Www.oasis-open.org Privacy Management Reference Model (PMRM) A formal reference model for data privacy.

Slides:



Advertisements
Similar presentations
September, 2005What IHE Delivers 1 Basic Patient Privacy Consents (BPPC) IHE Vendors Workshop 2006 IHE Patient Care Coordination Education
Advertisements

Supporting National e-Health Roadmaps WHO-ITU-WB joint effort WSIS C7 e-Health Facilitation Meeting 13 th May 2010 Hani Eskandar ICT Applications, ITU.
Advisory Group Wrap-up Richard Jones GM Delivery Service, GS1.
Privacy By Design Draft Privacy Use Case Template
Cloud computing security related works in ITU-T SG17
Standardization Framework (Myanmar) Ye Yint Win President Myanmar Computer Professionals Association Chair-Standardization Committee, Myanmar Computer.
Carl A. Foster.  What is SAML?  Security Assertion and Markup Language is an XML-based standard for exchanging authentication and authorization between.
University of California, Davis1 Draft Wireless Network Policy Administrative Computing Coordinating Council September 10, 2001.
1 Overview of Other Global Networks Exchange Network User Group Meeting April 2006.
Geneva, Switzerland, September 2014 ENISA role in ICT standardization Sławomir Górniak, ENISA ITU Workshop on “ICT.
Semantic Interoperability Community of Practice (SICoP) Semantic Web Applications for National Security Conference Hyatt Regency Crystal City, Regency.
The topics addressed in this briefing include:
European Union Agency for Network and Information Security Follow ENISA: ENISA and standards Sławomir Górniak European Union Agency.
1 Joyce Sensmeier MS, RN, FHIMSS, HIMSS Glen Marshall, Siemens Healthcare Charles Parisot, GE Healthcare IHE's contribution to standards harmonization.
Standards for Shared ICT Jeju, 13 – 16 May 2013 Gale Lightfoot Senior Staff Program Manager, Office of the CTO, SPB Cisco ATIS Cybersecurity Standards.
HIT Policy Committee Accountable Care Workgroup – Kickoff Meeting May 17, :00 – 2:00 PM Eastern.
Query Health Business Working Group Kick-Off September 8, 2011.
SCC Activities C. Tilton. Standards Are applied to SOMETHING Within some CONTEXT Something = ID Ecosystem Context = Use Cases 2.
The Future of the BPP What’s Next? Executive Committee Leadership Timeline-Urgency Decision making processes.
HL7 Webinar: Mobile Health Chuck Jaffe Austin Kreisler John Quinn 19 March 2012.
Copyright 2004Connected Vehicle Trade Association™ 1 Connected Vehicle Stakeholders Map.
WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ Identity and Privacy: the.
Health IT Policy Committee Federal Health IT Strategic Plan September 9, 2015.
Standards Categories February 24, 2006 HITSP Inventory of Standards Inventories Committee Edits.
Doc.: IEEE /0047r1 Submission SGIP Liaison Report to IEEE Following the SGIP (2.0) Inaugural Conference Nov 5-7, 2013 Date:
Integrating Official Statistics and Geospatial Information – ABS experience Frank Yu First Assistant Statistician Project Management and Infrastructure.
Gershon Janssen 11 th October 2011 London Privacy Management Reference Model International Cloud Symposium 2011.
Presentation annotated by Gail Magnuson LLC with permission from Using Information Technologies to Empower and Transform.
HIT Policy Committee NHIN Workgroup Recommendations Phase 2 David Lansky, Chair Pacific Business Group on Health Danny Weitzner, Co-Chair Department of.
Security Standards and Threat Evaluation. Main Topic of Discussion  Methodologies  Standards  Frameworks  Measuring threats –Threat evaluation –Certification.
Overview Privacy Management Reference Model and Methodology (PMRM) John Sabo Co-Chair, PMRM TC.
10/20/ The ISMS Compliance in 2009 GRC-ISMS Module for ISO Certification.
0 Connectathon 2009 Registration Bob Yencha Webinar | August 28, 2008 enabling healthcare interoperability.
Geneva, Switzerland, September 2014 Considerations for implementing secure enterprise mobility Eileen Bridges Aetna GIS Director.
Identity in the Cloud (ID-Cloud) Towards standardizing Cloud Identity
Federal Trade Commission U.S. Rules on Privacy and Data Security Organization for International Investment General Counsel Conference October 16, 2009.
ONC’s Proposed Strategy on Governance for the Nationwide Health Information Network Following Public Comments on RFI HIT Standards Committee Meeting September.
1 The ISTPA Privacy Framework John Sabo Manager, Security, Privacy and Trust Initiatives Computer Associates Workshop on the Relationship between Security.
