WO2024255583A1 - 设备隐私管理方法、装置、电子设备及存储介质 - Google Patents
设备隐私管理方法、装置、电子设备及存储介质 Download PDFInfo
- Publication number
- WO2024255583A1 WO2024255583A1 PCT/CN2024/095704 CN2024095704W WO2024255583A1 WO 2024255583 A1 WO2024255583 A1 WO 2024255583A1 CN 2024095704 W CN2024095704 W CN 2024095704W WO 2024255583 A1 WO2024255583 A1 WO 2024255583A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- privacy
- score
- protection
- security
- item
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/602—Providing cryptographic facilities or services
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/577—Assessing vulnerabilities and evaluating computer system security
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
- G06F21/6218—Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
- G06F21/6245—Protecting personal data, e.g. for financial or medical purposes
Definitions
- the embodiments of the present application relate to the field of computer technology, and specifically to a device privacy management method, apparatus, electronic device and storage medium, wherein the storage medium includes a computer-readable storage medium.
- the embodiments of the present application provide a device privacy management method, apparatus, electronic device, and storage medium, which can improve the accuracy of product privacy protection measurement results.
- an embodiment of the present application provides a device privacy management method, including:
- an embodiment of the present application further provides a device privacy management apparatus, including:
- a first measurement module used to measure the privacy protection level of the device under test to obtain a first privacy measurement result
- a second measurement module used to measure the privacy management level of the supplier to which the device under test belongs, to obtain a second privacy measurement result
- a score generating module configured to generate a privacy protection score of the device under test according to the first privacy measurement result, the second privacy measurement result and a preset score weight;
- the privacy management module is used to upgrade the privacy protection of the device under test according to the privacy protection score.
- the first measurement module includes:
- An acquisition unit used to acquire the privacy security score of the device under test in the privacy protection item
- a first generating unit configured to generate a first privacy measurement result according to the score sub-weight corresponding to the privacy protection item and the privacy safety score corresponding to the privacy protection item;
- the privacy protection items include at least one of product compliance risk test items, product privacy and security protection technology test items, product adaptation law test items or product privacy protection requirement test items.
- the acquisition unit includes:
- Configuration subunit used to configure compliance risk test cases
- a testing subunit configured to test the device to be tested according to the compliance risk test case to obtain a compliance risk test result, wherein the compliance risk test result corresponds to a risk level score;
- the first calculation subunit is used to calculate the average value of the risk level scores corresponding to each compliance risk test case to obtain an average risk level score
- the first generating subunit is used to use the average risk level score as the privacy security score of the device under test in the product compliance risk test item.
- the acquisition unit includes:
- a first determination subunit is used to determine the privacy and security protection technology items supported by the device under test
- An acquisition subunit is used to acquire a preset mapping relationship set, wherein the preset mapping relationship set includes a mapping relationship between the type, strength, and quantity of preset privacy and security protection technologies and security scores;
- a third determination subunit is used to determine a security score according to the preset mapping relationship set and the type, strength or quantity of the privacy and security protection technology applied by the privacy and security protection technology item;
- the second generating subunit is used to use the average security score as the privacy security score of the device under test in the product privacy security protection technology test item.
- the acquisition unit includes: a region determination subunit, which is used to determine the target region where the device to be tested is to be put online;
- a baseline determination subunit used to determine a target legal baseline that the target area needs to meet
- the score determination subunit is used to determine the privacy security score of the device under test according to the actual legal baseline currently satisfied by the device under test and the target legal baseline.
- the second measurement module includes:
- a supplier determination unit used to determine the supplier to which the device under test belongs
- a management level determination unit used to measure the privacy management level of the supplier according to the reference privacy information management system and the privacy maturity model to obtain a privacy management level score
- a first matching unit configured to match a reference software security development lifecycle with an actual software security development lifecycle of the device under test to obtain a first matching result
- a second matching unit configured to match the reference R&D privacy protection design process with the actual R&D privacy protection design process of the device under test to obtain a second matching result
- the second generating unit is used to generate a second privacy measurement result according to the privacy management level score and the developed and designed privacy control score.
- a protection technology determination unit configured to determine a current privacy protection technology corresponding to the privacy protection item of the device under test if the privacy protection degree score does not meet the score threshold;
- the privacy management unit is used to upgrade the privacy protection of the device under test according to the updated privacy protection score.
- the embodiment of the present application also provides an electronic device, the electronic device includes a memory, a processor and a storage device stored in the memory A computer program in a memory and executable on a processor, when the processor executes the computer program, implements the steps in the device privacy management method in the first aspect or implements the steps in the device privacy management method in the third aspect.
