Title :
Privacy Application Infrastructure: Confidential Data Masking
Author :
Liver, B. ; Tice, K.
Author_Institution :
Inf. Technol., Credit Suisse, Zurich, Switzerland
Abstract :
Handling of confidential and sensitive data is an important issue facing any professional service provider that wishes to use services from a third party company. This paper describes an infrastructure, the privacy infrastructure appliance that was designed to protect confidential information when outsourcing service fulfillment. A comparison is made with an embedded solution that does not use an infrastructure.There are two use cases to consider, one use case is the outsourcing of back-end service fulfillment, such as executing foreign exchange trade orders and the second use case is the outsourcing of back-office activities, such as non-core competence office work. In considering back-end service delivery, we look at the use of computer systems and processes, which are not privy to confidential information. In considering back-office clerical activities, we look at the human component of service fulfillment, the clerical office worker. The clerical office worker that is outsourced, will still use the applications of the outsourcing company, but he is no longer privy to confidential information. This paper describes and contrasts two solutions. An infrastructure that was built to meet confidential information requirements for doing outsourcing of solution delivery systems and an application approach to mask confidential information from outsourced back office workers.
Keywords :
Web services; data privacy; electronic commerce; outsourcing; security of data; software architecture; back office worker; back-end service fulfillment; business process outsourcing; confidential data masking; e-commerce; privacy application infrastructure; professional service provider; sensitive data handling; service oriented architecture; third party company; Application specific processors; Business; Computer applications; Data privacy; Home appliances; Information technology; Law; Liver; Outsourcing; Protection; application service provisioning; data privacy; e-commerce; outsourcing; trust;
Conference_Titel :
Commerce and Enterprise Computing, 2009. CEC '09. IEEE Conference on
Conference_Location :
Vienna
Print_ISBN :
978-0-7695-3755-9
DOI :
10.1109/CEC.2009.43