SlideShare une entreprise Scribd logo
1  sur  20
William Heath – Mydex Chairman (@williamheath & @mydexcic)




                                         Your data, your way



Personal data stores: What is the potential, and where do they
fit in the Data Protection Act.

William Heath – Mydex Chairman (@williamheath & @mydexcic)


  www.mydex.org - All right reserved
Taking big data to the limit
Taking big data to the limit
“Exactness requires carefully curated data”
from Big Data: A Revolution That Will Transform How We Live,
  Work and Think" by Ken Cukier & Viktor Mayer-Schonberger
Complementary approach: small data, “VRM” or The
Intention Economy




                     DOC SEARLS
What is Mydex CIC and what does it offer?
 •  UK social enterprise formed in 2007
 •  Empowers individuals to manage their lives more effectively
 •  Mydex offers highly secure personal data services:
        •    ID services, federated ID, SSO and ID assurance
        •    Secure consumer digital letterbox and data channel
 •  Trust framework; open platform
         •  Offers integration and new journeys for existing customers
         •  Supports “Manage my health/shopping/edu/travel/finance” apps
         •  Apps can be deployed inside or outside the platform
  •  ISO 270001 compliant; t-Scheme certified, recognised by OIX


www.mydex.org - All right reserved
It’s a highly secure personal data service for individuals
Mydex provides a Trust Framework as a platform
                 Mydex Charter | Terms for Members | Terms for Connections
                      Data Sharing Agreement | ISO27001 | tScheme


                                                                       Relying Parties
   Application                                                        Attribute Providers
Service Providers                                                     Attribute Verifiers




                                     Trust Framework
                                   Provider and platform




                                                                       Unique Secure Encrypted
                                                                             Connections
                                                     Mydex Members
 www.mydex.org                                       Personal Data Services
Mydex delivers a persistent trusted connection between any
 organisation and the individual for permissioned two-way data
 exchange and interactions




                               Customer can select the specific
                               data attributes they wish to share
www.mydex.org                             on what basis
Clarity about role of Personal Data Stores
emerging in many areas
Mydex stated position on DPA Status as a Data
     Controller

     Mydex is not the data
     controller for data stored
     inside the PDS or shared
     via the API

•    Mydex has no access to the data at any point
•    Mydex has no commercial rights to the data
Mydex stated position on DPA Status as a Data
      Controller

 Yes                                           No
Mydex is data controller                      Mydex is not data controller
for the information shared                    in terms of the data stored
with Mydex for the                            inside the PDS or shared
purposes of service                           via the API
provision
What data does Mydex hold about its members?

•  Mydex holds a register of members
    •  MydexID
    •  Password (SALT) which accesses only their Mydex Account, not their PDS
    •  Email address for purposes of service provision and support only
    •  IP Address for purposes of support only
•  The member controls double encrypted files that together
   constitute a Personal Data Store.
•  Mydex has
    •  no means of accessing the contents of files
    •  no means of decrypting files
    •  no knowledge of what is stored in files
    •  no knowledge of what is shared with connections
What can Mydex do in relation to the PDS data?

•  Can suspend ability to send and receive data if Mydex member
   instructs Mydex to so
    •  The member has to be able to log in to their Mydex account
    •  Possible scenario – loss of PIN/Passphrase by member who then wishes to stop using
       PDS and create new one
•  Archive a PDS as per account termination defined in members’
   Terms
•  Delete a PDS as defined by members’ Terms
Mydex stores in the cloud, but its Ts&Cs aren't the
usual cloud storage Ts&Cs

•  Mydex has no ability and asserts no right to access users’ data
    •  Not “to operate and improve its service”
    •  Nor “to personalise its service”
    •  Nor “to share your personal data with affiliates”
    •  Nor for any other reason
•  Mydex reserves no right to review, screen or remove content
•  Mydex can’t remove the encryption users apply
•  Mydex’ architecture supports member choice in where they
   store their PDS
•  Mydex enables the individual to act as Data Controller
We see the emergence of secure personal data
services as inevitable. So how far has it got?

