The need-to-know principle and processing data from the new German identity card

6Citations
Citations of this article
9Readers
Mendeley users who have this article in their library.

This article is free to access.

Abstract

The new German electronic identity card will allow service providers to access personal data stored on the card. This imposes a new quality of data processing as these data have been governmentally verified. According to European privacy legislation any data processing must be justified in the sense that the personal data are necessary for the stipulated purpose. This need-to-know principle is a legal requirement for accessing the data stored on the eID card. This text suggests a model as basis for deriving general guidelines and aids further discussion on the question whether collecting personal data is necessary for certain business cases. Beyond the scope of the German eID card the extent and boundaries of what can be accepted as necessary data processing poses questions on a European level as well. © 2011 IFIP International Federation for Information Processing.

Cite

CITATION STYLE

APA

Zwingelberg, H. (2011). Necessary processing of personal data: The need-to-know principle and processing data from the new German identity card. In IFIP Advances in Information and Communication Technology (Vol. 352 AICT, pp. 151–163). Springer New York LLC. https://doi.org/10.1007/978-3-642-20769-3_13

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free