®®®® SIIA Público

Título del libro: Proceedings - 2018 International Conference On The Quality Of Information And Communications Technology, Quatic 2018
Título del capítulo: Extending ISO/IEC 29110 basic profile with privacy-by-design approach: A case study in the health care sector

Autores UNAM:
MIGUEL EHECATL MORALES TRUJILLO;
Autores externos:

Idioma:
Inglés
Año de publicación:
2018
Palabras clave:

Health care; ISO Standards; Software engineering; Engineering practices; GDPR; Health-care system; Healthcare sectors; Privacy requirements; Project development; Small software development organization; Very small entity; Software design


Resumen:

Privacy related elements have become an essential part of any information system. Previous studies reveal a scarcity of research on privacy in software processes, few engineering practices and a lack of methodological support to address privacy requirements in software systems. Introducing Privacy-by-Design (PbD) into software developments is an advantageous solution to tackle privacy related concerns. This paper presents an integration of PbD goals into the ISO/IEC 29110 Basic profile for small software development organizations. The most frequently encountered privacy goals as well as privacy addressing practices from previous methodological proposals were taken into account and included in the form of tasks, work products and roles. As a practical example, we describe a real life project development of a health care system that motivated the creation of the ISO/IEC 29110 PbD extension. © 2018 IEEE.


Entidades citadas de la UNAM: