Identification of a new method for modeling threats to privacy in Cloud environments for ensuring privacy requirements in accordance with data protection legislation
Journal Title: International Journal of Engineering and Science Invention - Year 2017, Vol 6, Issue 10
Abstract
Cloud computing others the prospect of on-demand, elastic computing, provided as a utility service, and it is revolutionizing many domains of computing. Compared with earlier methods of processing data, cloud computing environments provide significant benefits, such as the availability of auto-mated tools to assemble, connect, configure and reconfigure virtualized re-sources on demand. These make it much easier to meet organizational goals as organizations can easily deploy cloud services. However, the shift in paradigm that accompanies the adoption of cloud computing is increasingly giving rise to security and privacy considerations relating to facets of cloud computing such as multi-tenancy, trust, loss of control and accountability. Consequently, cloud platforms that handle sensitive information are required to deploy technical measures and organizational safeguards to avoid data protection break-downs that might result in enormous and costly damages. Sensitive information in the context of cloud computing encompasses data from a wide range of different areas and domains. Data concerning health is a typical example of the type of sensitive information handled in cloud computing environments, and it is obvious that most individuals will want information related to their health to be secure. Hence, with the growth of cloud computing in recent times, privacy and data protection requirements have been evolving to protect individuals against surveillance and data disclosure. Some examples of such protective legislation are the EU Data Protection Directive (DPD) and the US Health Insurance Portability and Accountability Act (HIPAA), both of which demand privacy preservation for handling personally identifiable information. There have been great efforts to employ a wide range of mechanisms to enhance the privacy of data and to make cloud platforms more secure. Techniques that have been used include: encryption, trusted platform module, secure multi-party computing, homomorphic encryption, anonymization, container and sandboxing technologies. However, it is still an open problem about how to correctly build usable privacy-preserving cloud systems to handle sensitive data securely due to two research challenges. First, existing privacy and data protection legislation demand strong security, transparency and audibility of data usage. Second, lack of familiarity with a broad range of emerging or existing security solutions to build efficient cloud systems. This dissertation focuses on the design and development of several systems and methodologies for handling sensitive data appropriately in cloud computing environments. The key idea behind the proposed solutions is en-forcing the privacy requirements mandated by existing legislation that aims to protect the privacy of individuals in cloud-computing platforms. We begin with an overview of the main concepts from cloud computing, followed by identifying the problems that need to be solved for secure data management in cloud environments. It then continues with a description of background material in addition to reviewing existing security and privacy solutions that are being used in the area of cloud computing. Our first main contribution is a new method for modelling threats to privacy in cloud environments which can be used to identify privacy requirements in accordance with data protection legislation. This method is then used to propose a framework that meets the privacy requirements for handling data in the area of genomics. That is, health data concerning the genome (DNA) of individuals. Our second contribution is a system for preserving privacy when publishing sample availability data. This system is noteworthy because it is capable of cross-linking over multiple datasets. This research work continues by proposing a system called ScaBIA for privacy-preserving brain image analysis in the cloud. The final section of the research work describes a new approach for quantifying and minimizing the risk of operating system kernel exploitation, in addition to the development of a system call interposition reference monitor for Lind - a dual sandbox.
Authors and Affiliations
Prof. Dr. G. Manoj Someswar, K. Madhavi Latha
El Aula Virtual Como Recurso Tecnológico. Caso: Universidad Nacional De Costa Rica - Sede Regional Chorotega – Guanacaste – Costa Rica
The variants changes presented by the society for the use of ICT for education at higher level takes every day stronger, giving rise to new tools that can be used to give the student a completely updated quality educatio...
Analysis of Transit User Satisfaction using Structural Equation Models
This study aims to understand the relationships among various transit system and service variabl es and transit user satisfaction. The dataset is utilized to test the hypothesis postulated in this study using Struct ural...
Development of Upper Limb Assistive Robotic Devices for Arm Functionality Rehabilitation- A Review
Use of assistive robotic devices and exoskeletons help to achieve the main purpose of rehabilitation and increased functionality in medical sector. In order to treat patients after stroke or with a condition of myastheni...
The Experimental Comparison on the Various LNA Circuit Topologies for Wideband Applications
This paper critically explains comparison of the various low noise amplifier (LNA) circuit topologies using pHEMT technologies for wideband and ultra-band applications. In addition to the conventional techniques, all des...
A Review Paper Design and Development of a Smart Mirror Using Raspberry Pi
In Today Society Information Is Available To Our Phones, Our Laptops, Our Desktop And More. The One That Concerns The Common Man Is Now It Can Be Used To Make Day To Do Life Easier And Faster .This Paper Design And Devel...