Collaborative Research: DASS: Developer Implementation of Privacy in Software Systems
合作研究:DASS:开发人员在软件系统中实施隐私
基本信息
- 批准号:2217771
- 负责人:
- 金额:$ 43.94万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2022
- 资助国家:美国
- 起止时间:2022-10-01 至 2025-09-30
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
Recent years have seen a surge in privacy regulations across the globe. The main objective of these regulations is to protect user data and users’ rights by providing guidelines for organizations to follow. The assumption is that such guidelines will provide developers with a clear and concise framework for writing privacy-conscious code. However, even after the introduction of these regulatory frameworks, software regularly fails to protect user privacy. This often happens because the developer is responsible for ensuring that the legal framework is implemented correctly in the code, but writing privacy-conscious code requires developers to develop a thorough and nuanced understanding of the regulatory demands. To further such an understanding and develop solutions, this project explores the interaction between new privacy regulations and the software developers tasked with complying with them. The project team will look at how developers react to privacy regulations, analyzing discussions among developers in the face of new privacy regulations, code changes they make in response to shifting regulatory frameworks or new case laws interpreting existing regulations, and developer reactions to widely publicized privacy breaches. After identifying these interactions, this project aims to propose software development tools and methodologies to support the effective alignment of regulatory constraints and development practice.The project brings together computer scientists experts in security, privacy, and usability, and legal and organizational behavior scholars with expertise in privacy law, algorithmic fairness, network consensus mechanisms, and computational linguistics. The team will study how new privacy laws are impacting software systems by examining the discussions developers are having among themselves, in public code repositories, bug tracking systems, and online fora. These discussions and related code updates in public repositories will be compared with the language of privacy used in the laws and regulations themselves, the public comments around the laws, and the broader public conversation on privacy, in order to understand privacy regulations that raise particular confusion, concerns, and errors. These comparisons will lead to a rigorous analysis of the impacts of new privacy regulations on software development and offer recommendations for improvements in terms of both regulation and software development.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
近年来,全球隐私法规激增。这些法规的主要目的是通过为组织提供准则来保护用户数据和用户的权利。假设是,此类准则将为开发人员提供一个清晰简洁的框架,以编写隐私意识代码。但是,即使引入了这些监管框架,软件仍无法保护用户隐私。这通常是因为开发人员有责任确保在《代码》中正确实施法律框架,但是编写具有隐私意识的代码要求开发人员对监管要求有详尽而细微的理解。为了进一步理解和开发解决方案,该项目探讨了新的隐私法规与遵守符合其的软件开发人员之间的相互作用。项目团队将研究开发人员对隐私法规的反应,面对新隐私法规的开发人员之间的讨论,对改变监管框架的转换或解释现有法规的新案例法所进行的代码更改,以及开发人员对广泛宣传的隐私破坏的反应。在确定了这些相互作用之后,该项目旨在提出软件开发工具和方法,以支持监管约束和开发实践的有效保持一致。该项目将计算机科学家汇集了安全,隐私和可用性和可用性的专家,以及法律和组织的行为学者与隐私权法,算法公平,网络共识,网络共识机构和计算机学和计算效率和计算机学的专业知识。该团队将通过研究开发人员之间的讨论,在公共代码存储库,错误跟踪系统和在线fora中进行研究,研究新的隐私法正在如何影响软件系统。将将公共存储库中的这些讨论和相关代码更新与法律法规本身使用的隐私语言,公众对法律的评论以及有关隐私的更广泛的公众对话,以了解引起特定混乱,关注和错误的隐私法规。这些比较将导致对新隐私法规对软件开发的影响的严格分析,并为改进监管和软件开发提供建议。该奖项反映了NSF的法定任务,并且我们是否使用基金会的智力优点和更广泛的影响标准来评估我们的支持。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Serge Egelman其他文献
The Accuracy of the Demographic Inferences Shown on Google's Ad Settings
Google 广告设置中显示的人口统计推断的准确性
- DOI:
10.1145/3267323.3268962 - 发表时间:
2018 - 期刊:
- 影响因子:0
- 作者:
Michael Carl Tschantz;Serge Egelman;Jaeyoung Choi;N. Weaver;G. Friedland - 通讯作者:
G. Friedland
Nudge Me Right: Personalizing Online Security Nudges to People's Decision-Making Styles
推动我正确:个性化在线安全推动人们的决策风格
- DOI:
10.2139/ssrn.3324907 - 发表时间:
2019 - 期刊:
- 影响因子:0
- 作者:
Eyal Péer;Serge Egelman;Marian Harbach;Nathan Malkin;Arunesh Mathur;Alisa Frik - 通讯作者:
Alisa Frik
Information Design in An Aged Care Context: Views of Older Adults on Information Sharing in a Care Triad
老年护理背景下的信息设计:老年人对护理三合会信息共享的看法
