
Notice détaillée

Security and Privacy Requirements for Electronic Consent A Systematic Literature Review

Article Ecrit par: Verreydt, Stef ; Joosen, Wouter ; Yskout, Koen ;

Résumé: Electronic consent (e-consent) has the potential to solve many paper-based consent approaches. Existing approaches, however, face challenges regarding privacy and security. This literature review aims to provide an overview of privacy and security challenges and requirements proposed by papers discussing e-consent implementations, as well as the manner in which state-of-the-art solutions address them.We conducted a systematic literature search using ACM Digital Library, IEEE Xplore, and PubMed Central.We included papers providing comprehensive discussions of one or more technical aspects of econsent systems. Thirty-one papers met our inclusion criteria. Two distinct topics were identified, the first being discussions of e-consent representations and the second being implementations of e-consent in data sharing systems. Themain challenge for e-consent representations is gathering the requirements for a "valid" consent. For the implementation papers, many provided some requirements but none provided a comprehensive overview. Blockchain is identified as a solution to transparency and trust issues in traditional client-server systems, but several challenges hinder it from being applied in practice. E-consent has the potential to grant data subjects control over their data. However, there is no agreed-upon set of security and privacy requirements that must be addressed by an e-consent platform. Therefore, security- and privacy-by-design techniques should be an essential part of the development lifecycle for such a platform.

Langue: Anglais