Test-driven Approach Towards GDPR Compliance

File Type:
PDFItem Type:
Conference PaperDate:
2019Access:
openAccessCitation:
Pandit, H.J., O'Sullivan, D. & Lewis, D., Test-driven Approach Towards GDPR Compliance, 14th International Conference on Semantic Systems (SEMANTiCS 2019), Karlsruhe, Germany, 09-12 Sep 2019, 2019Download Item:

Abstract:
An organisation using personal data should document its
data governance processes to maintain and demonstrate compliance with
the General Data Protection Regulation (GDPR). As processes evolve,
their documentation should re
ect these changes with an assessment
showing ongoing compliance. Through this paper, we show how semantic
representations of processes are useful towards maintaining ongoing
GDPR compliance by using a test-driven approach that generates and
checks constraints for adherence to GDPR requirements. We first check
whether all required information has been documented, and then whether
it is compliant. We prototype our testing approach using a real-world
website's consent mechanism for GDPR compliance, and persist results
towards generating documentation. We use previously-published ontologies
to represent processes (GDPRov), consent (GConsent), and GDPR
(GDPRtEXT), with SHACL used to test requirement constraints.
Sponsor
Grant Number
Science Foundation Ireland (SFI)
13/RC/2106
Author's Homepage:
http://people.tcd.ie/pandithhttp://people.tcd.ie/delewis
http://people.tcd.ie/osulldps
Other Titles:
14th International Conference on Semantic Systems (SEMANTiCS 2019)Type of material:
Conference PaperCollections:
Availability:
Full text availableKeywords:
GDPR, Compliance, Consent, Data protection, SHACLSubject (TCD):
Digital Engagement , DATA PROTECTIONDOI:
http://dx.doi.org/10.5281/zenodo.3248802Source URI:
https://github.com/coolharsh55/GDPR-semantics-demohttps://openscience.adaptcentre.ie/projects/CDMM/compliance/
https://w3id.org/GDPRep/semantic-tests
Licences: