Regulatory-Compliant Data Management

نویسندگان

  • Radu Sion
  • Marianne Winslett
چکیده

Digital societies and markets increasingly mandate consistent procedures for the access, processing and storage of information. In the United States alone, over 10,000 such regulations can be found in financial, life sciences, health care and government sectors, including the Gramm Leach Bliley Act, Health Insurance Portability and Accountability Act, and Sarbanes Oxley Act. A recurrent theme in these regulations is the need for regulatory compliant data management as an underpinning to ensure data confidentiality, access integrity and authentication; provide audit trails, guaranteed deletion, and data migration; and deliver Write Once Read Many (WORM) assurances, essential for enforcing long term data retention and life cycle policies. While each regulation has its own unique characteristics, certain assurance features are broadly mandated: Guaranteed Data Retention. The goal of compliant data management is to support WORM semantics: once written, data cannot be undetectably altered or deleted before the end of their regulation mandated life span, even with physical access to its host. Quick Lookup and Queries. In light of the massive amounts of data subject to compliance regulations, the regulatory requirement for quick data retrieval can only be met by accessing the data through indexing structures. Such indexes must be efficient enough to support a target throughput, and must be secured against insiders who wish to remove or alter compromising information before the end of its mandated lifespan. Secure Deletion. Once data has reached the end of its lifespan, it can (and in some cases must) be deleted. Deleted records should not be recoverable even with unrestricted access to the underlying medium; moreover, after

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Global GAP Standard Compliance and Profitability: A Case Study of Smallholder Pineapple Farmers in Akuapem South of Ghana

The present study examined the perception of smallholder pineapple farmers on Global GAP standard compliance, assessed compliant farmers’ rate of adherence to standard requirements, and compared the average farm profit of Global GAP compliant and non-compliant pineapple farmers in Akuapem South Municipal Area of Ghana. The study used mainly farm level data solicited from 150 randomly selected p...

متن کامل

Integrating the BIM Rule Language into Compliant Design Audit Processes

Extracting the right information from Building Information Models (BIM) and Regulatory Knowledge Models (RKM) is a core activity in computer-aided compliance audit processes. Despite many research attempts, however, this has remained a challenging task. One reason is that BIM is necessarily a highly complex model. Representing all components of such a complex object as a building is a huge chal...

متن کامل

Risk Management and Regulatory Compliance: A Data Mining Framework Based on Neural Network Rule Extraction

The recent introduction of various regulatory standards such as Basel II, Sarbanes-Oxley, and IFRS stimulates the need to develop new types of information systems based on data mining that will help improve the quality and automation of the decisions that need to be taken. Although neural networks have been frequently adopted in data mining applications, their opacity and black box character pr...

متن کامل

ISA software suite: supporting standards-compliant experimental annotation and enabling curation at the community level

UNLABELLED The first open source software suite for experimentalists and curators that (i) assists in the annotation and local management of experimental metadata from high-throughput studies employing one or a combination of omics and other technologies; (ii) empowers users to uptake community-defined checklists and ontologies; and (iii) facilitates submission to international public repositor...

متن کامل

Mediante: a web-based microarray data manager

UNLABELLED Mediante is a MIAME-compliant microarray data manager that links together annotations and experimental data. Developed as a J2EE three-tier application, Mediante integrates a management system for production of long oligonucleotide microarrays, an experimental data repository suitable for home made or commercial microarrays, and a user interface dedicated to the management of microar...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2007