- an embodiment of the present application further provides a storage medium, which includes a computer-readable storage medium, on which a computer program is stored, and when the computer program is executed by a processor, the steps in the above-mentioned device privacy management method are implemented.
- the embodiments of the present application further provide a computer program product or a computer program, which includes a computer instruction stored in a computer-readable storage medium.
- the processor of the computer device reads the computer instruction from the computer-readable storage medium, and the processor executes the computer instruction, so that the computer device executes the method provided in various optional implementations described in the embodiments of the present application.
- the embodiment of the present application measures the privacy protection level of the device under test to obtain a first privacy measurement result, measures the privacy management level of the supplier to which the device under test belongs to obtain a second privacy measurement result, generates a privacy protection score for the device under test based on the first privacy measurement result and the second privacy measurement result, and upgrades the privacy protection of the device under test based on the privacy protection score.
- the second privacy measurement result is obtained by measuring the privacy management level of the supplier, and the privacy protection score of the device under test is generated based on the second privacy measurement result and the first privacy measurement result for the privacy of the product itself.
- the embodiment of the present application enriches the measurement dimension of product privacy protection, improves the accuracy of the product privacy protection measurement result, and facilitates the implementation of privacy and security protection management of the product.
- FIG1 is a schematic diagram of a scenario of a device privacy management method provided in an embodiment of the present application.
- FIG2 is a schematic diagram of a process flow of a device privacy management method provided in an embodiment of the present application.
- FIG3 is a result diagram of various privacy and security protection technical items and their corresponding security scores provided in an embodiment of the present application
- FIG4 is a schematic diagram of the architecture of device privacy management provided in an embodiment of the present application.
- FIG5 is another schematic diagram of a device privacy management method provided in an embodiment of the present application.
- FIG6 is a schematic diagram of the structure of a device privacy management apparatus provided in an embodiment of the present application.
- FIG. 7 is a schematic diagram of the structure of an electronic device provided in an embodiment of the present application.
- the embodiments of the present application provide a device privacy management method, apparatus, electronic device and storage medium.
- the embodiments of the present application provide a device privacy management apparatus suitable for electronic devices, wherein the electronic devices include terminals, wherein the terminals include but are not limited to mobile phones, tablet computers, computers or televisions and other devices.
- the server 10 obtains configuration parameter information of the device under test 11, and measures the privacy protection level of the device under test 11 according to the configuration parameter information to obtain a first privacy measurement result;
- the server 10 obtains the supplier information of the device under test, and measures the privacy management level of the supplier to obtain a second privacy measurement result;
- a privacy protection score is generated according to the first privacy measurement result and the second privacy measurement result, and the privacy protection of the device under test is upgraded according to the privacy protection score.
- the embodiment of the present application enriches the measurement dimensions of product privacy protection, improves the accuracy of product privacy protection measurement results, and facilitates the implementation of privacy and security protection management of products.
- FIG 2 is a schematic diagram of the process of the device privacy management method provided by the embodiment of the present application.
- the specific process of the device privacy management method can be as follows: 101. Measure the privacy protection level of the device to be tested to obtain a first privacy measurement result.
- the device under test refers to the device that needs to undergo privacy protection assessment, such as equipment that leaves the factory after production, equipment used for research and development testing, or equipment that needs to be tested due to privacy and security issues during the application process.
- the privacy management level of the supplier refers to the control level of the privacy protection of the supplier, wherein the supplier is the enterprise that develops or produces the device.
- the privacy protection level of the device can be analyzed from more dimensions. For example, the higher the privacy protection control level of the company, the higher the privacy protection level of the corresponding product will generally be.
- the privacy protection score is a score for the device in terms of user data privacy protection. The higher the score, the better the privacy protection of the device or product. Conversely, the lower the score, the worse the privacy protection of the device or product.
- the score weight reflects the proportion of the score corresponding to each privacy measurement result.
- the score weights of the first privacy measurement result and the second privacy measurement result each account for 50%.
- the score weight can be flexibly adjusted according to actual needs, and the specific value of the score weight is not limited here.
- whether the introduction of corresponding equipment is allowed can also be determined based on the privacy protection score. For example, when the privacy protection score of the equipment is low, the introduction of the equipment will be rejected. When the privacy protection score of the equipment reaches the standard, the introduction of the equipment will be allowed.
- equipment introduction is also called equipment introduction, which refers to the purchase or import of equipment.
- the first privacy measurement result is a privacy score of the device during the application process. Therefore, by obtaining the privacy security score of the device under test in each privacy protection item, the first privacy measurement result of the device under test can be obtained. That is, optionally, in some embodiments of the present application, the step of "measuring the privacy protection level of the device under test to obtain the first privacy measurement result" includes:
- the privacy protection items include at least one of product compliance risk test items, product privacy and security protection technology test items, product adaptation law test items or product privacy protection requirement test items.