•    Mydex live “community prototype” completed

•    HMG’s BIS midata: business gives structured data back to customers

•    Other data givebacks: Google, Facebook, NHS, US blue/green buttons

•    UK Government Digital Service (GDS) 'Digital by Default' commitment

•    GDS ID Assurance rollout based on 3rd party services

•    Mydex CIC is one of the cross-govt ID assurance providers

•    Work on quality, standards & interoperability: OIX, tScheme, ISO
Where next
                    Mydex adoption and
                    emergence of a range
                    of similar services



                                       Data
                                       minimisation


 Diversity and
 interoperability
The more information you hear, the less funky it is
                    Nile Rodgers
Thank you for your time


WEBSITE: www.mydex.org
FACEBOOK: www.facebook.com/mydex.org
TWITTER: @mydexcic & @williamheath
EMAIL: william@mydex.org
THIRD SECTOR WHITEPAPER: thirdsector.mydex.org
MIDATA WEBSITE: midata.mydex.org
MYDEX OVERVIEW ON SLIDESHARE:
http://www.slideshare.net/mydexcic/introduction-to-mydex-cic-personal-
data-stores-7th-march-2013
MYDEX OVERVIEW ON YOUTUBE:
http://www.youtube.com/watch?v=mQRZfCRbQHs
What we find organisations need

•  Identity solutions
    •  Federated login / SSO; to get out of the username/password business
    •  Verified data attributes
    •  Certificates to support proofs of claims
•  Integrated / streamlined / low cost secure channels
    •  improve data quality / reduce sparsity
    •  richer / broader data sets about their customers and prospects
    •  streamline customer journeys and flows of data
    •  improve business process flows
•  Applications that bridge traditional applications and organisation
   boundaries
    •  Need to work inside and outside the organisation
    •  Need to include the citizen / customer

Contenu connexe

Tendances

BigID Virtual MDM Data Sheet
BigID Virtual MDM Data SheetBigID Virtual MDM Data Sheet
BigID Virtual MDM Data SheetDimitri Sirota
 
BigID Data Inventory & Data Mapping Data Sheet
BigID Data Inventory & Data Mapping Data SheetBigID Data Inventory & Data Mapping Data Sheet
BigID Data Inventory & Data Mapping Data SheetDimitri Sirota
 
BigID GDPR RoPA / Article 30 Automation Data Sheet
BigID GDPR RoPA / Article 30 Automation Data SheetBigID GDPR RoPA / Article 30 Automation Data Sheet
BigID GDPR RoPA / Article 30 Automation Data SheetDimitri Sirota
 
BigID Enterprise Privacy Management Data Sheet
BigID Enterprise Privacy Management Data SheetBigID Enterprise Privacy Management Data Sheet
BigID Enterprise Privacy Management Data SheetDimitri Sirota
 
PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...
PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...
PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...CCG
 
Various blockchain specialization domains
Various blockchain specialization domainsVarious blockchain specialization domains
Various blockchain specialization domainsBlockchain Council
 
Data Discovery Automation: How to Save Time & Protect Customer Data
Data Discovery Automation: How to Save Time & Protect Customer DataData Discovery Automation: How to Save Time & Protect Customer Data
Data Discovery Automation: How to Save Time & Protect Customer DataTrustArc
 
(SACON) Nandan Nilekani - Identity Payments and Data Empowerment 
(SACON) Nandan Nilekani - Identity Payments and Data Empowerment (SACON) Nandan Nilekani - Identity Payments and Data Empowerment 
(SACON) Nandan Nilekani - Identity Payments and Data Empowerment Priyanka Aash
 
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...ForgeRock
 
Finding Data at Risk for CCPA Compliance
Finding Data at Risk for CCPA ComplianceFinding Data at Risk for CCPA Compliance
Finding Data at Risk for CCPA CompliancePrecisely
 
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...AtoZ Compliance
 
Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...
Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...
Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...Codemotion
 
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19Andrew Hughes
 
Kantara trust frameworks 2016 05-08
Kantara trust frameworks 2016 05-08Kantara trust frameworks 2016 05-08
Kantara trust frameworks 2016 05-08Andrew Hughes
 
