Data security and controlling access Managing research data well workshop London, 30 June 2009 Manchester, 1 July 2009.

Slides:



Advertisements
Similar presentations
Reconciling the sharing of research data with ethical review for research with people as participants Dr Veerle Van den Eynden UK Data Archive Data support.
Advertisements

NIGB Legal requirements for use of personal data in research OnCore UK / NRES Training workshop Ethical Principles relating to consent for use of samples.
Advice on Consent and Confidentiality for Sharing Research Data Ethics and Consent issues: one-day workshop Belfast, 18 January 2005 John Southall.
ESDS user support materials and resources: how to use them Support Services Royal Statistical Society, London 13 February 2009.
Reconciling the sharing of research data with ethical review for research with people as participants Veerle Van den Eynden UK Data Archive Data Support.
Dealing with confidential research information and consent agreements in research with people as participants Data Management and Sharing workshop Edinburgh,
The Economic and Social Data Service (ESDS) Kevin Schürer ESDS/UKDA ESDS Awareness Day 5 December 2003.
Accessing the MCS via the Economic and Social Data Service Jack Kneeshaw MCS workshop 10 November 2004 ESDS Longitudinal.
Depositing Data for Archiving Libby Bishop ESDS Qualidata, University of Essex Changing Families, Changing Food Meeting University of Sheffield 15 March.
Ethical issues surrounding the use of research data: an archivists perspective Research Ethics Workshop Key ethical issues for Social Science research.
Data management, data sharing and the activities of the UKDA Managing research data well workshop London, 30 June 2009 Manchester, 1 July 2009.
The Economic and Social Data Service (ESDS) Karen Dennison, Support Services Manager, UK Data Archive April 2008.
Accessing and managing data in a secure environment: the Secure Data Service Matthew Woollard Head of Digital Preservation and Systems, UKDA The significance.
Accessing the MCS from the Economic and Social Data Service Jack Kneeshaw MCS workshop 13 October 2009 ESDS Longitudinal.
Dealing with confidential research information anonymisation techniques and other measures to enable using and sharing research data Data Management and.
Accessing the NCDS and BCS70 via the Economic and Social Data Service Jack Kneeshaw NCDS/BCS70 workshop 27 October 2004 ESDS Longitudinal.
Dealing with confidential research information - Anonymisation techniques and access regulations to enable using and sharing research data Data Management.
Accessing the NCDS and the BCS70 via the Economic and Social Data Service Jack Kneeshaw NCDS/BCS70 workshop 21 February 2007 ESDS Longitudinal.
New Services for Data Creators and Providers Louise Corti, Head ESDS Qualidata/ Outreach & Training Alasdair Crockett, ESDS Data Services Manager.
Economic and Social Data Service a distributed data service for the social sciences.
Qualitative Data Resources: Qualidata UKDA Libby Bishop ESDS Qualidata, University of Essex Timescapes, University of Leeds St Catherines College, Oxford.
Economic and Social Data Service June What is the ESDS? national service supporting the archiving, dissemination and use of social and economic.
Data copyright, rights management and the use of existing data resources Managing research data well workshop London, 30 June 2009 Manchester, 1 July 2009.
Anonymisation techniques and other measures to enable using and sharing research data Managing and Sharing Research Data workshop London, 2 December 2009.
UK Data Archive Microdata Access and the New ESRC Secure Data Service Melanie Wright, UKDA 2 nd Workshop on Data Access Cardiff, February 2009.
The Economic and Social Data Service (ESDS) Karen Dennison UK Data Archive Improving access to government datasets 18 January 2007.
Accessing the MCS via the Economic and Social Data Service Jack Kneeshaw and Alasdair Crockett MCS workshop 20 November 2003 ESDS Longitudinal.
Requirements for 2011 Cross-sectional Microdata SARs Support Team University of Manchester
Introduction to the ESRC Question Bank Julie Lamb Department of Sociology University of Surrey.
Using ESDS Government Resources for Health Research Dr. Anthony Rafferty ESDS Government Centre for Census and Survey Research University of Manchester.
IHS: Requirements for Secondary Analysts Jo Wathan ESDS Government University of Manchester.
Output Consultation Plans and Statistical Disclosure Control Strategy developments Angele Storey and Jane Longhurst ONS.