- the privacy protection items are several detection items that the device under test mainly targets, and these detection items realize the detection of device privacy security from different dimensions.
- the dynamic first privacy measurement result of the device during the application process is obtained by comprehensively analyzing the privacy security scores of various detection items.
- the score weight reflects the score proportion of each privacy protection item. For example, when there are four privacy protection items, the score weight of each privacy protection item can be 25%. The specific value of the score weight can also be flexibly adjusted according to actual needs.
- the product compliance risk test item is a test for whether the device has compliance risk.
- a test case can be constructed, and the device can be tested based on the test case to obtain the test result for the compliance risk. That is, optionally, in some embodiments of the present application, if the privacy protection item is a product compliance risk test item, the step of "obtaining the privacy security score of the device to be tested in the privacy protection item" includes:
- the average risk level score is used as the privacy security score of the device under test in the product compliance risk test item.
- the compliance risk test case is a test case established for the device under test in terms of product compliance risk testing. Based on the execution of the test case, the risk situation of the device under test in terms of product compliance is obtained. Among them, the compliance risk test case includes the project to be tested and related test files and test input data.
- Compliance risk test cases can include multiple cases, each of which corresponds to a test result.
- the test result can be expressed as a score between 0 and 5. Different scores correspond to different risk levels, for example, severe: 0 points; high risk: 1 point; medium risk: 2 points; low risk: 4 points; no risk (pass): 5 points.
- the privacy security score of the product compliance risk test item for the device can be obtained by combining the compliance risk test results of multiple test cases, for example, (L i represents the test result score of the i-th test case), where N is the number of test cases or items, that is, the privacy security score of the compliance risk test item of the product is represented by the average of the test result scores of multiple compliance risk test cases.
- the product privacy and security protection technology test item is a test of the privacy and security protection technology configured for the device, and the product privacy and security protection technology of the device can be scored from the perspectives of the type, strength or number of privacy and security protection technologies applied, that is, optionally, in some embodiments of the present application, if the privacy protection item is a product privacy and security protection technology test item, the step of "obtaining the privacy security score of the device under test in the privacy protection item" includes:
- For each privacy and security protection technology item determine the type, strength, and quantity of privacy and security protection technology applied by the privacy and security protection technology item;
- the preset mapping relationship set includes a mapping relationship between the type, strength, and quantity of preset privacy and security protection technologies and security scores;
- the average security score is used as the privacy security score of the device under test in the product privacy security protection technology test item.
- the security score of each current privacy and security protection technology item can be obtained based on a pre-established mapping relationship between the type, strength, number, and security score of the privacy and security protection technology, and then the privacy and security score of the device under test for the product privacy and security protection technology test item can be obtained based on the average of each security score.
- the privacy and security score for the product privacy and security protection technology test item can also be obtained by comprehensively analyzing the security scores of multiple privacy and security protection technology items corresponding to the product privacy and security protection technology test item. For example, (L i represents the security score of the i-th privacy and security protection technology item).
- the product adaptation legal test item is a privacy security test for whether the device meets the legal requirements of the corresponding country or region, for example, whether the laws used by the product meet the privacy security legal baseline of the corresponding region, that is, optionally, in some embodiments of the present application, if the privacy protection item is a product adaptation legal test item, the step of "obtaining the privacy security score of the device to be tested in the privacy protection item" includes:
- a privacy security score of the device under test is determined according to an actual legal baseline currently satisfied by the device under test and the target legal baseline.
- the legal baseline is the benchmark corresponding to the law, that is, the legal requirements met by the device.
- the legal baseline mainly refers to the privacy legal requirements corresponding to the device in terms of privacy law.
- the privacy security score of the device in the product adaptation legal test items can be obtained. For example, if the privacy law requirements of country A are relatively low or there is no privacy law, but the privacy protection measures taken by the product have exceeded the legal requirements of country A, the score is 5 points; the privacy law requirements of country B are particularly high, but the product has not taken privacy protection measures, then the score is 0 points.
- the product privacy protection requirement is used as the privacy security score of the device under test for the product type.
- the mapping relationship includes the mapping relationship between the preset product type and the preset product privacy protection requirement. It can be understood that the mapping relationship can be predefined according to the degree of protection of data privacy requirements of different products.
- the product privacy protection requirement for smart lighting control, smart curtains, smart range hoods, and Bluetooth temperature and humidity sensors is 1, and the product privacy protection requirement for smart air conditioners, smart refrigerators (without screens), smart washing machines, smart air purifiers, smart fresh air systems, and Bluetooth body fat scales is 2.
- the product privacy protection requirement for smart sweeping robots (without cameras) and smart refrigerators (with screens) is 3, and the product privacy protection requirement for smart TVs and smart gateways is 4.
