Building data management capabilities to address data protection regulations: Learnings from EU-GDPR

نویسندگان

چکیده

The European Union’s General Data Protection Regulation (EU-GDPR) has initiated a paradigm shift in data protection toward greater choice and sovereignty for individuals more accountability organizations. Its strict rules have inspired regulations other parts of the world. However, many organizations are facing difficulty complying with EU-GDPR: these new types cannot be addressed by an adaptation contractual frameworks, but require fundamental reconceptualization how companies store process personal on enterprise-wide level. In this paper, we introduce resource-based view as theoretical lens to explain lengthy trajectories towards compliance argue that build dedicated, management capabilities. Following design science research approach, propose theoretically empirically grounded capability model EU-GDPR integrates interpretation legal texts, findings from EU-GDPR-related publications, practical insights focus groups experts 22 four projects. Our study advances interdisciplinary at intersection between IS law: First, proposed adds regulatory literature connecting abstract requirements three capabilities resources required their implementation, second, it provides perspective extends fragmented body EU-GDPR. Practitioners may use assess current status set up systematic approaches increasing number regulations.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Pattern Catalog for GDPR Compliant Data Protection

Today’s digital Business Models challenge the concept of privacy of the previous century. As a legislative approach to keep up with the rapid technological change, the European Union has passed the General Data Protection Regulation (GDPR), which will be effective in May 2018. For companies, this implies extensive changes in established processes and new organizational duties. With this work, w...

متن کامل

Data protection issues pertaining to social networking under EU law

Purpose – The purpose of this paper is to examine how the introduction of new communication channels facilitates interactive information sharing and collaboration between various actors over social networking services and how social networking fits in the existing European legal framework on data protection. The paper also aims to discuss some specific data protection issues, focusing on the ro...

متن کامل

Facebook and Its EU Users - Applicability of the EU Data Protection Law to US Based SNS

The present paper examines the problem of applicable data protection law in a relationship between EU users and non-EU based Social Networking Site (SNS). The analysis will be conducted on the example of Facebook, which is one of the most popular SNS. The goal of the paper is to examine whether European users of Facebook can rely on their national data protection legislations in case of a priva...

متن کامل

A Solution to View Management to Build a Data Warehouse

Several techniques exist to select and materialize a proper set of data in a suitable structure that manage the queries submitted to the online analytical processing systems. These techniques are called view management techniques, which consist of three research areas: 1) view selection to materialize, 2) query processing and rewriting using the materialized views, and 3) maintaining materializ...

متن کامل

How To Satisfy EU Directive On Data Protection In a Data Warehouse?

The paper deals with meeting the required level of measures to satisfy the EU Directive on data protection in a data warehouse system. A data warehouse is an integrated and a time-varying collection of data from many diverse and heterogeneous sources, used primarily by business users.

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Journal of Information Technology

سال: 2023

ISSN: ['2775-6734']

DOI: https://doi.org/10.1177/02683962221141456