Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance
Modern privacy legislation covers a broad data scope and introduces technically challenging data management requirements. Computer science research has emerged to resolve technical challenges, but proposed system designs could benefit from deeper understandings of user workflows. Existing qualitativ...
Main Author: | |
---|---|
Other Authors: | |
Format: | Thesis |
Published: |
Massachusetts Institute of Technology
2023
|
Online Access: | https://hdl.handle.net/1721.1/151849 |
_version_ | 1826188972678709248 |
---|---|
author | Gulati-Gilbert, Sukhi |
author2 | Weitzner, Daniel J. |
author_facet | Weitzner, Daniel J. Gulati-Gilbert, Sukhi |
author_sort | Gulati-Gilbert, Sukhi |
collection | MIT |
description | Modern privacy legislation covers a broad data scope and introduces technically challenging data management requirements. Computer science research has emerged to resolve technical challenges, but proposed system designs could benefit from deeper understandings of user workflows. Existing qualitative work to understand privacy compliance on the ground gives both reason for optimism and alarm. There is a growing community of knowledgeable privacy professionals, but their effectiveness is hindered by organizational dynamics. We conduct 10 semi-structured interviews of privacy experts to further understand challenges faced by privacy practitioners. We find key challenges arising primarily from misaligned organizational incentives and difficulty in policy interpretation. We urge organizations to invest in and empower privacy engineers, researchers to explore different design directions, and policymakers to enable greater user recourse against corporations. We hope our work can help enable privacy respecting institutions and systems. |
first_indexed | 2024-09-23T08:07:33Z |
format | Thesis |
id | mit-1721.1/151849 |
institution | Massachusetts Institute of Technology |
last_indexed | 2024-09-23T08:07:33Z |
publishDate | 2023 |
publisher | Massachusetts Institute of Technology |
record_format | dspace |
spelling | mit-1721.1/1518492023-08-24T03:57:48Z Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance Gulati-Gilbert, Sukhi Weitzner, Daniel J. Liccardi, Ilaria Massachusetts Institute of Technology. Institute for Data, Systems, and Society Modern privacy legislation covers a broad data scope and introduces technically challenging data management requirements. Computer science research has emerged to resolve technical challenges, but proposed system designs could benefit from deeper understandings of user workflows. Existing qualitative work to understand privacy compliance on the ground gives both reason for optimism and alarm. There is a growing community of knowledgeable privacy professionals, but their effectiveness is hindered by organizational dynamics. We conduct 10 semi-structured interviews of privacy experts to further understand challenges faced by privacy practitioners. We find key challenges arising primarily from misaligned organizational incentives and difficulty in policy interpretation. We urge organizations to invest in and empower privacy engineers, researchers to explore different design directions, and policymakers to enable greater user recourse against corporations. We hope our work can help enable privacy respecting institutions and systems. S.M. 2023-08-23T16:13:22Z 2023-08-23T16:13:22Z 2023-06 2023-07-17T15:19:20.018Z Thesis https://hdl.handle.net/1721.1/151849 0009-0002-9803-1958 In Copyright - Educational Use Permitted Copyright retained by author(s) https://rightsstatements.org/page/InC-EDU/1.0/ application/pdf Massachusetts Institute of Technology |
spellingShingle | Gulati-Gilbert, Sukhi Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance |
title | Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance |
title_full | Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance |
title_fullStr | Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance |
title_full_unstemmed | Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance |
title_short | Privacy Law in Practice: Exploring Challenges to Modern Privacy Compliance |
title_sort | privacy law in practice exploring challenges to modern privacy compliance |
url | https://hdl.handle.net/1721.1/151849 |
work_keys_str_mv | AT gulatigilbertsukhi privacylawinpracticeexploringchallengestomodernprivacycompliance |