Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain

With the growing awareness regarding the importance of personal data protection, many countries have established laws and regulations to ensure data privacy and are supervising managements to comply with them. Although various studies have suggested compliance methods of the general data protection...

Descripción completa

Guardado en:
Detalles Bibliográficos
Autores principales: Sung-Soo Jung, Sang-Joon Lee, Ieck-Chae Euom
Formato: article
Lenguaje:EN
Publicado: MDPI AG 2021
Materias:
T
Acceso en línea:https://doaj.org/article/ffb98ef72dfa4b2b8187241f13268bec
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
id oai:doaj.org-article:ffb98ef72dfa4b2b8187241f13268bec
record_format dspace
spelling oai:doaj.org-article:ffb98ef72dfa4b2b8187241f13268bec2021-11-25T16:31:53ZDelegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain10.3390/app1122105742076-3417https://doaj.org/article/ffb98ef72dfa4b2b8187241f13268bec2021-11-01T00:00:00Zhttps://www.mdpi.com/2076-3417/11/22/10574https://doaj.org/toc/2076-3417With the growing awareness regarding the importance of personal data protection, many countries have established laws and regulations to ensure data privacy and are supervising managements to comply with them. Although various studies have suggested compliance methods of the general data protection regulation (GDPR) for personal data, no method exists that can ensure the reliability and integrity of the personal data processing request records of a data subject to enable its utilization as a GDPR compliance audit proof for an auditor. In this paper, we propose a delegation-based personal data processing request notarization framework for GDPR using a private blockchain. The proposed notarization framework allows the data subject to delegate requests to process of personal data; the framework makes the requests to the data controller, which performs the processing. The generated data processing request and processing result data are stored in the blockchain ledger and notarized via a trusted institution of the blockchain network. The Hypderledger Fabric implementation of the framework demonstrates the fulfillment of system requirements and feasibility of implementing a GDPR compliance audit for the processing of personal data. The analysis results with comparisons among the related works indicate that the proposed framework provides better reliability and feasibility for the GDPR audit of personal data processing request than extant methods.Sung-Soo JungSang-Joon LeeIeck-Chae EuomMDPI AGarticleGDPRpersonal datadelegationnotarizationblockchainnon-repudiationTechnologyTEngineering (General). Civil engineering (General)TA1-2040Biology (General)QH301-705.5PhysicsQC1-999ChemistryQD1-999ENApplied Sciences, Vol 11, Iss 10574, p 10574 (2021)
institution DOAJ
collection DOAJ
language EN
topic GDPR
personal data
delegation
notarization
blockchain
non-repudiation
Technology
T
Engineering (General). Civil engineering (General)
TA1-2040
Biology (General)
QH301-705.5
Physics
QC1-999
Chemistry
QD1-999
spellingShingle GDPR
personal data
delegation
notarization
blockchain
non-repudiation
Technology
T
Engineering (General). Civil engineering (General)
TA1-2040
Biology (General)
QH301-705.5
Physics
QC1-999
Chemistry
QD1-999
Sung-Soo Jung
Sang-Joon Lee
Ieck-Chae Euom
Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
description With the growing awareness regarding the importance of personal data protection, many countries have established laws and regulations to ensure data privacy and are supervising managements to comply with them. Although various studies have suggested compliance methods of the general data protection regulation (GDPR) for personal data, no method exists that can ensure the reliability and integrity of the personal data processing request records of a data subject to enable its utilization as a GDPR compliance audit proof for an auditor. In this paper, we propose a delegation-based personal data processing request notarization framework for GDPR using a private blockchain. The proposed notarization framework allows the data subject to delegate requests to process of personal data; the framework makes the requests to the data controller, which performs the processing. The generated data processing request and processing result data are stored in the blockchain ledger and notarized via a trusted institution of the blockchain network. The Hypderledger Fabric implementation of the framework demonstrates the fulfillment of system requirements and feasibility of implementing a GDPR compliance audit for the processing of personal data. The analysis results with comparisons among the related works indicate that the proposed framework provides better reliability and feasibility for the GDPR audit of personal data processing request than extant methods.
format article
author Sung-Soo Jung
Sang-Joon Lee
Ieck-Chae Euom
author_facet Sung-Soo Jung
Sang-Joon Lee
Ieck-Chae Euom
author_sort Sung-Soo Jung
title Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
title_short Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
title_full Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
title_fullStr Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
title_full_unstemmed Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
title_sort delegation-based personal data processing request notarization framework for gdpr based on private blockchain
publisher MDPI AG
publishDate 2021
url https://doaj.org/article/ffb98ef72dfa4b2b8187241f13268bec
work_keys_str_mv AT sungsoojung delegationbasedpersonaldataprocessingrequestnotarizationframeworkforgdprbasedonprivateblockchain
AT sangjoonlee delegationbasedpersonaldataprocessingrequestnotarizationframeworkforgdprbasedonprivateblockchain
AT ieckchaeeuom delegationbasedpersonaldataprocessingrequestnotarizationframeworkforgdprbasedonprivateblockchain
_version_ 1718413177747668992