Fast Compliance Checking with General Vocabularies

01/16/2020
by   P. A. Bonatti, et al.
0

We address the problem of complying with the GDPR while processing and transferring personal data on the web. For this purpose we introduce an extensible profile of OWL2 for representing data protection policies. With this language, a company's data usage policy can be checked for compliance with data subjects' consent and with a formalized fragment of the GDPR by means of subsumption queries. The outer structure of the policies is restricted in order to make compliance checking highly scalable, as required when processing high-frequency data streams or large data volumes. However, the vocabularies for specifying policy properties can be chosen rather freely from expressive Horn fragments of OWL2. We exploit IBQ reasoning to integrate specialized reasoners for the policy language and the vocabulary's language. Our experiments show that this approach significantly improves performance.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
01/15/2020

Real Time Reasoning in OWL2 for GDPR Compliance

This paper shows how knowledge representation and reasoning techniques c...
research
01/24/2020

Machine Understandable Policies and GDPR Compliance Checking

The European General Data Protection Regulation (GDPR) calls for technic...
research
08/30/2019

Data Capsule: A New Paradigm for Automatic Compliance with Data Privacy Regulations

The increasing pace of data collection has led to increasing awareness o...
research
08/22/2018

Are we there yet? Understanding the challenges faced in complying with the General Data Protection Regulation (GDPR)

The EU General Data Protection Regulation (GDPR), enforced from 25th May...
research
06/10/2021

AI-enabled Automation for Completeness Checking of Privacy Policies

Technological advances in information sharing have raised concerns about...
research
10/13/2021

Compliance checking in reified IO logic via SHACL

Reified Input/Output (I/O) logic[21] has been recently proposed to model...
research
08/03/2020

Towards a Semantic Model of the GDPR Register of Processing Activities

A core requirement for GDPR compliance is the maintenance of a register ...

Please sign up or login with your details

Forgot password? Click here to reset