Skip to main content
Top

2018 | OriginalPaper | Chapter

Proposal for a Privacy Impact Assessment Manual Conforming to ISO/IEC 29134:2017

Authors : Sanggyu Shin, Yoichi Seto, Kumi Hasegawa, Ryotaro Nakata

Published in: Computer Information Systems and Industrial Management

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

In this paper, we compared the requirements of previously developed manual and ISO/IEC 29134:2017 and analyzed the changes. As a result, there were no major differences in requirements. It is useful to conduct a privacy impact assessment (PIA) before actually operating the system to appropriately construct and operate a system that handles personal information. A manual (procedure manual) is necessary to implement PIA efficiently. In June 2017, ISO issued the ISO/IEC 29134:2017 as an international standard on PIA. Cause the past PIA manual developed based on ISO 22307:2008, development of a PIA manual conforming to ISO/IEC 29134:2017 was required. By our analysis, as a newly stated matter, ISO/IEC 29134:2017 explicitly indicated Due Diligence, stakeholder engagement, and risk countermeasures. Based on the analysis results, we propose a new PIA manual reflecting the requirements of ISO/IEC 29134:2017.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
1.
go back to reference Yoichi, S.: Privacy Impact Assessment (PIA) and Personal Information Protection. Chouokeizai-sha Inc., Tokyo (2010) Yoichi, S.: Privacy Impact Assessment (PIA) and Personal Information Protection. Chouokeizai-sha Inc., Tokyo (2010)
2.
go back to reference Yousuke, K.: The overseas trend of privacy impact assessment (PIA) and its application to Japan. In: Japan Data Communications, vol. 214, pp. 10–12. Japan Data Communications Association, Tokyo (2017) Yousuke, K.: The overseas trend of privacy impact assessment (PIA) and its application to Japan. In: Japan Data Communications, vol. 214, pp. 10–12. Japan Data Communications Association, Tokyo (2017)
3.
go back to reference Yoichi, S.: A Privacy Risk Countermeasure Technical Text: From the Concept of a Policy to the Risk Countermeasure Technology. Amazon Services International Inc., Tokyo (2017) Yoichi, S.: A Privacy Risk Countermeasure Technical Text: From the Concept of a Policy to the Risk Countermeasure Technology. Amazon Services International Inc., Tokyo (2017)
4.
go back to reference JETRO Brussel Office: Practical Handbook on the EU General Data Protection Rule (GDPR) (Introduction). JETRO, Brussel (2016) JETRO Brussel Office: Practical Handbook on the EU General Data Protection Rule (GDPR) (Introduction). JETRO, Brussel (2016)
5.
go back to reference JIPDEC: Regulation of the European Parliament and of the Council of on the protection of natural persons with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC (General Data Protection Regulation) (Japanese translation) (2016) JIPDEC: Regulation of the European Parliament and of the Council of on the protection of natural persons with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC (General Data Protection Regulation) (Japanese translation) (2016)
9.
go back to reference Satoru, N.: Development of guidelines for personal information impact assessment. J. Jpn. Soc. Secur. Manag. 29(1), 3–16 (2015) Satoru, N.: Development of guidelines for personal information impact assessment. J. Jpn. Soc. Secur. Manag. 29(1), 3–16 (2015)
10.
go back to reference Advanced Institute of Industrial technology: Privacy impact assessment manual for surveillance camera system. AIIT (2016) Advanced Institute of Industrial technology: Privacy impact assessment manual for surveillance camera system. AIIT (2016)
11.
go back to reference Yoichi, S.: Practical Privacy Risk Assessment Technique: Privacy by Design and Privacy Impact Assessment. Kindaikagakusha, Tokyo (2014) Yoichi, S.: Practical Privacy Risk Assessment Technique: Privacy by Design and Privacy Impact Assessment. Kindaikagakusha, Tokyo (2014)
12.
go back to reference Sadamu, T., Yoichi, S.: Privacy by Design. Automatic recognition, October issue, pp. 57–63. Japan Industrial Publishing Co. (2011) Sadamu, T., Yoichi, S.: Privacy by Design. Automatic recognition, October issue, pp. 57–63. Japan Industrial Publishing Co. (2011)
13.
go back to reference Hasegawa, K., Yoichi, S.: Analysis of Adoption of Privacy Impact Assessment in Each Country. CSS2017, Yamagata (2017) Hasegawa, K., Yoichi, S.: Analysis of Adoption of Privacy Impact Assessment in Each Country. CSS2017, Yamagata (2017)
14.
go back to reference Yukari, U., Kensuke, S., Keisuke, S., Tian, J., Michitomo, N., Yoichi, S.: A Study of Privacy Impact Assessment in the Multi-Stakeholder Process. CSS2016, Akita (2016) Yukari, U., Kensuke, S., Keisuke, S., Tian, J., Michitomo, N., Yoichi, S.: A Study of Privacy Impact Assessment in the Multi-Stakeholder Process. CSS2016, Akita (2016)
16.
go back to reference Ryotaro, N., Sanggyu, S., Yoichi, S.: Application of ISO/IEC 29100:2011 to the evaluation criteria of Privacy Impact Assessment. ISEC2017 (2017) Ryotaro, N., Sanggyu, S., Yoichi, S.: Application of ISO/IEC 29100:2011 to the evaluation criteria of Privacy Impact Assessment. ISEC2017 (2017)
17.
go back to reference Yoichi, S.: Privacy Impact Assessment Guideline Practice Text. Inpress R&D, Tokyo (2016) Yoichi, S.: Privacy Impact Assessment Guideline Practice Text. Inpress R&D, Tokyo (2016)
Metadata
Title
Proposal for a Privacy Impact Assessment Manual Conforming to ISO/IEC 29134:2017
Authors
Sanggyu Shin
Yoichi Seto
Kumi Hasegawa
Ryotaro Nakata
Copyright Year
2018
DOI
https://doi.org/10.1007/978-3-319-99954-8_40

Premium Partner