Blockchain for Accounting & Assurance
Blockchain for Accounting & AssuranceBlockchain for Accounting & Assurance
Blockchain for Accounting & AssuranceEryk Budi Pratama
 
Accelerate Self-service Analytics with Universal Semantic Model
Accelerate Self-service Analytics with Universal Semantic Model Accelerate Self-service Analytics with Universal Semantic Model
Accelerate Self-service Analytics with Universal Semantic Model Denodo
 
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...Jean-Michel Franco
 
Load Balancing and Data Management in Cloud Computing
Load Balancing and Data Management in Cloud ComputingLoad Balancing and Data Management in Cloud Computing
Load Balancing and Data Management in Cloud Computingijtsrd
 

Tendances (20)

BigID Virtual MDM Data Sheet
BigID Virtual MDM Data SheetBigID Virtual MDM Data Sheet
BigID Virtual MDM Data Sheet
 
BigID Data Inventory & Data Mapping Data Sheet
BigID Data Inventory & Data Mapping Data SheetBigID Data Inventory & Data Mapping Data Sheet
BigID Data Inventory & Data Mapping Data Sheet
 
BigID GDPR RoPA / Article 30 Automation Data Sheet
BigID GDPR RoPA / Article 30 Automation Data SheetBigID GDPR RoPA / Article 30 Automation Data Sheet
BigID GDPR RoPA / Article 30 Automation Data Sheet
 
BigID Enterprise Privacy Management Data Sheet
BigID Enterprise Privacy Management Data SheetBigID Enterprise Privacy Management Data Sheet
BigID Enterprise Privacy Management Data Sheet
 
PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...
PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...
PSCU follows PCI Compliance Guidelines for Self-Service BI through Webi - SAB...
 
Various blockchain specialization domains
Various blockchain specialization domainsVarious blockchain specialization domains
Various blockchain specialization domains
 
Data Discovery Automation: How to Save Time & Protect Customer Data
Data Discovery Automation: How to Save Time & Protect Customer DataData Discovery Automation: How to Save Time & Protect Customer Data
Data Discovery Automation: How to Save Time & Protect Customer Data
 
(SACON) Nandan Nilekani - Identity Payments and Data Empowerment 
(SACON) Nandan Nilekani - Identity Payments and Data Empowerment (SACON) Nandan Nilekani - Identity Payments and Data Empowerment 
(SACON) Nandan Nilekani - Identity Payments and Data Empowerment 
 
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
GDPR is coming in Hot. Top Burning Questions Answered to Help You Keep Your C...
 
Finding Data at Risk for CCPA Compliance
Finding Data at Risk for CCPA ComplianceFinding Data at Risk for CCPA Compliance
Finding Data at Risk for CCPA Compliance
 
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
 
Trust Frameworks Explained
Trust Frameworks ExplainedTrust Frameworks Explained
Trust Frameworks Explained
 
Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...
Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...
Pronti per la legge sulla data protection GDPR? No Panic! - Stefano Sali, Dom...
 
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
Digital Identity Landscape for Vancouver IAM Meetup 2017 12-19
 
Kantara trust frameworks 2016 05-08
Kantara trust frameworks 2016 05-08Kantara trust frameworks 2016 05-08
Kantara trust frameworks 2016 05-08
 
Blockchain for Accounting & Assurance
Blockchain for Accounting & AssuranceBlockchain for Accounting & Assurance
Blockchain for Accounting & Assurance
 
Michael Kaishar Pci Dss Power Point Presentation
Michael Kaishar Pci Dss Power Point PresentationMichael Kaishar Pci Dss Power Point Presentation
Michael Kaishar Pci Dss Power Point Presentation
 
Accelerate Self-service Analytics with Universal Semantic Model
Accelerate Self-service Analytics with Universal Semantic Model Accelerate Self-service Analytics with Universal Semantic Model
Accelerate Self-service Analytics with Universal Semantic Model
 
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
 
Load Balancing and Data Management in Cloud Computing
Load Balancing and Data Management in Cloud ComputingLoad Balancing and Data Management in Cloud Computing
Load Balancing and Data Management in Cloud Computing
 

