Power and Privacy in Software Ecosystems: A Study on Data Breach Impact on Tech Giants
Autor: | Maria Eduarda Rebelo, George Valença, Fernando Antonio Aires Lins |
---|---|
Rok vydání: | 2021 |
Předmět: |
050101 languages & linguistics
Information privacy business.industry Software ecosystem 05 social sciences Internet privacy Principal (computer security) Context (language use) 02 engineering and technology Data breach 0202 electrical engineering electronic engineering information engineering Data Protection Act 1998 Stakeholder analysis 020201 artificial intelligence & image processing 0501 psychology and cognitive sciences business Requirements analysis |
Zdroj: | Requirements Engineering: Foundation for Software Quality ISBN: 9783030731274 REFSQ |
Popis: | [Context and motivation] Concerns about data privacy and protection in companies from various fields and sizes are not only a reality, but a requirement at this day and age. The need to comply with governmental laws and other rules became a driving force in handling personal data. [Question/problem] For major IT companies, especially those in charge of a software ecosystem, such concerns grow tenfold: cases of privacy breach can extend over and affect their platforms, software solutions and relationships with partners and users. [Principal results] This research investigates data breach cases in GAFA (Google, Amazon, Facebook, Apple) ecosystems through the perspective of power, which is a lens of analysis of a network of multiple interdependent actors. We create power models to describe the power relationships among ecosystem players during a privacy issue. [Contribution] Our descriptive case study reveals the actors involved in a data breach scandal, the ecosystem elements that grant them privileges or lack thereof, and consequences that reverberate positively or negatively towards them. We contribute towards stakeholder analysis activities by presenting our power relationships framework, which can be integrated into the requirements process as a technique for security and privacy requirements definition. |
Databáze: | OpenAIRE |
Externí odkaz: |