- the product privacy protection requirement for smart door locks, smart cameras, smart doorbells, smart cat eyes, smart sweeping robots (with cameras), smart watches, and smart phones is 5, etc.
- the second privacy measurement result is a scoring result of the privacy management level of the enterprise that develops or designs the device and the R&D and design process of the enterprise
- the privacy management level of the enterprise and the scoring results of the R&D and design process of the enterprise reflect the privacy protection of the developed device to a certain extent. For example, if the privacy management level of the enterprise is high, and the scoring result of the R&D and design process is that the design process is more standardized, then the privacy protection and specification of the corresponding developed device will also be higher. Therefore, the evaluation result of the enterprise can be used as a reference for the privacy protection of the corresponding device. That is, optionally, in some embodiments of the present application, the step of "measuring the privacy management level of the supplier to which the device to be tested belongs to obtain a second privacy measurement result" includes:
- a second privacy measurement result is generated based on the privacy management level score and the developed and designed privacy control score.
- the matching result reflects the degree of matching, which can be expressed as a percentage or a decimal between 0 and 1. For example, a higher percentage of the first matching result indicates that the two life cycles are relatively close or consistent, and a lower percentage of the first matching result indicates that the similarity between the two life cycles is low; for example, a higher percentage of the second matching result indicates that the privacy protection design process is relatively close or consistent, and conversely, a lower percentage of the second matching result indicates that the two privacy protection design processes are basically different or have low overlap.
- the degree of matching between the two comparison objects is reflected in the form of percentage.
- the first matching result and the second matching result can also be calculated by weight ratio to obtain the R&D design privacy control score. For example, the percentages corresponding to the two matching results are multiplied by the weight ratio and then added to obtain the final R&D design privacy control score.
- the privacy management level score reflects the level of privacy management of the enterprise
- the R&D and design privacy control score reflects the privacy control score of the enterprise during the development of the device.
- the software security development life cycle (SSDLC) and the privacy protection design process (PbD, Privacy by Design) have corresponding reference standards.
- the R&D and design privacy management score of the enterprise is determined by judging whether the enterprise meets the corresponding standards.
- the device privacy protection score can be analyzed through aspects such as the device R&D life cycle and the privacy protection design process.
- the company's R&D software security development life cycle (SSDLC) level can be analyzed.
- the company’s R&D privacy protection design process (PbD) level is evaluated to obtain a privacy design process evaluation score.
- the static measurement module A includes the company internal control measurement part a1 and the R&D management and control measurement part a2, each accounting for 50%.
- the company internal control measurement part a1 includes the privacy information management system test part a11 and the privacy maturity model test part a12, among which the management system evaluation score of the privacy information management system test part a11 accounts for 80% of the company internal control measurement part a1, and the model evaluation score of the privacy maturity model test part a12 accounts for 20% of the company internal control measurement part a1.
- the second privacy measurement result St of the static measurement module A is: (management system evaluation score*0.8+model evaluation score*0.2)*0.5+R&D control measurement score*0.5.
- the dynamic measurement module B includes product compliance risk test item b1, product privacy and security protection technology test item b2, product adaptation law test item b3 or product privacy protection requirement test item b4, wherein the fusion weights of each test item account for 40%, 40%, 10% and 10% of the dynamic measurement module B respectively.
- the first privacy measurement result Dy of the dynamic measurement module B is: compliance risk detection score*0.4+product privacy and security protection technology score*0.4+legal adaptability*0.1+1/selected product type privacy protection requirement strength*0.1.
- a new privacy protection score can be obtained by adjusting the privacy protection data of the device under test, and the privacy protection data suitable for the device under test is determined according to the change of the new privacy protection score. That is, optionally, in some embodiments of the present application, the step of “upgrading the privacy protection of the device under test according to the privacy protection score” includes:
- the first privacy measurement result is updated according to the target privacy protection technology to obtain an updated first privacy measurement result; an updated privacy protection score is obtained according to the updated first privacy measurement result and the second privacy measurement result; and the privacy protection of the device under test is upgraded according to the updated privacy protection score.
- the embodiment of the present application realizes the engineering configuration of the device privacy security protection assessment process through static measurement, dynamic measurement and result visualization, and the privacy security protection assessment of each device can be realized based on this process.
- the privacy security assessment of the device can reduce the professional skill requirements for operators, reduce the application cost, and realize the privacy security assessment of the device from multiple dimensions such as the enterprise and the device itself, so as to have a more comprehensive understanding of the privacy defects of the product.
- different privacy protection scores can be obtained by adjusting the privacy protection technology applied to each privacy protection item, so as to realize different measures according to the cost to judge the degree of privacy protection and whether it meets the requirements of local laws and regulations.
