The Role of Policy and Stakeholder Privacy Values in Requirements Engineering

  • Authors:
  • Annie I. Antón;Julia B. Earp;Thomas A. Alspaugh;Colin Potts

  • Affiliations:
  • -;-;-;-

  • Venue:
  • RE '01 Proceedings of the Fifth IEEE International Symposium on Requirements Engineering
  • Year:
  • 2001

Quantified Score

Hi-index 0.00

Visualization

Abstract

Abstract: Diverse uses of information technology (IT)i n organizations affect privacy. Developers of electronic commerce, database management, security mechanisms, telecommunication and collaborative systems should be aware of these effects and acknowledge the need for early privacy planning during the requirements definition activity. Public concerns about the collection of personal information by consumer-based Web sites have led most organizations running such sites to establish and publish privacy policies. However, these policies often fail to align with prevalent societal values on one hand and the operational functioning of web-based applications on the other. Assuming that such misalignments stem from imperfect appreciation of consequences and not an intent t o deceive, we discuss concepts, tools and techniques to help requirements engineers and IT policy makers bring policies and system requirements into better alignment. Our objective is to encourage RE researchers and practitioners to adopt a more holistic view of application and system specification, in which a system or application is seen as an engine of policy enforcement and values attainment.