Privacy
Data privacy is about having sovereignty over your personal data and how that data is used. The Organization for Economic Co-Operation and Development (OECD) in 2013 defined eight principles of data privacy on which the General Data Protection Regulation (GDPR) was later based in 2016. Although GDPR only has seven principles (listed as follows), its documentation is noticeably similar to the OECD document:
- Lawfulness, fairness, and transparency
- Purpose limitation
- Data minimization
- Accuracy
- Storage limitation
- Integrity and confidentiality (security)
- Accountability
There were some important additions to GDPR, such as the right to be forgotten and that the personal data of European citizens should not be transferred to a country where there is weaker protection of it.
Figure 8.1: Personal information being shared without your consent
In this chapter, we will cover the threats described on the cards from the Privacy...