Back to Search
Start Over
Delegation-Based Personal Data Processing Request Notarization Framework for GDPR Based on Private Blockchain
- Source :
- Applied Sciences, Vol 11, Iss 10574, p 10574 (2021), Applied Sciences, Volume 11, Issue 22
- Publication Year :
- 2021
- Publisher :
- MDPI AG, 2021.
-
Abstract
- With the growing awareness regarding the importance of personal data protection, many countries have established laws and regulations to ensure data privacy and are supervising managements to comply with them. Although various studies have suggested compliance methods of the general data protection regulation (GDPR) for personal data, no method exists that can ensure the reliability and integrity of the personal data processing request records of a data subject to enable its utilization as a GDPR compliance audit proof for an auditor. In this paper, we propose a delegation-based personal data processing request notarization framework for GDPR using a private blockchain. The proposed notarization framework allows the data subject to delegate requests to process of personal data<br />the framework makes the requests to the data controller, which performs the processing. The generated data processing request and processing result data are stored in the blockchain ledger and notarized via a trusted institution of the blockchain network. The Hypderledger Fabric implementation of the framework demonstrates the fulfillment of system requirements and feasibility of implementing a GDPR compliance audit for the processing of personal data. The analysis results with comparisons among the related works indicate that the proposed framework provides better reliability and feasibility for the GDPR audit of personal data processing request than extant methods.
- Subjects :
- blockchain
Information privacy
Technology
Delegate
Computer science
QH301-705.5
media_common.quotation_subject
personal data
QC1-999
ComputingMilieux_LEGALASPECTSOFCOMPUTING
Audit
Computer security
computer.software_genre
non-repudiation
Data Protection Act 1998
General Materials Science
GDPR
Biology (General)
Instrumentation
Register of data controllers
QD1-999
notarization
media_common
Fluid Flow and Transfer Processes
delegation
Delegation
Process Chemistry and Technology
Physics
General Engineering
Engineering (General). Civil engineering (General)
Computer Science Applications
Chemistry
Non-repudiation
General Data Protection Regulation
TA1-2040
computer
Subjects
Details
- Language :
- English
- ISSN :
- 20763417
- Volume :
- 11
- Issue :
- 10574
- Database :
- OpenAIRE
- Journal :
- Applied Sciences
- Accession number :
- edsair.doi.dedup.....06e23bab2dcd3d08905fe7730dab6c1f