Experimental Evaluation of a Checklist-Based Inspection Technique to Verify the Compliance of Software Systems with the Brazilian General Data Protection Law

08/28/2023
by   Diego André Cerqueira, et al.
0

Recent laws to ensure the security and protection of personal data establish new software requirements. Consequently, new technologies are needed to guarantee software quality under the perception of privacy and protection of personal data. Therefore, we created a checklist-based inspection technique (LGPDCheck) to support the identification of defects in software artifacts based on the principles established by the Brazilian General Data Protection Law (LGPD). Objective/Aim: To evaluate the effectiveness and efficiency of LGPDCheck for verifying privacy and data protection (PDP) in software artifacts compared to ad-hoc techniques. Method: To assess LGPDCheck and ad-hoc techniques experimentally through a quasi-experiment (two factors, five treatments). The data will be collected from IoT-based health software systems built by software engineering students from the Federal University of Rio de Janeiro. The data analyses will compare results from ad-hoc and LGPDCheck inspections, the participant's effectiveness and efficiency in each trial, defects' variance and standard deviation, and time spent with the reviews. The data will be screened for outliers, and normality and homoscedasticity will be verified using the Shapiro-Wilk and Levene tests. Nonparametric or parametric tests, such as the Wilcoxon or Student's t-tests, will be applied as appropriate.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/29/2020

The General Law Principles for Protection the Personal Data and their Importance

Rapid technological change and globalization have created new challenges...
research
07/28/2021

SCENARIOTCHECK: A Checklist-based Reading Technique for the Verification of IoT Scenarios

Software systems on the Internet of Things have driven the world into a ...
research
03/22/2020

Annotation-Based Static Analysis for Personal Data Protection

This paper elaborates the use of static source code analysis in the cont...
research
06/01/2018

EU General Data Protection Regulation: A Gentle Introduction

The GDPR, or the Datenschutz Grundverordnung (DSGVO) in German, is an EU...
research
06/19/2020

On the Principle of Accountability: Challenges for Smart Homes Cybersecurity

This chapter introduces the Accountability Principle and its role in dat...
research
03/02/2018

Unifacta: Profiling-driven String Pattern Standardization

Data cleaning is critical for effective data analytics on many real-worl...
research
06/07/2016

Application of the Signature Method to Pattern Recognition in the CEQUEL Clinical Trial

The classification procedure of streaming data usually requires various ...

Please sign up or login with your details

Forgot password? Click here to reset