- DOI:
- 发表时间:
2019 - 期刊:
- 影响因子:0
- 作者:
L. Nurgalieva;Alisa Frik;Francesco Ceschel;Serge Egelman;M. Marchese - 通讯作者:
M. Marchese
THE ANATOMY OF SMARTPHONE UNLOCKING: Why and How Android Users Around the World Lock their Phones
智能手机解锁剖析:世界各地的 Android 用户为何以及如何锁定手机
- DOI:
10.1145/3036699.3036712 - 发表时间:
2017 - 期刊:
- 影响因子:0
- 作者:
Nathan Malkin;Marian Harbach;A. D. Luca;Serge Egelman - 通讯作者:
Serge Egelman
The Myth of the Average User: Improving Privacy and Security Systems through Individualization
普通用户的神话:通过个性化改进隐私和安全系统
- DOI:
10.1145/2841113.2841115 - 发表时间:
2015 - 期刊:
- 影响因子:0
- 作者:
Serge Egelman;Eyal Péer - 通讯作者:
Eyal Péer
Serge Egelman的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Serge Egelman', 18)}}的其他基金
Collaborative Research: SaTC: CORE: Small: Measuring, Validating and Improving upon App-Based Privacy Nutrition Labels
合作研究:SaTC:核心:小型:测量、验证和改进基于应用程序的隐私营养标签
- 批准号:
2247951 - 财政年份:2023
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
SaTC: NSF-BSF: CORE: Small: Increasing Users' Cyber-Security Compliance by Reducing Present Bias
SaTC:NSF-BSF:核心:小型:通过减少当前偏差来提高用户的网络安全合规性
- 批准号:
1817249 - 财政年份:2018
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
Student Travel Support for the 17th Workshop on the Economics of Information Security (WEIS 2018)
第 17 届信息安全经济学研讨会 (WEIS 2018) 的学生旅行支持
- 批准号:
1832821 - 财政年份:2018
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
SaTC: TTP: Small: Mobile Dynamic Privacy and Security Analysis at Scale
SaTC:TTP:小型:大规模移动动态隐私和安全分析
- 批准号:
1817248 - 财政年份:2018
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
SaTC: CORE: Medium: Collaborative: Contextual Integrity: From Theory to Practice
SaTC:核心:媒介:协作:上下文完整性:从理论到实践
- 批准号:
1801501 - 财政年份:2018
- 资助金额:
$ 43.94万 - 项目类别:
Continuing Grant
Student Support for the 15th Workshop on the Economics of Information Security (WEIS 2016)
第 15 届信息安全经济学研讨会 (WEIS 2016) 的学生支持
- 批准号:
1560940 - 财政年份:2016
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
TWC: Medium: Collaborative: Security and Privacy for Wearable and Continuous Sensing Platforms
TWC:媒介:协作:可穿戴和连续传感平台的安全和隐私
- 批准号:
1514211 - 财政年份:2015
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
NSFSaTC-BSF: TWC: Small: Using Individual Differences to Personalize Security Mitigations
NSFSaTC-BSF:TWC:小:利用个体差异来个性化安全缓解措施
- 批准号:
1528070 - 财政年份:2015
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
EAGER: Designing Individualized Privacy and Security Systems
EAGER:设计个性化的隐私和安全系统
- 批准号:
1343433 - 财政年份:2013
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
相似国自然基金
支持二维毫米波波束扫描的微波/毫米波高集成度天线研究
- 批准号:62371263
- 批准年份:2023
- 资助金额:52 万元
- 项目类别:面上项目
腙的Heck/脱氮气重排串联反应研究
- 批准号:22301211
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
水系锌离子电池协同性能调控及枝晶抑制机理研究
- 批准号:52364038
- 批准年份:2023
- 资助金额:33 万元
- 项目类别:地区科学基金项目
基于人类血清素神经元报告系统研究TSPYL1突变对婴儿猝死综合征的致病作用及机制
- 批准号:82371176
- 批准年份:2023
- 资助金额:49 万元
- 项目类别:面上项目
FOXO3 m6A甲基化修饰诱导滋养细胞衰老效应在补肾法治疗自然流产中的机制研究
- 批准号:82305286
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
相似海外基金
Collaborative Research: SWIFT-SAT: DASS: Dynamically Adjustable Spectrum Sharing between Ground Communication Networks and Earth Exploration Satellite Systems Above 100 GHz
合作研究:SWIFT-SAT:DASS:地面通信网络与 100 GHz 以上地球探测卫星系统之间的动态可调频谱共享
- 批准号:
2332722 - 财政年份:2024
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
Collaborative Research: SWIFT-SAT: DASS: Dynamically Adjustable Spectrum Sharing between Ground Communication Networks and Earth Exploration Satellite Systems Above 100 GHz
合作研究:SWIFT-SAT:DASS:地面通信网络与 100 GHz 以上地球探测卫星系统之间的动态可调频谱共享
- 批准号:
2332721 - 财政年份:2024
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
Collaborative Research: DASS: Empirically Evaluating Data Fiduciary Privacy Laws
合作研究:DASS:实证评估数据信托隐私法
- 批准号:
2317115 - 财政年份:2023
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
Collaborative Research: DASS: Assessing the Relationship Between Privacy Regulations and Software Development to Improve Rulemaking and Compliance
合作研究:DASS:评估隐私法规与软件开发之间的关系以改进规则制定和合规性
- 批准号:
2317185 - 财政年份:2023
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant
Collaborative Research: DASS: Accountable Open Source Infrastructure
合作研究:DASS:负责任的开源基础设施
- 批准号:
2317169 - 财政年份:2023
- 资助金额:
$ 43.94万 - 项目类别:
Standard Grant