Please use this identifier to cite or link to this item: http://hdl.handle.net/10071/32211
Author(s): Antunes, P.
Guimarães, N.
Date: 2024
Title: Guiding the implementation of data privacy with microservices
Journal title: International Journal of Information Security
Volume: 23
Number: 6
Pages: 3591 - 3608
Reference: Antunes, P., & Guimarães, N. (2024). Guiding the implementation of data privacy with microservices. International Journal of Information Security, 23(6), 3591-3608. https://doi.org/10.1007/s10207-024-00907-y
ISSN: 1615-5262
DOI (Digital Object Identifier): 10.1007/s10207-024-00907-y
Keywords: Privacy by design
Microservices
Data privacy implementation
Decision framework
Abstract: Privacy by design is nowadays recognized as essential in bringing data privacy into software systems. However, developers still face many challenges in reconciling privacy and software requirements and implementing privacy protections in software systems. One emerging trend is the adoption of microservices architectures—they bring in some qualities that can benefit privacy by design. The main goal of this study is to adapt privacy by design to the qualities brought by microservices. The main focus is at the architectural level, where the main structural decisions are made. A systematic literature review is adopted to identify a set of privacy models that underscore significant differences in software systems’ protection using microservices. From the literature review, a decision framework is developed. The decision framework provides guidance and supports design decisions in implementing data privacy using microservices. The framework helps select and integrate different privacy models. An illustration of using the framework, which considers the design of an electronic voting system, is provided. This study contributes to closing the gap between regulation and implementation through design, where decisions related to data privacy are integrated with decisions on architecting systems using microservices.
Peerreviewed: yes
Access type: Open Access
Appears in Collections:ISTAR-RI - Artigos em revistas científicas internacionais com arbitragem científica

Files in This Item:
File SizeFormat 
article_105016.pdf2,43 MBAdobe PDFView/Open


FacebookTwitterDeliciousLinkedInDiggGoogle BookmarksMySpaceOrkut
Formato BibTex mendeley Endnote Logotipo do DeGóis Logotipo do Orcid 

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.