Privacy Engineering: Privacy-by-Policy vs. Privacy-by-Architecture

There are two main approaches to engineering privacy protection: privacy-by-policy and privacy-by-architecture. Privacy-by-policy relies on the Fair Information Practices and notice and choice. Privacy-by-architecture leverages privacy protective technologies. While they are normally considered dichotomous, privacy experts recommend a hybrid approach that integrates these two [...]

Share

Components of a Privacy Policy

Enterprise privacy policies and privacy programs are essential. While policies alone cannot prevent data breaches or misuse of personal information, they are a good step in ensuring transparency and privacy-friendly practices. A privacy policy should contain the following key components: notice; consumer choice; access and correction; security; and [...]

Share

Android Phones Secretly Tracking Users?

In April 2011, Google was at the center of public scrutiny, after security experts, researchers and hackers revealed that its Android mobile devices were continuously collecting user’s location data. Contrary to Google’s claims, it was discovered that this information was tied to a numerical identifier. This article looks at numerous responses to this discovery, in the US and [...]

Share

Facebook’s Data-Sharing Mistake

On Tuesday, January 18 2011, Facebook announced its decision to suspend the controversial feature allowing developers to access users’ home addresses and mobile numbers. The announcement comes just days after the social networking website decided to share users’ contact information with third party app developers. Privacy watchdogs have long decried Facebook’s privacy and security failings, which have affected its over 500 million users [...]

Share

Fair Information Practice Principles

The Fair Information Practices Principles form the backbone of privacy law in the United States and the concepts they include have played a significant role in the development of data protection laws around the globe. Understanding the Fair Information Practice Principles and how they should be implemented is critical to comply with the various privacy laws that protect personal [...]

Share