loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Feiyang Tang 1 ; Bjarte Østvold 1 and Magiel Bruntink 2

Affiliations: 1 Norwegian Computing Center, Oslo, Norway ; 2 Software Improvement Group, Amsterdam, The Netherlands

Keyword(s): Data Privacy Protection, Code Review, Static Analysis.

Abstract: Code review is a critical step in the software development life cycle, which assesses and boosts the code’s effectiveness and correctness, pinpoints security issues, and raises its quality by adhering to best practices. Due to the increased need for personal data protection motivated by legislation, code reviewers need to understand where personal data is located in software systems and how it is handled. Although most recent work on code review focuses on security vulnerabilities, privacy-related techniques are not easy for code reviewers to implement, making their inclusion in the code review process challenging. In this paper, we present ongoing work on a new approach to identifying personal data processing, enabling developers and code reviewers in drafting privacy analyses and complying with regulations such as the General Data Protection Regulation (GDPR).

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 13.59.82.167

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Tang, F.; Østvold, B. and Bruntink, M. (2023). Identifying Personal Data Processing for Code Review. In Proceedings of the 9th International Conference on Information Systems Security and Privacy - ICISSP; ISBN 978-989-758-624-8; ISSN 2184-4356, SciTePress, pages 568-575. DOI: 10.5220/0011725700003405

@conference{icissp23,
author={Feiyang Tang. and Bjarte Østvold. and Magiel Bruntink.},
title={Identifying Personal Data Processing for Code Review},
booktitle={Proceedings of the 9th International Conference on Information Systems Security and Privacy - ICISSP},
year={2023},
pages={568-575},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0011725700003405},
isbn={978-989-758-624-8},
issn={2184-4356},
}

TY - CONF

JO - Proceedings of the 9th International Conference on Information Systems Security and Privacy - ICISSP
TI - Identifying Personal Data Processing for Code Review
SN - 978-989-758-624-8
IS - 2184-4356
AU - Tang, F.
AU - Østvold, B.
AU - Bruntink, M.
PY - 2023
SP - 568
EP - 575
DO - 10.5220/0011725700003405
PB - SciTePress