En vedette

The Case for Personal Information Empowerment and the rise of personal data s...
The Case for Personal Information Empowerment and the rise of personal data s...The Case for Personal Information Empowerment and the rise of personal data s...
The Case for Personal Information Empowerment and the rise of personal data s...Mydex CIC
 
Tell Us Once: Personal Data Stores and the road to user-driven services
Tell Us Once: Personal Data Stores and the road to user-driven servicesTell Us Once: Personal Data Stores and the road to user-driven services
Tell Us Once: Personal Data Stores and the road to user-driven servicesMydex CIC
 
Oix local government mydex platform overview 2nd july 2013
Oix local government mydex platform overview 2nd july 2013Oix local government mydex platform overview 2nd july 2013
Oix local government mydex platform overview 2nd july 2013Mydex CIC
 
Personal Data: How can your residents help you? by William Heath
Personal Data: How can your residents help you? by William Heath Personal Data: How can your residents help you? by William Heath
Personal Data: How can your residents help you? by William Heath Mydex CIC
 
William for org con 2013
William for org con 2013William for org con 2013
William for org con 2013Mydex CIC
 
William for citizen2013
William for citizen2013William for citizen2013
William for citizen2013Mydex CIC
 
Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...
Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...
Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...Mydex CIC
 
Managing identity for the future how everybody can win - david alexander - ...
Managing identity for the future   how everybody can win - david alexander - ...Managing identity for the future   how everybody can win - david alexander - ...
Managing identity for the future how everybody can win - david alexander - ...Mydex CIC
 
Mydex CIC - Young Foundation The Future of Personal Data & MiData
Mydex CIC - Young Foundation The Future of Personal Data & MiDataMydex CIC - Young Foundation The Future of Personal Data & MiData
Mydex CIC - Young Foundation The Future of Personal Data & MiDataMydex CIC
 
The role of the individual in "digital by default" public services
The role of the individual in "digital by default" public servicesThe role of the individual in "digital by default" public services
The role of the individual in "digital by default" public servicesMydex CIC
 

En vedette (11)

The Case for Personal Information Empowerment and the rise of personal data s...
The Case for Personal Information Empowerment and the rise of personal data s...The Case for Personal Information Empowerment and the rise of personal data s...
The Case for Personal Information Empowerment and the rise of personal data s...
 
Tell Us Once: Personal Data Stores and the road to user-driven services
Tell Us Once: Personal Data Stores and the road to user-driven servicesTell Us Once: Personal Data Stores and the road to user-driven services
Tell Us Once: Personal Data Stores and the road to user-driven services
 
Oix local government mydex platform overview 2nd july 2013
Oix local government mydex platform overview 2nd july 2013Oix local government mydex platform overview 2nd july 2013
Oix local government mydex platform overview 2nd july 2013
 
Personal Data: How can your residents help you? by William Heath
Personal Data: How can your residents help you? by William Heath Personal Data: How can your residents help you? by William Heath
Personal Data: How can your residents help you? by William Heath
 
William for org con 2013
William for org con 2013William for org con 2013
William for org con 2013
 
William for citizen2013
William for citizen2013William for citizen2013
William for citizen2013
 
Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...
Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...
Personal Data Stores: Mydex Open Data Institute Midata Hackathon 17 November ...
 
Personal Data Store Project
Personal Data Store ProjectPersonal Data Store Project
Personal Data Store Project
 
Managing identity for the future how everybody can win - david alexander - ...
Managing identity for the future   how everybody can win - david alexander - ...Managing identity for the future   how everybody can win - david alexander - ...
Managing identity for the future how everybody can win - david alexander - ...
 
