Technical Requirements and Approaches in Personal Data Control

Junsik Sim, Beomjoong Kim, Kiseok Jeon, Moonho Joo, Jihun Lim, Junghee Lee, Kim Kwang Raymond Choo

Research output: Contribution to journalReview articlepeer-review

6 Citations (Scopus)

Abstract

There has been a trend of moving from simply de-identification to providing extended data control to their owner (e.g., data portability and right to be forgotten), partly due to the introduction of the General Data Protection Regulation (GDPR). Hence, in this paper, we survey the literature to provide an in-depth understanding of the existing approaches for personal data control (e.g., we observe that most existing approaches are generally designed to facilitate compliance), as well as the privacy regulations in Europe, United Kingdom, California, South Korea, and Japan. Based on the review, we identify the associated technical requirements, as well as a number of research gaps and potential future directions (e.g., the need for transparent processing of personal data and establishment of clear procedure in ensuring personal data control).

Original languageEnglish
Article number190
JournalACM Computing Surveys
Volume55
Issue number9
DOIs
Publication statusPublished - 2023 Sept 30

Bibliographical note

Publisher Copyright:
© 2023 Association for Computing Machinery.

Keywords

  • Personal data
  • compliance
  • control rights

ASJC Scopus subject areas

  • Theoretical Computer Science
  • General Computer Science

Fingerprint

Dive into the research topics of 'Technical Requirements and Approaches in Personal Data Control'. Together they form a unique fingerprint.

Cite this