Privacy and security concerns are one of the relevant action fields of regulators. The rise of privacy concerns is, due to the capabilities of computing systems to aggregate information to generate profiles or other aggregates that impact the personal life of people. This has led to regulations like the UE General Data Protection Regulation (GDPR) and to the spread of initiatives aiming to raise awareness in people. Data show that privacy problems are known to people; however, practice of privacy and security aware behavior seems to be oddly not part of the habits of the same population. In this paper we propose a model of privacy and security effectiveness promotion strategies and a related evaluation method. The strategies we are interested in aim at aligning actual behavior to awareness levels. We derive an example of strategy starting from literature data and propose an analysis method that is based on Pythia, a tool for the analysis of graph-based probabilistic cause-and-effect models.

Evaluating the Effectiveness of Privacy and Security Promotion Strategies

Mastroianni M.
2023-01-01

Abstract

Privacy and security concerns are one of the relevant action fields of regulators. The rise of privacy concerns is, due to the capabilities of computing systems to aggregate information to generate profiles or other aggregates that impact the personal life of people. This has led to regulations like the UE General Data Protection Regulation (GDPR) and to the spread of initiatives aiming to raise awareness in people. Data show that privacy problems are known to people; however, practice of privacy and security aware behavior seems to be oddly not part of the habits of the same population. In this paper we propose a model of privacy and security effectiveness promotion strategies and a related evaluation method. The strategies we are interested in aim at aligning actual behavior to awareness levels. We derive an example of strategy starting from literature data and propose an analysis method that is based on Pythia, a tool for the analysis of graph-based probabilistic cause-and-effect models.
2023
9783031371196
9783031371202
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11369/454351
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 3
  • ???jsp.display-item.citation.isi??? ND
social impact