- the device After conducting a privacy and security assessment on the device, corresponding privacy and security improvements can be made to the device to obtain a device with better privacy protection effects.
- the user uses the device for communication or application, the user's data can be better protected and privacy and security can be improved.
- FIG. 5 is a flow chart of another method for device privacy management provided in an embodiment of the present application, wherein the specific process of the device privacy management includes:
- step 203 Whether to update the company's internal control metrics. If yes, execute step 203;
- the company's internal control measurement is usually updated every year, and it is not necessary to update it every time. And the company's internal control measurement value remains basically unchanged every year. Therefore, if you do not choose to update, you can continue to use the historical company's internal control measurement results.
- the privacy maturity models include ISC2, NIST, GAPP, and CNIL.
- step 206 Whether to update the R&D control metrics, if so, execute step 206;
- the R&D control metric is usually updated every year and does not need to be updated every time; and the R&D control metric value remains basically unchanged every year. Therefore, if you do not choose to update, you can continue to use the historical R&D control metric results.
- the product privacy protection requirement level score corresponding to the current product type is determined according to the corresponding relationship between the product type and the product privacy protection requirement level.
- the current privacy and security technology security score of the smart home is obtained.
- the risks of smart products can be detected through automatic detection and a score can be obtained; for example, compliance risk test cases can be configured and executed, and the scores of each compliance risk test case can be averaged to obtain the privacy security score of the smart home in compliance risk detection.
- the privacy protection score [(management system assessment score*0.8+model assessment score*0.2)*0.5+(R&D cycle assessment score*0.5+privacy design process assessment score*0.5)*0.5]*0.5+[compliance risk privacy security score*0.4+privacy security technology security score*0.4+legal privacy security score*0.1+product privacy protection requirement score*0.1]*0.5.
- the privacy protection items that can be improved refer to the privacy protection items with lower scores.
- the present application also provides a device privacy management apparatus based on the above device privacy management method.
- the meaning of the third target term is the same as that in the above device privacy management method, and the specific implementation details can refer to the description in the method embodiment.
- FIG. 6 is a schematic diagram of the structure of a device privacy management apparatus provided in an embodiment of the present application, wherein the device privacy management apparatus Private management devices may include:
- a first measurement module 301 is used to measure the privacy protection level of the device under test to obtain a first privacy measurement result
- a second measurement module 302 is used to measure the privacy management level of the supplier to which the device under test belongs, and obtain a second privacy measurement result;
- a score generating module 303 configured to generate a privacy protection score of the device under test according to the first privacy measurement result, the second privacy measurement result and a preset score weight;
- the privacy management module 304 is used to upgrade the privacy protection of the device under test according to the privacy protection score.
- the first metric module 301 includes:
- An acquisition unit used to acquire the privacy security score of the device under test in the privacy protection item
- a first generating unit configured to generate a first privacy measurement result according to the score sub-weight corresponding to the privacy protection item and the privacy safety score corresponding to the privacy protection item;
- the privacy protection items include at least one of product compliance risk test items, product privacy and security protection technology test items, product adaptation law test items or product privacy protection requirement test items.
- the acquisition unit includes:
- Configuration subunit used to configure compliance risk test cases
- a testing subunit configured to test the device to be tested according to the compliance risk test case to obtain a compliance risk test result, wherein the compliance risk test result corresponds to a risk level score;
- the first calculation subunit is used to calculate the average value of the risk level scores corresponding to each compliance risk test case to obtain an average risk level score
- the first generating subunit is used to use the average risk level score as the privacy security score of the device under test in the product compliance risk test item.
- the acquisition unit includes:
- a first determination subunit is used to determine the privacy and security protection technology items supported by the device under test
- a second determination subunit is used to determine, for each privacy and security protection technology item, the type, strength and quantity of the privacy and security protection technology applied by the privacy and security protection technology item;
- An acquisition subunit is used to acquire a preset mapping relationship set, wherein the preset mapping relationship set includes a mapping relationship between the type, strength, and quantity of preset privacy and security protection technologies and security scores;
- a third determination subunit is used to determine a security score according to the preset mapping relationship set and the type, strength or quantity of the privacy and security protection technology applied by the privacy and security protection technology item;
- the second calculation subunit is used to calculate the average security score of each privacy and security protection technology item to obtain an average security score
- the acquisition unit includes: a region determination subunit, which is used to determine the target region where the device to be tested is to be put online;
- the score determination subunit is used to determine the privacy security score of the device under test according to the actual legal baseline currently satisfied by the device under test and the target legal baseline.
