The cloud computing standard ISO/IEC 27018 through the lens of the EU legislation on data protection

Computer Law & Security Review - Tập 32 - Trang 16-30 - 2016
Paul de Hert1,2, Vagelis Papakonstantinou1, Irene Kamara1
1Free University of Brussels (VUB-LSTS), Belgium
2Tilburg University (TILT), the Netherlands

Tài liệu tham khảo

Article 29 Data Protection Working Party, 2010 Article 29 Data Protection Working Party, 2010 Article 29 Data Protection Working Party, 2012 Article 29 Data Protection Working Party, 2015 Benett, 2000 C-SIG sub-group on the Data Protection Code of conduct, Data Protection Code of Conduct for Cloud Service Providers, no date. Carlin, 2011, Cloud Computing Security, Int J Ambient Comput Intell, 3, 38, 10.4018/jaci.2011010102 Chen, 2014 CNIL, 2012 Council of the European Communities, 1993 Council of the European Union, 2015 Cunningham, 2013 Data Protection and Privacy Commissioners, 2012 De Hert P., From the principle of accountability to system responsibility key concepts in data protection law and human rights law discussions. Disterer, 2013, ISO/IEC 27000, 27001 and 27002 for information security management, J Inform Secur, 10.4236/jis.2013.42011 EN 45020:2009 2009 European Commission, 2010, DG information society and media, 9 European Commission, 2012 European Commission, 2012 European Data Protection Supervisor, 2012 European Parliament, 2012 European Parliament, 2010 European Parliament and Council, Directive 95/46/EC of the European Parliament and of the Council of 24 October 1995 on the protection of individuals with regard to the processing of personal data and on the free movement of such data, OJ L 281. European Parliament and Council, 1998 European Parliament and Council, 2012 European Parliament, Directorate General for Internal Policies, 2012 FIDIS, 2009 Gleeson, 2014, ‘It‘s a jungle out there’?: cloud computing, standards and the law, Eur J Law Technol, 5 Guilloteau, 2014 Hatto, 2013 Hill, 2014 Hon Kuan, 2011, The problem of personal data in cloud computing: what information is regulated? – the cloud of unknowing, Int Data Privacy Law, 1 ICO, 2012 2012 ISO, UNIDO, Building trust. The conformity assessment toolbox. ISO 27001:2013, 2013 ISO/IEC 17000:2004, 2004 ISO/IEC 27002:2013, 2013 ISO/IEC 27018:2014, 2014 ISO/IEC 29100:2011, 2011 ISO/IEC Guide 65 to ISO/IEC 17065. ISO/IEC JTC1 SC38 SGCC, 2011 Kemp, 2015, ISO 27018 and personal information in the cloud: a first year scoreboard, Comput Law Secur Rev, 31, 553, 10.1016/j.clsr.2015.05.013 Mitchell, 2011 Mitchell, 2014 National Institute of Standards and Technology (NIST), 2011 Philips, 2014 Schallaböck, 2014 Stuurman, 2000 Wakabayashi, 2014 Walden, 2014 2012