Title :
Servicization of Australian Privacy Act for Improving Business Compliance
Author_Institution :
CSIRO ICT Centre, Marsfield, NSW, Australia
Abstract :
Organizations of handling personal or sensitive information have the pressure of complying with relevant privacy laws or regulations. Since the laws or regulations are always written with complex legal terms, it is not easy for information system designers to understand precisely such laws and regulations and adopt them directly in their designs. In this paper, we propose the method of formalizing the Australian Privacy Act into executable processes and the method of modeling business in a privacy-aware way. Thus, by executing the processes over the privacy-aware business models, the information system designers can easily check the compliance of their designs with the privacy laws or regulations. In addition, the executable formalization of the Privacy Act makes it more efficient for law enforcement officers to process privacy violation cases. As an example, the clauses NPP 1.3 and NPP 2.1(s) of Australia Privacy Act are formalized and executed over a retailer´s privacy-aware business model. The execution shows the same result as the investigation performed by the law enforcement officers.
Keywords :
business data processing; data privacy; information systems; legislation; Australian Privacy Act servicization; business compliance; clause NPP 1.3; clause NPP 2.1(s); complex legal terms; executable formalization; executable processes; information system designers; law enforcement officers; personal information handling organization; privacy laws; privacy regulations; privacy-aware business modeling; process privacy violation cases; retailer privacy-aware business model; sensitive information handling organizations; Companies; Information systems; Law; Ontologies; Privacy; Business Process; Compliance; Privacy; Privacy Regulations;
Conference_Titel :
Web Services (ICWS), 2012 IEEE 19th International Conference on
Conference_Location :
Honolulu, HI
Print_ISBN :
978-1-4673-2131-0
DOI :
10.1109/ICWS.2012.116