Toward an architecture to improve privacy and informational self-determination through informed consent
-
Published:2022-02-23
Issue:4
Volume:30
Page:549-561
-
ISSN:2056-4961
-
Container-title:Information & Computer Security
-
language:en
-
Short-container-title:ICS
Abstract
Purpose
Most developed countries have enacted privacy laws to govern the collection and use of personal information (PI) as a response to the increased misuse of PI. Yet, these laws rely heavily on the concept of informational self-determination through the “notice” and “consent” models, which is deeply flawed. This study aims at tackling these flaws achieve the full potential of these privacy laws.
Design/methodology/approach
The author critically reviews the concept of informational self-determination through the “notice” and “consent” model identifying its main flaws and how they can be tackled.
Findings
Existing approaches present interesting ideas and useful techniques that focus on tackling some specific problems of informational self-determination but fail short in proposing a comprehensive solution that tackles the essence of the overall problem.
Originality/value
This study introduces a model for informed consent, a proposed architecture that aims at empowering individuals (data subjects) to take an active role in the protection of their PI by simplifying the informed consent transaction without reducing its effectiveness, and an ontology that can partially realize the proposed architecture.
Subject
Management of Technology and Innovation,Information Systems and Management,Computer Networks and Communications,Information Systems,Software,Management Information Systems
Reference29 articles.
1. A data purpose case study of privacy policies,2017
2. The privacy coach: supporting customer privacy in the internet of things,2010
3. The CA consumer privacy act (CCPA),2019
4. Knowledge tracing: modeling the acquisition of procedural knowledge;User Modelling and User-Adapted Interaction,1994
5. Necessary but not sufficient: standardized mechanisms for privacy notice and choice;Journal on Telecommunications and High Technology Law,2012