Open Standards for Unified and Secure Data Privacy Policies in context of Trusted Social Networking

Authors

  • Varun M Deshpande  Department of Computer Science & Engineering, Jain University, Bangalore, India
  • Dr. Mydhili K. Nair  Professor, Department of Information Science & Engineering, M S Ramaiah Institute of Technology, Bangalore, India

Keywords:

Privacy, Policies, Trust, Social Networking, Data Security, Open Standards, Unified Policy

Abstract

Social Networking sites(SNS) like Facebook and Google provide Free services to their users! They leverage on external revenue generating mechanisms. They even resort to ‘leasing’ out user generated data to third party entities such as data mining, data analytics companies etc. “So What?” - there is a chance that the data analysts or advertisers misuse user data (especially personally identifiable information) adversely. Each company creates their own privacy & data sharing policy which is subject to interpretation by their legacl teams. There is need to find workable solutions in order to ensure that there is no scope for misuse or privacy breach by companies. Privacy policies and legislations play a vital role in protection of data security and privacy of user’s digital identity from being compromised. A holistic and technically sound policy is very important to set the expectations and regulations for service providers & law enforcement agencies in order to uphold the rights of users around the world. We believe that a unified secure data privacy policy for data sharing that are geo agnostic is a necessity for social networking. We propose Open Standards for such technically correct policies that include Certifying Agencies that audit the service providers in real time. These policies needs to be revised on periodic basis by including all relevant stake holders; and needs to be enforced on social networking service providers in order to move towards Trusted Social Networking.

References

  1. Chi Zhang, Jinyuan Sun, Xiaoyan Zhu and Yuguang Fang, "Privacy and security for online social networks: challenges and opportunities" Published in IEEE Network Volume 24, Issue 4 in 2010, Pg 13-18
  2. Steven Warburton and Stylianos Hatzipanagos, "Digital Identity and Social Media", Published in 2012 by IGI Global. Print Isbn-10: 1-4666-1915-5
  3. Deyan Chen, Hong Zhao, “Data Security and Privacy Protection Issues in Cloud Computing”, International Conference on Computer Science and Electronics Engineering, 2012
  4. Rein Turn, "Privacy Protection in the f’s", Published in IEEE Symposium of Security and Privacy in 1982
  5. Rein Turn, "Information Privacy Issues for the 1990’s", Published in
  6. IEEE Symposium of Security and Privacy, 1990
  7. Dongxi Liu, Elisa Bertino and Xun Yi. "Privacy of Outsourced k-Means Clustering", Proc. 9th ACM Symposium on Information, Computer and Communications Security (ASIACCS 2014), Kyoto, Japan, June 4-6, 2014
  8. Prof Dr. Franziska Boehm, “A comparison between US and EU data protection legislation for law enforcement purposes” DOCUMENT REQUESTED BY THE COMMITTEE ON CIVIL LIBERTIES, JUSTICE AND HOME AFFAIRS (LIBE), European Parliament, September 2015. Link: http://www.europarl.europa.eu/RegData/etudes/STUD/2015/536459/IPOL_STU(2015)536459_EN.pdf (Last viewed on 21st Aug 2017)
  9. http://europa.eu/rapid/press-release_MEMO-15-5612_en.htm (Last viewed on 21st Aug 2017)
  10. http://ec.europa.eu/justice/data-protection/document/studies/files/final_report_india_en.pdf (Last viewed on 21st Aug 2017)
  11. R. Gross and A. Acquisti,  “Information revelation and privacy in online social networks.” In Proceedings of the 2005 ACM workshop on Privacy in the electronic society, pages 71–80, 2005.
  12. N. B. Ellison, J. Vitak, C. Steinfield, R. Gray, and C. Lampe, “Negotiating privacy concerns and social capital needs in a social media environment.”, In Privacy online, pages 19–32. Springer, 2011
  13. VidyaLakshmi B. S., Raymond K. Wong, Chi-Hung Chi, “Privacy Scoring for Social network users as a service”, published in “2015 IEEE Inernational Conference on Service Computing”, 2015
  14. Varun M Deshpande, Dr. Mydhili K. Nair (2014), Anveshana – Search for the Right Service, In Proceedings published by IEEE of International Conference of Convergence of Technology, Pune, Maharastra (India), ISBN 978-1-4799-3759-2
  15. http://deity.gov.in/ Department of Electronics and Information technology (DeitY) (Last Accessed on 22nd Feb, 2016)
  16. Azizul Yaakop et al., "Like It or Not: Issue of Credibility in Facebook Advertising", 2013 , Published by Canadian Center of Science and Education
  17. Kiran P et al., “SW-SDF Based Personal Privacy with QIDB Anonymization Method”, 2012, International Journal of Advanced Computer Science and Applications
  18. SIMON WECHSLER, “The Right to Remember: The European Convention on Human Rights and the Right to Be Forgotten” published in Columbia Journal of Law and Social Problems, 2015  
  19. P. W. Singer, “Stuxnet and Its Hidden Lessons on the Ethics of Cyberweapons”, accepted for inclusion in Case Western Reserve Journal of International Law by an authorized administrator of Case Western Reserve University School of Law Scholarly Commons. 2015
  20. Elisa Bertino, “Trusted Identities in Cyberspace”, Published in IEEE Internet Computing , Volume 16 Issue 1, 2012
  21. Varun M Deshpande, Dr. Mydhili K. Nair, Ayush Bihani, "Optimization of Security as an Enabler for Cloud Services and Applications", to be published by Springer in edited volume titled "Cloud Computing for Optimization: Foundations, Applications, Challenges”, to be published in "Studies in Big Data" book series, Springer (2017)
  22. Varun M Deshpande, Dr. Mydhili K. Nair (2017), “A Novel Framework for Privacy Preserving Ad-Free Social Networking”, published in Proceedings by IEEE of 2017 2nd International Conference for Convergence in Technology (I2CT), Pune, Maharastra (India), ISBN 978-1-5090-4307-1/17
  23. Varun M Deshpande, Dr Mydhili K. Nair, “Trust based Novel Secure Data Sharing Policy Framework for Social Networking”, published in  International Journal of Engineering Research in Computer Science and Engineering (IJERCSE), Vol4, Issue 6, June 2017, Online ISSN- 2394-2320, with Impact Factor 4.890
  24. https://www.flipkart.com/pages/privacypolicy (Last accessed on 21st Aug 2017)
  25. Google Faces Legal Hurdles Under Brazilian Internet Law : https://ccgnludelhi.wordpress.com/2016/11/30/google-faces-legal-hurdles-under-brazilian-internet-law/ (Last accessed on 21st Aug 2017)
  26. OWASP Secure Coding Practices Quick Reference Guide Link:  https://www.owasp.org/images/0/08/OWASP_SCP_Quick_Reference_Guide_v2.pdf  (Last accessed on 21st Aug 2017)
  27. HTTP Strict Transport Security Cheat Sheet Link: https://www.owasp.org/index.php/HTTP_Strict_Transport_Security_Cheat_Sheet (Last accessed on 21st Aug 2017)

Downloads

Published

2017-08-31

Issue

Section

Research Articles

How to Cite

[1]
Varun M Deshpande, Dr. Mydhili K. Nair, " Open Standards for Unified and Secure Data Privacy Policies in context of Trusted Social Networking, IInternational Journal of Scientific Research in Computer Science, Engineering and Information Technology(IJSRCSEIT), ISSN : 2456-3307, Volume 2, Issue 4, pp.796-807, July-August-2017.