Mydex CIC - Young Foundation The Future of Personal Data & MiData
Mydex CIC - Young Foundation The Future of Personal Data & MiDataMydex CIC - Young Foundation The Future of Personal Data & MiData
Mydex CIC - Young Foundation The Future of Personal Data & MiData
 
The role of the individual in "digital by default" public services
The role of the individual in "digital by default" public servicesThe role of the individual in "digital by default" public services
The role of the individual in "digital by default" public services
 

Similaire à Personal Data Stores: Potential and Fit with Data Protection Act

Trusted Cloud
Trusted CloudTrusted Cloud
Trusted CloudMicrosoft
 
GDPR Compliance Made Easy with Data Virtualization
GDPR Compliance Made Easy with Data VirtualizationGDPR Compliance Made Easy with Data Virtualization
GDPR Compliance Made Easy with Data VirtualizationDenodo
 
Navigate LLC Overview
Navigate LLC OverviewNavigate LLC Overview
Navigate LLC OverviewSarah Carroll
 
How Cloudera SDX can aid GDPR compliance
How Cloudera SDX can aid GDPR complianceHow Cloudera SDX can aid GDPR compliance
How Cloudera SDX can aid GDPR complianceCloudera, Inc.
 
Merrill DataSite Not All VDRs Are Created Equal
Merrill DataSite Not All VDRs Are Created EqualMerrill DataSite Not All VDRs Are Created Equal
Merrill DataSite Not All VDRs Are Created EqualChris_Robilliard
 
Keeping your collaboration safe while working remotely
Keeping your collaboration safe while working remotelyKeeping your collaboration safe while working remotely
Keeping your collaboration safe while working remotelyCisco Webex
 
Beyond GDPR Compliance - Role of Internal Audit
Beyond GDPR Compliance - Role of Internal AuditBeyond GDPR Compliance - Role of Internal Audit
Beyond GDPR Compliance - Role of Internal AuditOmo Osagiede
 
Modernizing Integration with Data Virtualization
Modernizing Integration with Data VirtualizationModernizing Integration with Data Virtualization
Modernizing Integration with Data VirtualizationDenodo
 
Data Marketplace and the Role of Data Virtualization
Data Marketplace and the Role of Data VirtualizationData Marketplace and the Role of Data Virtualization
Data Marketplace and the Role of Data VirtualizationDenodo
 
User Management, Enablement, Directory
User Management, Enablement, DirectoryUser Management, Enablement, Directory
User Management, Enablement, DirectoryUbisecure
 
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance BigID Inc
 
Seattle Tech4Good meetup: Data Security and Privacy
Seattle Tech4Good meetup: Data Security and PrivacySeattle Tech4Good meetup: Data Security and Privacy
Seattle Tech4Good meetup: Data Security and PrivacySabra Goldick
 
DoD Data Quality Challenges
DoD Data Quality ChallengesDoD Data Quality Challenges
DoD Data Quality ChallengesJay j
 
Microsoft Cloud GDPR Compliance Options (SUGUK)
Microsoft Cloud GDPR Compliance Options (SUGUK)Microsoft Cloud GDPR Compliance Options (SUGUK)
Microsoft Cloud GDPR Compliance Options (SUGUK)Andy Talbot
 
Hadoop and Financial Services
Hadoop and Financial ServicesHadoop and Financial Services
Hadoop and Financial ServicesCloudera, Inc.
 
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"Ragnar Heil
 
Achieving Self-Service Analytics with a Governed Data Services Layer
Achieving Self-Service Analytics with a Governed Data Services LayerAchieving Self-Service Analytics with a Governed Data Services Layer
Achieving Self-Service Analytics with a Governed Data Services LayerDenodo
 

Similaire à Personal Data Stores: Potential and Fit with Data Protection Act (20)

Trusted Cloud
Trusted CloudTrusted Cloud
Trusted Cloud
 
original.pdf
original.pdforiginal.pdf
original.pdf
 
GDPR Compliance Made Easy with Data Virtualization
GDPR Compliance Made Easy with Data VirtualizationGDPR Compliance Made Easy with Data Virtualization
GDPR Compliance Made Easy with Data Virtualization
 
Navigate LLC Overview
Navigate LLC OverviewNavigate LLC Overview
Navigate LLC Overview
 
How Cloudera SDX can aid GDPR compliance
How Cloudera SDX can aid GDPR complianceHow Cloudera SDX can aid GDPR compliance
How Cloudera SDX can aid GDPR compliance
 
Barcelona presentationv6
Barcelona presentationv6Barcelona presentationv6
Barcelona presentationv6
 
