Enforcing legal compliance into software systems is a non-trivial task that requires an interdisciplinary approach. This thesis presents a new methodology for legal compliance checking against European legal provisions, namely the EU Data Protection Directive, the EU General Data Protection Regulation and the revised EU Payment Services Directive. We propose two types of compliance checking mechanisms that should be exploited at design-time or run-time. The former is based on security policy analysis of access control policies. The later is built on top of an approach to synthesizing run-time monitors for workflow-driven applications. Our contributions include a comprehensive methodology for legal compliance checking, the formalization of the regulations and the prototype tool of the implemented compliance methodology.

Automated Analysis and Synthesis for the Compliance of Privacy and Other Legal Provisions

Siswantoro, Hari
2018

Abstract

Enforcing legal compliance into software systems is a non-trivial task that requires an interdisciplinary approach. This thesis presents a new methodology for legal compliance checking against European legal provisions, namely the EU Data Protection Directive, the EU General Data Protection Regulation and the revised EU Payment Services Directive. We propose two types of compliance checking mechanisms that should be exploited at design-time or run-time. The former is based on security policy analysis of access control policies. The later is built on top of an approach to synthesizing run-time monitors for workflow-driven applications. Our contributions include a comprehensive methodology for legal compliance checking, the formalization of the regulations and the prototype tool of the implemented compliance methodology.
2018
Inglese
Ranise, Silvio
Università degli studi di Trento
TRENTO
110
File in questo prodotto:
File Dimensione Formato  
DECLARATORIA_Hari.pdf

accesso solo da BNCF e BNCR

Licenza: Tutti i diritti riservati
Dimensione 140.87 kB
Formato Adobe PDF
140.87 kB Adobe PDF
Hari_thesis.pdf

accesso solo da BNCF e BNCR

Licenza: Tutti i diritti riservati
Dimensione 930.83 kB
Formato Adobe PDF
930.83 kB Adobe PDF

I documenti in UNITESI sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14242/89568
Il codice NBN di questa tesi è URN:NBN:IT:UNITN-89568