Analyzing website privacy requirements using a privacy goal taxonomy

被引:41
作者
Antón, AI [1 ]
Earp, JB [1 ]
Reese, A [1 ]
机构
[1] N Carolina State Univ, Coll Engn, Raleigh, NC 27695 USA
来源
IEEE JOINT INTERNATIONAL CONFERENCE ON REQUIREMENTS ENGINEERING, PROCEEDINGS | 2002年
关键词
D O I
10.1109/ICRE.2002.1048502
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Privacy has recently become a prominent issue in the context of electronic commerce websites. Increasingly, Privacy policies posted on such websites are receiving considerable attention from the government and consumers. We have used goal-mining, to extract pre-requirements goals from post-requirements text artifacts, as a technique for analyzing privacy policies. The identified goals are useful for analyzing implicit internal conflicts within privacy policies and conflicts with the corresponding websites and their manner of operation. These goals can be used to reconstruct the implicit requirements met by the privacy policies. This paper interrelates privacy policy and requirements for websites; it introduces a privacy goal taxonomy and reports the analysis of 23 Internet privacy policies for companies in three health care industries: pharmaceutical, health insurance and online drugstores. The evaluated taxonomy provides a valuable framework for requirements engineering practitioners, policy makers and regulatory bodies, and also benefits website users.
引用
收藏
页码:23 / 31
页数:9
相关论文
共 25 条
[1]   PROGRAM DESIGN BY INFORMAL ENGLISH DESCRIPTIONS [J].
ABBOTT, RJ .
COMMUNICATIONS OF THE ACM, 1983, 26 (11) :882-894
[2]   An integrated scenario management strategy [J].
Alspaugh, TA ;
Antón, AI ;
Barnes, T ;
Mott, BW .
IEEE INTERNATIONAL SYMPOSIUM ON REQUIREMENTS ENGINEERING, PROCEEDINGS, 1999, :142-149
[3]  
ANTON A, 1997, THESIS GEORGIA I TEC
[4]   Deriving goals from a use-case based requirements specification [J].
Antón A.I. ;
Carter R.A. ;
Dagnino A. ;
Dempster J.H. ;
Siege D.F. .
Requirements Engineering, 2001, 6 (1) :63-73
[5]   Goal-based requirements analysis [J].
Anton, AI .
PROCEEDINGS OF THE SECOND INTERNATIONAL CONFERENCE ON REQUIREMENTS ENGINEERING, 1996, :136-144
[6]  
Antón AI, 2001, FIFTH IEEE INTERNATIONAL SYMPOSIUM ON REQUIREMENTS ENGINEERING, PROCEEDINGS, P138
[7]   The use of goals to surface requirements for evolving systems [J].
Anton, AI ;
Potts, C .
PROCEEDINGS OF THE 1998 INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, 1998, :157-166
[8]  
ANTON AI, 2001, E COMMERCE SECURITY, P29
[9]  
ANTON AI, 2001, TR200114 NCSU
[10]   TRUSTe: An Online Privacy Seal Program [J].
Benassi, P .
COMMUNICATIONS OF THE ACM, 1999, 42 (02) :56-59