Towards a Semantic Specification for GDPR Data Breach Reporting

2Citations
Citations of this article
11Readers
Mendeley users who have this article in their library.

Abstract

Data breaches and other security incidents are an emerging challenge in the digital era. The General Data Protection Regulation (GDPR) requires conducting an impact assessment to understand the effects of the breach, and to then notify authorities and affected individuals in certain cases. Communication of this information typically takes place via conventional mediums such as emails and forms on the websites of authorities, and is a manual process. To assist in developing tools to support data breach investigations, and to enable automated systems for assisting with breach assessments and GDPR compliance, we present a machine-readable specification for the representation and documentation of information related to data breaches and their communications. The specification uses current requirements from the GDPR obligations and authoritative guidelines. To represent information, it extends the Data Privacy Vocabulary (DPV) by introducing new concepts required for data breach relevant information.

Cite

CITATION STYLE

APA

Pandit, H. J., Ryan, P., Krog, G. P., Crane, M., & Brennan, R. (2023). Towards a Semantic Specification for GDPR Data Breach Reporting. In Frontiers in Artificial Intelligence and Applications (Vol. 379, pp. 131–136). IOS Press BV. https://doi.org/10.3233/FAIA230956

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free