Merrill DataSite Not All VDRs Are Created Equal
Merrill DataSite Not All VDRs Are Created EqualMerrill DataSite Not All VDRs Are Created Equal
Merrill DataSite Not All VDRs Are Created Equal
 
Keeping your collaboration safe while working remotely
Keeping your collaboration safe while working remotelyKeeping your collaboration safe while working remotely
Keeping your collaboration safe while working remotely
 
Beyond GDPR Compliance - Role of Internal Audit
Beyond GDPR Compliance - Role of Internal AuditBeyond GDPR Compliance - Role of Internal Audit
Beyond GDPR Compliance - Role of Internal Audit
 
Modernizing Integration with Data Virtualization
Modernizing Integration with Data VirtualizationModernizing Integration with Data Virtualization
Modernizing Integration with Data Virtualization
 
Data Marketplace and the Role of Data Virtualization
Data Marketplace and the Role of Data VirtualizationData Marketplace and the Role of Data Virtualization
Data Marketplace and the Role of Data Virtualization
 
Security - A Digital Transformation Enabler
Security - A Digital Transformation EnablerSecurity - A Digital Transformation Enabler
Security - A Digital Transformation Enabler
 
User Management, Enablement, Directory
User Management, Enablement, DirectoryUser Management, Enablement, Directory
User Management, Enablement, Directory
 
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
 
Seattle Tech4Good meetup: Data Security and Privacy
Seattle Tech4Good meetup: Data Security and PrivacySeattle Tech4Good meetup: Data Security and Privacy
Seattle Tech4Good meetup: Data Security and Privacy
 
DoD Data Quality Challenges
DoD Data Quality ChallengesDoD Data Quality Challenges
DoD Data Quality Challenges
 
Microsoft Cloud GDPR Compliance Options (SUGUK)
Microsoft Cloud GDPR Compliance Options (SUGUK)Microsoft Cloud GDPR Compliance Options (SUGUK)
Microsoft Cloud GDPR Compliance Options (SUGUK)
 
Hadoop and Financial Services
Hadoop and Financial ServicesHadoop and Financial Services
Hadoop and Financial Services
 
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
Webinar Metalogix "Auf der Zielgeraden zur DSGVO!"
 
Achieving Self-Service Analytics with a Governed Data Services Layer
Achieving Self-Service Analytics with a Governed Data Services LayerAchieving Self-Service Analytics with a Governed Data Services Layer
Achieving Self-Service Analytics with a Governed Data Services Layer
 

Dernier

[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfEnterprise Knowledge
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationSafe Software
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Enterprise Knowledge
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...gurkirankumar98700
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j
 

Dernier (20)