Conference Programme Introduction to the Samples of Anonymised Records - Keith Spicer, ONS CCSR's role in providing SAR's support - Jo Wathan,
ESDS Resources Vanessa Higgins ESDS Government Centre for Census and Survey Research University of Manchester.
How to get started Vanessa Higgins CCSR University of Manchester.
Eurostat T HE E UROPEAN PROCESS OF ENHANCING ACCESS TO E UROSTAT DATA A LEKSANDRA B UJNOWSKA E UROSTAT.
Open Access: Data Protection, Storage and Sharing Caroline Dominey.
Mobile Devices: Know the RISKS. Take the STEPS. PROTECT AND SECURE Health Information.
Protect Your Data: How to Store and Back up your Data Securely Open Access and Data Curation Team With thanks to the UKDA for allowing us to reuse and.
Networks. User access and levels Most network security involves users having different levels of user access to the network. The network manager will.
The Special Licence model for access to more detailed micro data IASSIST 2006 Thursday 25 May Karen Dennison UK Data Archive.
EUropean Best Information through Regional Outcomes in Diabetes Privacy and Disease Registries Technical Aspects Peter Beck JOANNEUM RESEARCH, Austria.
Is Mobility of Data a Special Problem for Qualitative Research? John Southall ESDS Qualidata A service provider of the UK Data Archive.
Settings, Practices and Data Access: Results of a Survey of UK Social Scientists Jo Wathan Centre for Census and Survey Research University of Manchester.
Strengthening Data Security Dr. Sharon Bolton Dr. Matthew Woollard.
DATA LIFECYCLE & DATA MANAGEMENT PLANNING ……………………………………………………………………………………………………………………………….…………………………….. ……………………………………………………………......…... RESEARCH DATA.
Anglican Province of Canada Privacy Policy. Commitment to Privacy The Privacy Policy, including the Web Privacy Statement, is the Anglican Province of.
Effectively Integrating Information Technology (IT) Security into the Acquisition Process Section 5: Security Controls.
Dealing with confidential research information and consent agreements in research Louise Corti Associate Director UK Data Archive University of Glamorgan.
Regional Seminar on Census Data Archiving for Africa, Addis Ababa, Ethiopia, September 2011 Overview of Archiving of Microdata Session 4 United Nations.
MANAGING SENSITIVE DATA FOR SHARING − THE UK DATA ARCHIVE EXPERIENCE ……………………………………………………
MANAGING YOUR RESEARCH DATA: PLANNING TO SHARE ……………………………………………………………………………………………………………………………….…………………………….. ……………………………………………………………......…... RESEARCH.
Guidelines for data preparation - ESRC Datasets Policy Louise Corti ESDS/UKDA Social Science Data Archives for Social Historians: creating, depositing.
SECURITY Research Data Management. Research Data Management Security Laptops go missing very regularly; Intel’s study in 2012 surveying 329 private and.
ESRC Datasets Policy and Qualitative Data Preparation Gill Backhouse Senior Acquisitions and Liaison Officer Qualidata.
3.3 Digital Communication Security. Overview Demonstrate knowledge and understanding of basic network security measures, e.g. passwords, access levels,
Data documentation and metadata for data archiving and sharing Managing research data well workshop London, 30 June 2009 Manchester, 1 July 2009.
RESEARCH ETHICS AND DATA CONFIDENTALITY: ANONYMISATION AND ACCESS CONTROL ……………………………………………………………………………………………………………………………….…………………………….. ……………………………………………………………......…...
Open Access to Data Confidentiality, Consent and Archive Access CESSDA, Athens October John Southall ESDS Qualidata.
Network Security & Accounting
Creating Open Data whilst maintaining confidentiality Philip Lowthian, Caroline Tudor Office for National Statistics 1.
Data for secondary analysis: the experience of the UK Data Archive Hilary Beedham UK Data Archive.
The Question Bank Graham Hughes & Julie Gibbs Department of Sociology University of Surrey Research Methods Festival, July 2008
HETUS Pilot Group 8 Privacy procedures and ethical issues Kimberly Fisher, Centre for Time Use Research – co-ordinator External consultant Kai Ludwigs.
Embedding the Brunel Repository in the academic practice John Murtagh.
Handling Personal Data & Security of Information Paula Trim, Information Officer, Children’s Strategic Services, Mon – Thurs 9:15-2:15.
Anonymising quantitative data
Open Access to Data Confidentiality, Consent and Archive Access CESSDA, Athens October John Southall ESDS Qualidata.
Open data in the social sciences, conundrum or feasible?”
General Data Protection Regulation Q & A Session
Presentation transcript:

