Collaborative Research: DASS: Developer Implementation of Privacy in Software Systems

合作研究:DASS:开发人员在软件系统中实施隐私

基本信息

  • 批准号:
    2217771
  • 负责人:
  • 金额:
    $ 43.94万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2022
  • 资助国家:
    美国
  • 起止时间:
    2022-10-01 至 2025-09-30
  • 项目状态:
    未结题

项目摘要

Recent years have seen a surge in privacy regulations across the globe. The main objective of these regulations is to protect user data and users’ rights by providing guidelines for organizations to follow. The assumption is that such guidelines will provide developers with a clear and concise framework for writing privacy-conscious code. However, even after the introduction of these regulatory frameworks, software regularly fails to protect user privacy. This often happens because the developer is responsible for ensuring that the legal framework is implemented correctly in the code, but writing privacy-conscious code requires developers to develop a thorough and nuanced understanding of the regulatory demands. To further such an understanding and develop solutions, this project explores the interaction between new privacy regulations and the software developers tasked with complying with them. The project team will look at how developers react to privacy regulations, analyzing discussions among developers in the face of new privacy regulations, code changes they make in response to shifting regulatory frameworks or new case laws interpreting existing regulations, and developer reactions to widely publicized privacy breaches. After identifying these interactions, this project aims to propose software development tools and methodologies to support the effective alignment of regulatory constraints and development practice.The project brings together computer scientists experts in security, privacy, and usability, and legal and organizational behavior scholars with expertise in privacy law, algorithmic fairness, network consensus mechanisms, and computational linguistics. The team will study how new privacy laws are impacting software systems by examining the discussions developers are having among themselves, in public code repositories, bug tracking systems, and online fora. These discussions and related code updates in public repositories will be compared with the language of privacy used in the laws and regulations themselves, the public comments around the laws, and the broader public conversation on privacy, in order to understand privacy regulations that raise particular confusion, concerns, and errors. These comparisons will lead to a rigorous analysis of the impacts of new privacy regulations on software development and offer recommendations for improvements in terms of both regulation and software development.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
近年来,全球范围内的隐私法规激增。这些规定的主要目的是通过为组织提供遵循的指导方针来保护用户数据和用户权利。我们的假设是,这样的指导方针将为开发人员提供一个清晰而简洁的框架,用于编写具有隐私意识的代码。然而,即使在这些监管框架出台后,软件也经常无法保护用户隐私。这种情况经常发生,因为开发人员负责确保在代码中正确实现法律框架,但编写具有隐私意识的代码需要开发人员对监管要求进行彻底和细微的理解。为了促进这样的理解和开发解决方案,这个项目探索了新的隐私法规与负责遵守这些法规的软件开发人员之间的互动。项目团队将研究开发人员对隐私法规的反应,分析开发人员在面对新的隐私法规时的讨论,他们针对不断变化的监管框架或解释现有法规的新判例法所做的代码更改,以及开发人员对广泛宣传的隐私违规行为的反应。在确定这些相互作用后,该项目旨在提出软件开发工具和方法,以支持法规约束与开发实践的有效匹配。该项目汇集了计算机科学家、安全、隐私和可用性方面的专家,以及在隐私法、算法公平性、网络共识机制和计算语言学方面具有专业知识的法律和组织行为学者。该团队将通过检查开发人员之间在公共代码库、错误跟踪系统和在线论坛中进行的讨论,来研究新的隐私法如何影响软件系统。这些讨论和公共资源库中的相关代码更新将与法律法规本身使用的隐私语言、围绕法律的公众评论以及更广泛的关于隐私的公众对话进行比较,以了解引起特定困惑、担忧和错误的隐私法规。这些比较将导致对新的隐私法规对软件开发的影响进行严格分析,并在法规和软件开发方面提出改进建议。该奖项反映了NSF的法定使命,并通过使用基金会的智力优势和更广泛的影响审查标准进行评估,被认为值得支持。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Serge Egelman其他文献

The Accuracy of the Demographic Inferences Shown on Google's Ad Settings
Google 广告设置中显示的人口统计推断的准确性
Nudge Me Right: Personalizing Online Security Nudges to People's Decision-Making Styles
推动我正确:个性化在线安全推动人们的决策风格
  • DOI:
    10.2139/ssrn.3324907
  • 发表时间:
    2019
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Eyal Péer;Serge Egelman;Marian Harbach;Nathan Malkin;Arunesh Mathur;Alisa Frik
  • 通讯作者:
    Alisa Frik
Information Design in An Aged Care Context: Views of Older Adults on Information Sharing in a Care Triad
老年护理背景下的信息设计:老年人对护理三合会信息共享的看法
THE ANATOMY OF SMARTPHONE UNLOCKING: Why and How Android Users Around the World Lock their Phones
智能手机解锁剖析:世界各地的 Android 用户为何以及如何锁定手机
  • DOI:
    10.1145/3036699.3036712
  • 发表时间:
    2017
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Nathan Malkin;Marian Harbach;A. D. Luca;Serge Egelman
  • 通讯作者:
    Serge Egelman
The Myth of the Average User: Improving Privacy and Security Systems through Individualization
普通用户的神话:通过个性化改进隐私和安全系统

Serge Egelman的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Serge Egelman', 18)}}的其他基金