[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
 

Personal Data Stores: Potential and Fit with Data Protection Act

  • 1. William Heath – Mydex Chairman (@williamheath & @mydexcic) Your data, your way Personal data stores: What is the potential, and where do they fit in the Data Protection Act. William Heath – Mydex Chairman (@williamheath & @mydexcic) www.mydex.org - All right reserved
  • 2. Taking big data to the limit
  • 3. Taking big data to the limit
  • 4. “Exactness requires carefully curated data” from Big Data: A Revolution That Will Transform How We Live, Work and Think" by Ken Cukier & Viktor Mayer-Schonberger
  • 5. Complementary approach: small data, “VRM” or The Intention Economy DOC SEARLS
  • 6. What is Mydex CIC and what does it offer? •  UK social enterprise formed in 2007 •  Empowers individuals to manage their lives more effectively •  Mydex offers highly secure personal data services: •  ID services, federated ID, SSO and ID assurance •  Secure consumer digital letterbox and data channel •  Trust framework; open platform •  Offers integration and new journeys for existing customers •  Supports “Manage my health/shopping/edu/travel/finance” apps •  Apps can be deployed inside or outside the platform •  ISO 270001 compliant; t-Scheme certified, recognised by OIX www.mydex.org - All right reserved
  • 7. It’s a highly secure personal data service for individuals
  • 8. Mydex provides a Trust Framework as a platform Mydex Charter | Terms for Members | Terms for Connections Data Sharing Agreement | ISO27001 | tScheme Relying Parties Application Attribute Providers Service Providers Attribute Verifiers Trust Framework Provider and platform Unique Secure Encrypted Connections Mydex Members www.mydex.org Personal Data Services
  • 9. Mydex delivers a persistent trusted connection between any organisation and the individual for permissioned two-way data exchange and interactions Customer can select the specific data attributes they wish to share www.mydex.org on what basis
  • 10. Clarity about role of Personal Data Stores emerging in many areas
  • 11. Mydex stated position on DPA Status as a Data Controller Mydex is not the data controller for data stored inside the PDS or shared via the API •  Mydex has no access to the data at any point •  Mydex has no commercial rights to the data
  • 12. Mydex stated position on DPA Status as a Data Controller Yes No Mydex is data controller Mydex is not data controller for the information shared in terms of the data stored with Mydex for the inside the PDS or shared purposes of service via the API provision
  • 13. What data does Mydex hold about its members? •  Mydex holds a register of members •  MydexID •  Password (SALT) which accesses only their Mydex Account, not their PDS •  Email address for purposes of service provision and support only •  IP Address for purposes of support only •  The member controls double encrypted files that together constitute a Personal Data Store. •  Mydex has •  no means of accessing the contents of files •  no means of decrypting files •  no knowledge of what is stored in files •  no knowledge of what is shared with connections
  • 14. What can Mydex do in relation to the PDS data? •  Can suspend ability to send and receive data if Mydex member instructs Mydex to so •  The member has to be able to log in to their Mydex account •  Possible scenario – loss of PIN/Passphrase by member who then wishes to stop using PDS and create new one •  Archive a PDS as per account termination defined in members’ Terms •  Delete a PDS as defined by members’ Terms
  • 15. Mydex stores in the cloud, but its Ts&Cs aren't the usual cloud storage Ts&Cs •  Mydex has no ability and asserts no right to access users’ data •  Not “to operate and improve its service” •  Nor “to personalise its service” •  Nor “to share your personal data with affiliates” •  Nor for any other reason •  Mydex reserves no right to review, screen or remove content •  Mydex can’t remove the encryption users apply •  Mydex’ architecture supports member choice in where they store their PDS •  Mydex enables the individual to act as Data Controller
  • 16. We see the emergence of secure personal data services as inevitable. So how far has it got? •  Mydex live “community prototype” completed •  HMG’s BIS midata: business gives structured data back to customers •  Other data givebacks: Google, Facebook, NHS, US blue/green buttons •  UK Government Digital Service (GDS) 'Digital by Default' commitment •  GDS ID Assurance rollout based on 3rd party services •  Mydex CIC is one of the cross-govt ID assurance providers •  Work on quality, standards & interoperability: OIX, tScheme, ISO
  • 17. Where next Mydex adoption and emergence of a range of similar services Data minimisation Diversity and interoperability
  • 18. The more information you hear, the less funky it is Nile Rodgers
  • 19. Thank you for your time WEBSITE: www.mydex.org FACEBOOK: www.facebook.com/mydex.org TWITTER: @mydexcic & @williamheath EMAIL: william@mydex.org THIRD SECTOR WHITEPAPER: thirdsector.mydex.org MIDATA WEBSITE: midata.mydex.org MYDEX OVERVIEW ON SLIDESHARE: http://www.slideshare.net/mydexcic/introduction-to-mydex-cic-personal- data-stores-7th-march-2013 MYDEX OVERVIEW ON YOUTUBE: http://www.youtube.com/watch?v=mQRZfCRbQHs
  • 20. What we find organisations need •  Identity solutions •  Federated login / SSO; to get out of the username/password business •  Verified data attributes •  Certificates to support proofs of claims •  Integrated / streamlined / low cost secure channels •  improve data quality / reduce sparsity •  richer / broader data sets about their customers and prospects •  streamline customer journeys and flows of data •  improve business process flows •  Applications that bridge traditional applications and organisation boundaries •  Need to work inside and outside the organisation •  Need to include the citizen / customer