United States Department of Justice Achieving Information Interoperability and Business Agility The Justice Reference Architecture:
Privacy and Security Solutions For Interoperable Health Information Exchange Presented by Linda Dimitropoulos, PhD RTI International Presented at AHRQ.
Data Integration Efforts and Challenges Scott M. Bilder, Ph.D. Institute for Health, Health Care Policy, and Aging Research Rutgers, The State University.
Federal Advisory Committees Introducing Future Topics and Adding Workgroups Discussion Document October 2009 ** Pre-decisional Draft Do not Disclose **
DOCUMENT #:GSC15-PLEN-82r2 FOR:Presentation SOURCE:ATIS AGENDA ITEM: PLEN 6.14 CONTACT(S): Andrew White ATIS’
Nairobi, Kenya, 30 – 31 July 2010 Measuring Interoparability: From Theory to Practice Dr. Ulrich Sandl, Head of Division Federal Ministry of Economics.
Educational Template Chapter 11 Data Privacy and Security Ross Fraser Chapter 11 Data Privacy & Security.
Information Architecture The Open Group UDEF Project
September 8, 2015 Update Housing Committee September 8, 2015 Neighborhood Revitalization Plan for Dallas.
1 Presentation for Permanent Delegations (11 September 2002) Philippe Quéau UNESCO Director Information Society Division World Summit on the Information.
Government and Industry IT: one vision, one community Vice Chairs April Meeting Agenda Welcome and Introductions GAPs welcome meeting with ACT Board (John.
OASIS Cloud Authorization TC (CloudAuthZ) Rakesh Radhakrishnan, TC Member.
National Civil Rights Conference 2015 Environmental Justice Panel Discussion Environmental Justice and NEPA Reviews Kedric L. Payne Deputy General Counsel.
Information Sharing for Integrated Care A 5 Step Blueprint.
Health Information Exchange: Alaska’s Health Pipeline Alaska Bar Association Health Law Section February 2, 2012 Carolyn Heyman-Layne.
ISO - Cloud Computing Standards 1 Cloud Computing Standards ISO Addresses the Challenge Cloud Computing Standards ISO Addresses the Challenge
Oasis Identity in the Cloud (IDCloud) Towards standardizing Cloud Identity Anil Saldhana ( Red Hat), Co-Chair Gershon Janssen, Secretary.
AMI Enterprise Task Force of the Utility AMI Working Group
CTI STIX SC Monthly Meeting
Higher Education’s Role in the Identity Ecosystem
OASIS Quantities and Units of Measure Ontology Standard (QUOMOS) An Introduction v Rev. D / April
XACML and the Cloud.
DOE Nuclear Safety Research and Development Program
Building Bright Futures Board
European Open Science Cloud All Hands Meeting Pisa 8-9 March 2018
Vijay Rachamadugu and David Snyder September 7, 2006
Strategic Planning Process
ITU-T SG17 Q.3 Telecommunication information security management
Strategic Planning Process
Andreas Fuchsberger Current Standardisation Activities – Blockchain and Distributed Ledger Technologies Open Source Platforms.
Connecting Pennsylvanians for Better Health:
… Two-step approach Conceptual Framework Annex I Annex II Annex III
Presentation transcript:

www.oasis-open.org Privacy Management Reference Model (PMRM) A formal reference model for data privacy

Privacy Management Reference Model Increased cross-border and cross-policy domain data flows, networked information processing, federated systems and cloud computing bring significant challenges to privacy management No availability of a standards-based technical privacy framework which enable development and implementation of privacy and associated security requirements Privacy requirements frequently expressed as broad policy objectives (fair information practices and principles) are far from the requirements needed by system analysts, architects and developers 2

What is it we do? Objectives: Privacy Management Reference Model: define a set of operationally-focused privacy management Services Can serve as a reference for design and implementation of privacy controls Define a formal methodology for expressing use cases Define Use Cases utilizing PMRM Profiles of the PMRM applied to selected specific environments such as Cloud Computing, Health and SmartGrid 3

Current Status First meeting September 2010 Methodology for expressing Use Cases is ready in draft Selecting appropriate Use Cases Seek liaison relationships to test the Reference Model against use cases and privacy scenarios Coordinate as much as possible with other standards efforts Charter includes specific reference to international standards bodies such as ITU and ISO 4

Resources OASIS Technical Committee Homepage http://www.oasis-open.org/committees/pmrm/ Gershon.Janssen@gmail.com www.gershonjanssen.com 5