Collaborative Research: SaTC: CORE: Small: Measuring, Validating and Improving upon App-Based Privacy Nutrition Labels
合作研究:SaTC:核心:小型:测量、验证和改进基于应用程序的隐私营养标签
  • 批准号:
    2247951
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
SaTC: NSF-BSF: CORE: Small: Increasing Users' Cyber-Security Compliance by Reducing Present Bias
SaTC:NSF-BSF:核心:小型:通过减少当前偏差来提高用户的网络安全合规性
  • 批准号:
    1817249
  • 财政年份:
    2018
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Student Travel Support for the 17th Workshop on the Economics of Information Security (WEIS 2018)
第 17 届信息安全经济学研讨会 (WEIS 2018) 的学生旅行支持
  • 批准号:
    1832821
  • 财政年份:
    2018
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
SaTC: TTP: Small: Mobile Dynamic Privacy and Security Analysis at Scale
SaTC:TTP:小型:大规模移动动态隐私和安全分析
  • 批准号:
    1817248
  • 财政年份:
    2018
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
SaTC: CORE: Medium: Collaborative: Contextual Integrity: From Theory to Practice
SaTC:核心:媒介:协作:上下文完整性:从理论到实践
  • 批准号:
    1801501
  • 财政年份:
    2018
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Continuing Grant
Student Support for the 15th Workshop on the Economics of Information Security (WEIS 2016)
第 15 届信息安全经济学研讨会 (WEIS 2016) 的学生支持
  • 批准号:
    1560940
  • 财政年份:
    2016
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
TWC: Medium: Collaborative: Security and Privacy for Wearable and Continuous Sensing Platforms
TWC:媒介:协作:可穿戴和连续传感平台的安全和隐私
  • 批准号:
    1514211
  • 财政年份:
    2015
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
NSFSaTC-BSF: TWC: Small: Using Individual Differences to Personalize Security Mitigations
NSFSaTC-BSF:TWC:小:利用个体差异来个性化安全缓解措施
  • 批准号:
    1528070
  • 财政年份:
    2015
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
EAGER: Designing Individualized Privacy and Security Systems
EAGER:设计个性化的隐私和安全系统
  • 批准号:
    1343433
  • 财政年份:
    2013
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant

相似国自然基金

Research on Quantum Field Theory without a Lagrangian Description
  • 批准号:
    24ZR1403900
  • 批准年份:
    2024
  • 资助金额:
    0.0 万元
  • 项目类别:
    省市级项目
Cell Research
  • 批准号:
    31224802
  • 批准年份:
    2012
  • 资助金额:
    24.0 万元
  • 项目类别:
    专项基金项目
Cell Research
  • 批准号:
    31024804
  • 批准年份:
    2010
  • 资助金额:
    24.0 万元
  • 项目类别:
    专项基金项目
Cell Research (细胞研究)
  • 批准号:
    30824808
  • 批准年份:
    2008
  • 资助金额:
    24.0 万元
  • 项目类别:
    专项基金项目
Research on the Rapid Growth Mechanism of KDP Crystal
  • 批准号:
    10774081
  • 批准年份:
    2007
  • 资助金额:
    45.0 万元
  • 项目类别:
    面上项目

相似海外基金

Collaborative Research: SWIFT-SAT: DASS: Dynamically Adjustable Spectrum Sharing between Ground Communication Networks and Earth Exploration Satellite Systems Above 100 GHz
合作研究:SWIFT-SAT:DASS:地面通信网络与 100 GHz 以上地球探测卫星系统之间的动态可调频谱共享
  • 批准号:
    2332722
  • 财政年份:
    2024
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: SWIFT-SAT: DASS: Dynamically Adjustable Spectrum Sharing between Ground Communication Networks and Earth Exploration Satellite Systems Above 100 GHz
合作研究:SWIFT-SAT:DASS:地面通信网络与 100 GHz 以上地球探测卫星系统之间的动态可调频谱共享
  • 批准号:
    2332721
  • 财政年份:
    2024
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Empirically Evaluating Data Fiduciary Privacy Laws
合作研究:DASS:实证评估数据信托隐私法
  • 批准号:
    2317115
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Assessing the Relationship Between Privacy Regulations and Software Development to Improve Rulemaking and Compliance
合作研究:DASS:评估隐私法规与软件开发之间的关系以改进规则制定和合规性
  • 批准号:
    2317185
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Accountable Open Source Infrastructure
合作研究:DASS:负责任的开源基础设施
  • 批准号:
    2317169
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Assessing Accountability of Tax Preparation Software Systems
合作研究:DASS:评估报税软件系统的责任
  • 批准号:
    2317207
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Empirically Evaluating Data Fiduciary Privacy Laws
合作研究:DASS:实证评估数据信托隐私法
  • 批准号:
    2317114
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Accountable Open Source Infrastructure
合作研究:DASS:负责任的开源基础设施
  • 批准号:
    2317168
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Assessing the Relationship Between Privacy Regulations and Software Development to Improve Rulemaking and Compliance
合作研究:DASS:评估隐私法规与软件开发之间的关系以改进规则制定和合规性
  • 批准号:
    2317184
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
Collaborative Research: DASS: Assessing Accountability of Tax Preparation Software Systems
合作研究:DASS:评估报税软件系统的责任
  • 批准号:
    2317206
  • 财政年份:
    2023
  • 资助金额:
    $ 43.94万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了