Data security and controlling access Managing research data well workshop London, 30 June 2009 Manchester, 1 July 2009

Data security Protection of data from unauthorised access, use, change, disclosure and destruction physical security security within the data – editing/redacting the data – ensuring security by controlling access

Physical security appropriate access to buildings/rooms/computer systems where data held strengthen IT-specific security to reduce danger of breach – firewalls, security testing, regular anti-virus checks control access to restricted materials with encryption and/or password protection secure data transfer between centres/to UKDA

Encryption consider data encryption to maintain security during transmission now a requirement for deposit of Government data ONS use self-extracting encryption software Safeguard PrivateCrypto – advanced security algorithms (AES128 and AES256) Pretty Good Privacy (PGP) – open source (GnuPG), or commercial versions – create Private Key and passphrase, download and install UKDA Public Key so that only UKDA can decrypt file

Security within data During the research project/prior to deposit at the UKDA: gain informed consent from respondents – protect them but do not preclude sharing – see Managing and Sharing document and web pages, contact UKDA for advice anonymisation: reduce risk of disclosure of respondents identity – remove/redact direct identifiers, or hold them separately consider indirect identifiers – possible disclosure in combination with other information, including public files – quantitative data: occupation, geography, unique or exceptional values (outliers) or characteristics – qualitative data: pseudonymisation, information in text document any changes made consider access restrictions rather than over-edit data

Government data Statistics and Registration Services Act 2007 Special Licence data/Approved Researcher ONS have Microdata Release Panel to advise UKDA helping to facilitate this advice for other UK Government departments smaller-scale researchers may not have support or experience, UKDA can advise

Confidentiality vs. research usability aim for reasonable/appropriate level of anonymity maintain maximum meaningful information to enable worthwhile research End User Licence - users agree to maintain confidentiality and not to try to identify respondents combination of effective anonymisation and access restriction

Useful references UKDA information: ISO – user-friendly guidelines to ISO 27001, Information Security standard Grinyer, A. (2002) The Anonymity of Research Participants: Assumptions, Ethics and Practicalities, Social Research Update, 36, University of Surrey. Clark, A. (2006) Anonymising Research Data, NCRM Working Paper Series 7/06, ESRC National Centre for Research Methods /0706_anonymising_research_data.pdf 006/0706_anonymising_research_data.pdf

Examples UKDA works with depositor to maximise data sharing quantitative data: – APS and LFS - Special Licence and End User Licence versions – BHPS – subsets of geographical variables available via conditional access alongside main survey – SN 5827 Rape in the 21st Century: Old Patterns, New Behaviours and Emerging Trends, : some removal of variables, rounding of dates, combined with permission-only access qualitative data: – SN 5407 Health and Social Consequences of the Foot and Mouth Disease Epidemic in North Cumbria, anonymisation, pseudonyms, conditional access to particular set of interviews and diaries, embargo for another set