Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance

Modern privacy legislation covers a broad data scope and introduces technically challenging data management requirements. Computer science research has emerged to resolve technical challenges, but proposed system designs could benefit from deeper understandings of user workflows. Existing qualitativ...

Full description

Bibliographic Details
Main Author: Gulati-Gilbert, Sukhi
Other Authors: Weitzner, Daniel J.
Format: Thesis
Published: Massachusetts Institute of Technology 2023
Online Access:https://hdl.handle.net/1721.1/151849
_version_ 1826188972678709248
author Gulati-Gilbert, Sukhi
author2 Weitzner, Daniel J.
author_facet Weitzner, Daniel J.
Gulati-Gilbert, Sukhi
author_sort Gulati-Gilbert, Sukhi
collection MIT
description Modern privacy legislation covers a broad data scope and introduces technically challenging data management requirements. Computer science research has emerged to resolve technical challenges, but proposed system designs could benefit from deeper understandings of user workflows. Existing qualitative work to understand privacy compliance on the ground gives both reason for optimism and alarm. There is a growing community of knowledgeable privacy professionals, but their effectiveness is hindered by organizational dynamics. We conduct 10 semi-structured interviews of privacy experts to further understand challenges faced by privacy practitioners. We find key challenges arising primarily from misaligned organizational incentives and difficulty in policy interpretation. We urge organizations to invest in and empower privacy engineers, researchers to explore different design directions, and policymakers to enable greater user recourse against corporations. We hope our work can help enable privacy respecting institutions and systems.
first_indexed 2024-09-23T08:07:33Z
format Thesis
id mit-1721.1/151849
institution Massachusetts Institute of Technology
last_indexed 2024-09-23T08:07:33Z
publishDate 2023
publisher Massachusetts Institute of Technology
record_format dspace
spelling mit-1721.1/1518492023-08-24T03:57:48Z Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance Gulati-Gilbert, Sukhi Weitzner, Daniel J. Liccardi, Ilaria Massachusetts Institute of Technology. Institute for Data, Systems, and Society Modern privacy legislation covers a broad data scope and introduces technically challenging data management requirements. Computer science research has emerged to resolve technical challenges, but proposed system designs could benefit from deeper understandings of user workflows. Existing qualitative work to understand privacy compliance on the ground gives both reason for optimism and alarm. There is a growing community of knowledgeable privacy professionals, but their effectiveness is hindered by organizational dynamics. We conduct 10 semi-structured interviews of privacy experts to further understand challenges faced by privacy practitioners. We find key challenges arising primarily from misaligned organizational incentives and difficulty in policy interpretation. We urge organizations to invest in and empower privacy engineers, researchers to explore different design directions, and policymakers to enable greater user recourse against corporations. We hope our work can help enable privacy respecting institutions and systems. S.M. 2023-08-23T16:13:22Z 2023-08-23T16:13:22Z 2023-06 2023-07-17T15:19:20.018Z Thesis https://hdl.handle.net/1721.1/151849 0009-0002-9803-1958 In Copyright - Educational Use Permitted Copyright retained by author(s) https://rightsstatements.org/page/InC-EDU/1.0/ application/pdf Massachusetts Institute of Technology
spellingShingle Gulati-Gilbert, Sukhi
Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
title Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
title_full Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
title_fullStr Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
title_full_unstemmed Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
title_short Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
title_sort privacy law in practice exploring challenges to modern privacy compliance
url https://hdl.handle.net/1721.1/151849
work_keys_str_mv AT gulatigilbertsukhi privacylawinpracticeexploringchallengestomodernprivacycompliance