DocumentCode :
2071824
Title :
Privacy arguments: Analysing selective disclosure requirements for mobile applications
Author :
Tun, Thein Than ; Bandara, Arosha K. ; Price, Blaine A. ; Yu, Yijun ; Haley, Charles ; Omoronyia, Inah ; Nuseibeh, Bashar
Author_Institution :
Open Univ., Milton Keynes, UK
fYear :
2012
fDate :
24-28 Sept. 2012
Firstpage :
131
Lastpage :
140
Abstract :
Privacy requirements for mobile applications offer a distinct set of challenges for requirements engineering. First, they are highly dynamic, changing over time and locations, and across the different roles of agents involved and the kinds of information that may be disclosed. Second, although some general privacy requirements can be elicited a priori, users often refine them at runtime as they interact with the system and its environment. Selectively disclosing information to appropriate agents is therefore a key privacy management challenge, requiring carefully formulated privacy requirements amenable to systematic reasoning. In this paper, we introduce privacy arguments as a means of analysing privacy requirements in general and selective disclosure requirements (that are both content- and context-sensitive) in particular. Privacy arguments allow individual users to express personal preferences, which are then used to reason about privacy for each user under different contexts. At runtime, these arguments provide a way to reason about requirements satisfaction and diagnosis. Our proposed approach is demonstrated and evaluated using the privacy requirements of BuddyTracker, a mobile application we developed as part of our overall research programme.
Keywords :
cloud computing; data privacy; formal verification; inference mechanisms; mobile computing; security of data; BuddyTracker; cloud-based services; content-sensitive requirements; context-sensitive requirements; general disclosure requirements; key privacy management challenge; mobile applications; mobile computing devices; privacy arguments; privacy requirements; requirements engineering; selective disclosure requirement analysis; systematic reasoning; Calculus; Context; Mobile communication; Organizations; Privacy; Runtime; Security; mobile applications; privacy arguments; privacy requirements;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Requirements Engineering Conference (RE), 2012 20th IEEE International
Conference_Location :
Chicago, IL
ISSN :
1090-750X
Print_ISBN :
978-1-4673-2783-1
Electronic_ISBN :
1090-750X
Type :
conf
DOI :
10.1109/RE.2012.6345797
Filename :
6345797
Link To Document :
بازگشت