- the second metric module 302 includes:
- a supplier determination unit used to determine the supplier to which the device under test belongs
- a management level determination unit used to measure the privacy management level of the supplier according to the reference privacy information management system and the privacy maturity model to obtain a privacy management level score
- a second matching unit configured to match the reference R&D privacy protection design process with the actual R&D privacy protection design process of the device under test to obtain a second matching result
- a research and development level determination unit configured to obtain a research and development design privacy management score according to the first matching result and the second matching result
- the second generating unit is used to generate a second privacy measurement result according to the privacy management level score and the developed and designed privacy control score.
- the privacy management module 304 includes:
- a protection technology determination unit configured to determine a current privacy protection technology corresponding to the privacy protection item of the device under test if the privacy protection degree score does not meet the score threshold;
- a measurement result updating unit configured to re-measure based on the target privacy protection technology to obtain an updated first privacy measurement result
- a score updating unit configured to multiply the updated first privacy measurement result by the first score weight to obtain a first protection score, multiply the second privacy measurement result by the second score weight to obtain a second protection score, and add the first protection score and the second protection score to obtain an updated privacy protection score
- a privacy management unit is used to upgrade the privacy protection of the device under test according to the updated privacy protection score.
- the first measurement module 301 first measures the privacy protection level of the device under test to obtain a first privacy measurement result
- the second measurement module 302 measures the privacy management level of the supplier to which the device under test belongs to obtain a second privacy measurement result
- the score generation module 303 generates a privacy protection score for the device under test according to the first privacy measurement result, the second privacy measurement result and a preset score weight
- the privacy management module 304 upgrades the privacy protection of the device under test according to the privacy protection score.
- the embodiment of the present application obtains a second privacy measurement result by measuring the privacy management level of the supplier, and generates a privacy protection score for the device under test based on the second privacy measurement result and the first privacy measurement result for the privacy of the product itself.
- the embodiment of the present application enriches the measurement dimensions of product privacy protection, improves the accuracy of product privacy protection measurement results, and facilitates the implementation of privacy and security protection management of products.
- FIG7 shows a schematic diagram of the structure of the electronic device involved in the present application, specifically:
- the electronic device may include components such as a processor 401 with one or more processing cores, a memory 402 with one or more computer-readable storage media, a power supply 403, and an input unit 404.
- a processor 401 with one or more processing cores
- a memory 402 with one or more computer-readable storage media
- a power supply 403 with one or more computer-readable storage media
- an input unit 404 may be included in the electronic device.
- FIG. 7 does not constitute a limitation on the electronic device, and may include more or fewer components than shown in the figure, or combine certain components, or arrange the components differently. Among them:
- the processor 401 is the control center of the electronic device, which uses various interfaces and lines to connect various parts of the entire electronic device, and executes various functions of the electronic device and processes data by running or executing software programs and/or modules stored in the memory 402, and calling data stored in the memory 402.
- the processor 401 may include one or more processing cores; preferably, the processor 401 may integrate an application processor and a modem processor, wherein the application processor mainly processes the operating system, object interface and application programs, etc., and the modem processor mainly processes wireless communications. It is understandable that the above-mentioned modem processor may not be integrated into the processor 401.
- the memory 402 can be used to store software programs and modules.
- the processor 401 executes various functional applications and device privacy management by running the software programs and modules stored in the memory 402.
- the memory 402 may mainly include a program storage area and a data storage area, wherein the program storage area may store an operating system, an application required for at least one function (such as a sound playback function, an image playback function, etc.), etc.; the data storage area may store data created according to the use of the electronic device, etc.
- the memory 402 may include a high-speed random access memory, and may also include a non-volatile memory, such as at least one disk storage device, a flash memory device, or other volatile solid-state storage device. Accordingly, the memory 402 may also A memory controller is included to provide processor 401 with access to memory 402 .
- the electronic device also includes a power supply 403 for supplying power to each component.
- the power supply 403 can be logically connected to the processor 401 through a power management system, so as to manage charging, discharging, power consumption and other functions through the power management system.
- the power supply 403 can also include one or more DC or AC power supplies, recharging systems, power failure detection circuits, power converters or inverters, power status indicators and other arbitrary components.
- the electronic device may also include an input unit 404, which can be used to receive input digital or character information, and generate keyboard, mouse, joystick, optical or trackball signal input related to object setting and function control.
- the electronic device may also include a display unit, etc., which will not be repeated here.
- the processor 401 in the electronic device will load the executable files corresponding to the processes of one or more applications into the memory 402 according to the following instructions, and the processor 401 will run the application stored in the memory 402, thereby implementing the steps in any device privacy management method provided in this application.
- the privacy protection level of the device under test is measured to obtain a first privacy measurement result
- the privacy management level of the supplier to which the device under test belongs is measured to obtain a second privacy measurement result
- a privacy protection score of the device under test is generated according to the first privacy measurement result, the second privacy measurement result and the preset score weight, and the privacy protection of the device under test is upgraded according to the privacy protection score.
