The Architecture of Privacy: On Engineering Technologies that Can Deliver Trustworthy Safeguards (Paperback)

Courtney Bowman, Ari Gesher, John K Grant, Daniel Slate

  • 出版商: O'Reilly
  • 出版日期: 2015-10-06
  • 定價: $1,020
  • 售價: 8.0$816
  • 語言: 英文
  • 頁數: 200
  • 裝訂: Paperback
  • ISBN: 1491904011
  • ISBN-13: 9781491904015
  • 相關分類: Data Science資訊安全軟體工程
  • 立即出貨 (庫存=1)

商品描述

Technology’s influence on privacy not only concerns consumers, political leaders, and advocacy groups, but also the software architects who design new products. In this practical guide, experts in data analytics, software engineering, security, and privacy policy describe how software teams can make privacy-protective features a core part of product functionality, rather than add them late in the development process.

Ideal for software engineers new to privacy, this book helps you examine privacy-protective information management architectures and their foundational components—building blocks that you can combine in many ways. Policymakers, academics, students, and advocates unfamiliar with the technical terrain will learn how these tools can help drive policies to maximize privacy protection.

  • Restrict access to data through a variety of application-level controls
  • Use security architectures to avoid creating a single point of trust in your systems
  • Explore federated architectures that let users retrieve and view data without compromising data security
  • Maintain and analyze audit logs as part of comprehensive system oversight
  • Examine case studies to learn how these building blocks help solve real problems
  • Understand the role and responsibilities of a Privacy Engineer for maintaining your privacy architecture

商品描述(中文翻譯)

科技對隱私的影響不僅關係到消費者、政治領導人和倡導團體,也關係到設計新產品的軟體架構師。在這本實用指南中,數據分析、軟體工程、安全和隱私政策方面的專家描述了軟體團隊如何將保護隱私的功能作為產品功能的核心部分,而不是在開發過程的後期添加。

這本書對於新接觸隱私的軟體工程師非常有幫助,它可以幫助你研究保護隱私的信息管理架構及其基礎組件,這些組件可以以多種方式組合。對於不熟悉技術領域的政策制定者、學者、學生和倡導者,他們將了解這些工具如何幫助推動政策以最大程度地保護隱私。

本書包括以下內容:
- 通過各種應用層控制限制對數據的訪問
- 使用安全架構避免在系統中創建單一的信任點
- 探索聯邦架構,讓用戶在不犧牲數據安全性的情況下檢索和查看數據
- 作為全面系統監督的一部分,維護和分析審計日誌
- 通過案例研究了解這些組件如何解決實際問題
- 了解隱私工程師在維護隱私架構方面的角色和責任