11 November 2011

Life-Logging Application Risks

The European Network and Information Security Agency(ENISA) has published a report on the risks and benefits of emerging life-logging applications.

Partial view of the cover from ENISA's 'To Log or Not to Log'

The report examines the benefits of life-logging and information security risks for individuals, industry and state/government. The analysis assesses the risks and provides recommendations for each group.

Perhaps of most interest here are the recommendations for life-logging industry and service providers, summarised on pages 9-10 of the report, including privacy-friendly defaults, using privacy impact assessments and risk management approaches, direct online access for data access/audit, advice for individuals on the risks, distributed storage, workplace issues, encryption on user devices and multi-factor authentication.

The report is based around a life-logging scenario (Appendix I) which is used to highlight the issues and impacts on various parties. If you provide services in this area, or are considering anything closely related to this space, I think you will find the risk analysis (and risk assessment spreadsheet in Appendix II) a good starting point for your own efforts.

Posted on: 11 November 2011 at 17:43 hrs

Comments Comments (0) | Permalink | Send Send | Post to Twitter

Comments

Comments are filtered automatically and should appear shortly after they been checked.

Post a comment
Confirm acceptance and understanding of the terms of use
New posts to this thread will be sent to your email address
Life-Logging Application Risks
http://www.clerkendweller.com/2011/11/11/Life-Logging-Application-Risks
ISO/IEC 18004:2006 QR code for http://clerkendweller.com

Page http://www.clerkendweller.com/2011/11/11/Life-Logging-Application-Risks
Requested by 38.107.179.221 on Thursday, 17 May 2012 at 22:32 hrs (London date/time)

Please read our terms of use and obtain professional advice before undertaking any actions based on the opinions, suggestions and generic guidance presented here. Your organisation's situation will be unique and all practices and controls need to be assessed with consideration of your own business context.

Terms of use http://www.clerkendweller.com/page/terms
Privacy statement http://www.clerkendweller.com/page/privacy
© 2011-2012 clerkendweller.com