课题基金 / 基金详情

Cybersecurity & Trust in Internet of Things (IoT): Agency and negotiability over personal data in smart devices in the home

Cybersecurity & Trust in Internet of Things (IoT): Agency and negotiability over personal data in smart devices in the home
网络安全
批准号:
2443102
负责人:
金额:
$0.0万
依托单位:
依托单位国家:
英国
项目类别:
Studentship
财政年份:
2020
资助国家:
英国
项目状态:
未结题
起止时间:
2020 至 --

项目摘要

项目成果

相似基金

相关文献

中文摘要
翻译
物联网是通过带有连接到互联网的传感器的物品网络使一切变得智能(Minn等人,2015)。智能设备是那些使用Wi-Fi、5G等无线连接连接到其他设备或网络的设备(IGI Global,2021)。智能手机、智能锁和智能手表都是智能设备的例子。根据英国数据保护法(DPA)和一般数据保护条例(GDPR),个人数据是与身份或可识别的个人有关的任何信息,如姓名、电子邮件、NI号码、位置数据(ICO,N.D.)。DPA和GDPR都要求新产品和服务的设计过程考虑其中的数据保护和隐私风险。我们认为,在家庭中存储个人数据和在智能设备中设置用户偏好的最先进技术需要研究。我们的研究将(I)以非法律语言提供设计和治理指南,供智能设备制造商和服务提供商在新产品和服务的设计过程中考虑。(Ii)因此,通过标准化,它们将产生竞争优势,并减少它们的合规和数据处理负担。(Iii)此外,我们的研究将弥合制造商、服务提供商、隐私专业人士和监管机构之间在导致智能设备隐私问题的数据保护和隐私风险方面的分歧。我们的最终目标是将设计和治理指导方针转化为政策。为什么这很重要?智能设备用户缺乏对数据隐私的理解(Marwick&Boyd,2014),也缺乏对如何共享和处理其个人数据的控制(Broenink等人,2010)。我们拟议的研究将(A)使智能设备的用户能够在知情的情况下选择他们与多少人共享他们的数据,从而控制他们的个人数据。(B)使用户可以享受到智能设备的定制服务,提高便利性,而不必担心自己的数据隐私。我们将通过共同创建设计和治理指南来做到这一点。我们最初立场的技术立场是假设一种解决方案,使数据处理和存储更接近数据生成的地方,类似于Databox(McAuley等人,2016)。该解决方案的指导方针将涵盖架构、用户界面和交互,因此用户可以毫不费力地对他们的隐私设置和偏好进行建模。参考文献Broenink,G.,Hoepman,J.-H.,Hof,C.van‘t,van Kranenburg,R.,Smitts,D.,&Wisman,T.(2010)。隐私教练:支持物联网客户隐私。1比10。Http://arxiv.org/abs/1001.4459ICO.(北卡罗来纳州)。信息专员办公室。Https://ico.org.uk/for-organisations/guide-to-data-protection/IGI Global(2021年)什么是智能设备https://www.igi-global.com/dictionary/smart-device/47498Marwick,A.E.和Boyd,D.(2014)。网络隐私:青少年如何在社交媒体上协商情境。新媒体与社会。Https://doi.org/10.1177/1461444814543995McAuley,D.,Brown,T.,Glover K.,Amar,Y.,Mortier,R.,Li,Q.,Lodge,T.,Haddadi,H.,Hiwal,Poonam,Price,D.,赵,R.(2019)。隐私感知数据分析平台。Https://github.com/me-box/databox/Minn,H.,曾,M.和Bhargava,V.(2015)。对{物联网(IoT)}的定义。IEEE互联网倡议,1-86。
英文摘要
nternet of Things is making everything smart through a network of items with sensors connected to the Internet (Minn et al., 2015). Smart devices are those items that connect to other devices or networks using wireless connectivity such as Wi-Fi, 5G (IGI Global, 2021). Smartphones, smart locks and smartwatches are examples of smart devices. According to the UK Data Protection Act (DPA) and the General Data Protection Regulation (GDPR), personal data is any information that relates to an identified or identifiable individual such as name, email, NI number, location data (ICO, n.d.). Both the DPA and GDPR mandate that the design process for new products and services consider data protection and privacy risks within it. We argue that the state-of-the-art for storing personal data in the home and setting user preferences in smart devices requires research. Our research will (i) provide design and governance guidelines in a non-legalistic language for the manufacturers and service providers of smart devices to consider in the design process for new products and services. (ii) Consequently through standardisation, they will yield competitive advantage, and reduce their compliance, and data processing burden. (iii) Further, our research will bridge the gap between the manufacturers, service providers, privacy professionals and regulators concerning the data protection and privacy risks leading to privacy issues in smart devices. Our eventual goal is to translate the design and governance guidelines to a policy.Why is it important? Smart device users lack understanding of data privacy (Marwick & Boyd, 2014) and control over how their personal data is shared and processed (Broenink et al., 2010). Our proposed research will (a) enable and empower the users of smart devices to make informed choices about how much and who they share their data with and therefore have control over their personal data. (b) So the users can enjoy the tailored services of smart devices, to improve convenience and not worry about their data privacy. We will do this through co-creation of design and governance guidelines. A technical standpoint of our starting position is to assume a solution that brings data processing and storage closer to where it is generated, akin to Databox (McAuley et al., 2016). The guidelines for the solution will cover the architecture, user interface and interactions, so users can model their privacy settings and preferences without difficulty. It will also cover cybersecurity areas such as user authentication and data security.ReferencesBroenink, G., Hoepman, J.-H., Hof, C. van 't, van Kranenburg, R., Smits, D., & Wisman, T. (2010). The Privacy Coach: Supporting customer privacy in the Internet of Things. 1-10. http://arxiv.org/abs/1001.4459ICO. (n.d.). Information Commissioner's Office. https://ico.org.uk/for-organisations/guide-to-data-protection/IGI Global (2021) What is Smart Device https://www.igi-global.com/dictionary/smart-device/47498Marwick, A. E., & Boyd, D. (2014). Networked privacy: How teenagers negotiate context in social media. New Media and Society. https://doi.org/10.1177/1461444814543995McAuley, D., Brown, T., Glover K., Amar, Y., Mortier, R., Li, Q., Lodge, T., Haddadi, H., Hiwal, Poonam, Price, D., Zhao, R. (2019). Privacy-Aware Data Analytics Platform. https://github.com/me-box/databox/Minn, H., Zeng, M., & Bhargava, V. (2015). Towards a definition of the {Internet of Things (IoT)}. IEEE Internet Initiative, 1-86.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
海外基金