- the second privacy measurement result is obtained by measuring the privacy management level of the supplier
- the privacy protection score of the device under test is generated according to the second privacy measurement result and the first privacy measurement result for the privacy of the product itself.
- the embodiment of the present application enriches the measurement dimension of product privacy protection, improves the accuracy of the product privacy protection measurement result, and facilitates the implementation of privacy and security protection management of the product.
- the computer readable storage medium may include: read-only memory (ROM), random access memory (RAM), disk or CD, etc.
- the instructions stored in the computer-readable storage medium can execute the steps in any device privacy management method provided in the present application, the beneficial effects that can be achieved by any device privacy management method provided in the present application can be achieved. Please refer to the previous embodiments for details and will not be repeated here.
- the present application involves the configuration data of the device to be tested (compliance risk data, adaptation legal data, privacy and security protection technology, product type, etc.), and the relevant information of the enterprise corresponding to the device to be tested (the name of the enterprise, the privacy management level of the enterprise, including the level of privacy management and the life cycle of the equipment developed and the corresponding privacy design process) and other related data.
- the relevant information of the enterprise corresponding to the device to be tested the name of the enterprise, the privacy management level of the enterprise, including the level of privacy management and the life cycle of the equipment developed and the corresponding privacy design process
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- General Engineering & Computer Science (AREA)
- Health & Medical Sciences (AREA)
- General Health & Medical Sciences (AREA)
- Software Systems (AREA)
- Bioethics (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Medical Informatics (AREA)
- Databases & Information Systems (AREA)
- Computing Systems (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims (20)
- 一种设备隐私管理方法,其中,包括:对待测设备进行隐私保护水平度量,得到第一隐私度量结果;对所述待测设备所属的供应商进行隐私管理水平度量,得到第二隐私度量结果;根据所述第一隐私度量结果、所述第二隐私度量结果和预设的得分权重,生成所述待测设备的隐私保护度评分;根据所述隐私保护度评分对所述待测设备的隐私保护进行升级。
- 根据权利要求1所述的方法,其中,所述对待测设备进行隐私保护水平度量,得到第一隐私度量结果,包括:获取待测设备在隐私保护项的隐私安全得分;根据所述隐私保护项对应的得分子权重以及所述隐私保护项对应的所述隐私安全得分生成第一隐私度量结果;所述隐私保护项包括产品合规风险测试项、产品隐私安全保护技术测试项、产品适配法律测试项或产品隐私保护要求度测试项中的至少一种。
