Measuring Privacy Compliance with Process Specifications

  • Authors:
  • Sebastian Banescu;Nicola Zannone

  • Affiliations:
  • -;-

  • Venue:
  • METRISEC '11 Proceedings of the 2011 Third International Workshop on Security Measurements and Metrics
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

Enforcement relies on the idea that infringements are violations and as such should not be allowed. However, this notion is very restrictive and cannot be applied in unpredictable domains like healthcare. To address this issue, we need conformance metrics for detecting and quantifying infringements of policies and procedures. However, existing metrics usually consider every deviation from specifications equally making them inadequate to measure the severity of infringements. In this paper, we identify a number of factors which can be used to quantify deviations from process specifications. These factors drive the definition of metrics that allow for a more accurate measurement of privacy infringements. We demonstrate how the proposed approach can be adopted to enhance existing conformance metrics through a case study on the provisioning of healthcare treatment.