- 根据权利要求2所述的方法,其中,若所述隐私保护项为产品合规风险测试项,所述获取待测设备在隐私保护项的隐私安全得分,包括:配置合规风险测试用例;根据所述合规风险测试用例对待测设备进行测试,得到合规风险测试结果,所述合规风险测试结果对应一风险等级得分;计算各个合规风险测试用例对应的风险等级得分的平均值,得到平均风险等级得分;将所述平均风险等级得分作为所述待测设备在所述产品合规风险测试项的隐私安全得分。
- 根据权利要求2所述的方法,其中,若所述隐私保护项为产品隐私安全保护技术测试项,所述获取待测设备在隐私保护项的隐私安全得分,包括:确定待测设备支持的隐私安全保护技术项;针对每个隐私安全保护技术项,确定所述隐私安全保护技术项所应用的隐私安全保护技术的类型、强度以及数量;获取预设映射关系集合,所述预设映射关系集合包括预设的隐私安全保护技术的类型、强度以及数量和安全评分的映射关系;根据所述预设映射关系集合,根据所述隐私安全保护技术项应用的隐私安全保护技术的类型、强度或者数量确定安全评分;计算各个隐私安全保护技术项的安全评分的平均值,得到平均安全评分;将所述平均安全评分作为所述待测设备在所述产品隐私安全保护技术测试项的隐私安全得分。
- 根据权利要求2所述的方法,其中,若所述隐私保护项为产品适配法律测试项,所述获取待测设备在隐私保护项的隐私安全得分,包括:确定待测设备待上线的目标区域;确定所述目标区域所需满足的目标法律基线;根据所述待测设备当前满足的实际法律基线和所述目标法律基线,确定所述待测设备的隐私安全得分。
- 根据权利要求1所述的方法,其中,所述对所述待测设备所属的供应商进行隐私管理水平度量,得到第二隐私度量结果,包括:确定所述待测设备所属的供应商;根据参考隐私信息管理体系和隐私成熟度模型对所述供应商的隐私管理水平进行度量,得到隐私管理水平得分;将参考软件安全开发生命周期与所述待测设备的实际软件安全开发生命周期进行匹配,得到第一匹配结果;将参考研发隐私保护设计流程与所述待测设备的实际研发隐私保护设计流程进行匹配,得到第二匹配结果;根据所述第一匹配结果和所述第二匹配结果得到研发设计隐私管控得分;根据所述隐私管理水平得分和所研发设计隐私管控得分,生成第二隐私度量结果。
- 根据权利要求2所述的方法,其中,所述根据所述隐私保护度评分对所述待测设备的隐私保护进行升级,包括:若所述隐私保护度评分不满足评分阈值,则确定待测设备的隐私保护项对应的当前隐私保护技术;变更所述当前隐私保护技术,得到目标隐私保护技术;基于所述目标隐私保护技术重新度量得到更新后第一隐私度量结果;根据所述更新后第一隐私度量结果和所述第二隐私度量结果,得到更新后隐私保护度评分;根据所述更新后隐私保护度评分对所述待测设备的隐私保护进行升级。
- 根据权利要求7所述的方法,其中,所述根据所述更新后第一隐私度量结果和所述第二隐私度量结果,得到更新后隐私保护度评分,包括:将更新后第一隐私度量结果与第一得分权重相乘得到第一保护度得分;将第二隐私度量结果与第二得分权重相乘得到第二保护度得分;将第一保护度得分和第二保护度得分相加,得到更新后隐私保护度评分。
- 根据权利要求2所述的方法,其中,所述获取待测设备在隐私保护项的隐私安全得分,包括:确定待测设备的产品类型;根据该产品类型和映射关系,确定该待测设备对应的产品隐私保护要求度;将所述产品隐私保护要求度作为所述待测设备针对所述产品类型方面的隐私安全得分。
- 根据权利要求1所述的方法,其中,所述隐私保护水平是所述设备在使用时对用户数据的隐私保护水平,由所述设备在使用时所述设备的相关配置参数决定;所述隐私管理水平指所述供应商隐私保护的控制水平,其中,所述供应商为开发或者生产所述设备的企业。
- 根据权利要求1所述的方法,其中,所述预设的得分权重包括针对第一隐私度量结果的第一得分权重和针对所述第二隐私度量结果的第二得分权重,所述第一得分权重和所述第二得分权重分别包括50%。
- 根据权利要求4所述的方法,其中,所述隐私安全保护技术项包括数据加密、数据备份和回复、安全套接层协议传输数据、云端采用的安全产品、接口认证授权、数据脱敏、匿名算法、差分隐私中的至少一种。
- 根据权利要求6所述的方法,其中,所述根据所述第一匹配结果和所述第二匹配结果得到研发设计隐私管控得分,包括:将所述第一匹配结果对应的第一百分比和所述第二匹配结果对应的第二百分比,按照权重数据运算后得到研发设计隐私管控得分。
- 根据权利要求6所述的方法,其中,所述参考隐私信息管理体系包括ISO27701,所述隐私成熟度模型包括ISC2、NIST、GAPP、CNIL中的至少一种。
- 一种设备隐私管理装置,其中,包括:第一度量模块,用于对待测设备进行隐私保护水平度量,得到第一隐私度量结果;第二度量模块,用于对所述待测设备所属的供应商进行隐私管理水平度量,得到第二隐私度量结果;评分生成模块,用于根据所述第一隐私度量结果、所述第二隐私度量结果和预设的得分权重,生成所述待测设备的隐私保护度评分;隐私管理模块,用于根据所述隐私保护度评分对所述待测设备的隐私保护进行升级。
- 根据权利要求15所述的装置,其中,所述第一度量模块包括:获取单元,用于获取待测设备在隐私保护项的隐私安全得分;第一生成单元,用于根据所述隐私保护项对应的得分子权重以及所述隐私保护项对应的所述隐私安全得分生成第一隐私度量结果;所述隐私保护项包括产品合规风险测试项、产品隐私安全保护技术测试项、产品适配法律测试项或产品隐私保护要求度测试项中的至少一种。
- 根据权利要求16所述的装置,其中,所述隐私保护项为产品合规风险测试项,所述获取单元包括:配置子单元,用于配置合规风险测试用例;测试子单元,用于根据所述合规风险测试用例对待测设备进行测试,得到合规风险测试结果,所述合规风险测试结果对应一风险等级得分;第一计算子单元,用于计算各个合规风险测试用例对应的风险等级得分的平均值,得到平均风险等级得分;第一生成子单元,用于将所述平均风险等级得分作为所述待测设备在所述产品合规风险测试项的隐私安全得分。
- 根据权利要求16所述的装置,其中,所述隐私保护项为产品隐私安全保护技术测试项,所述获取单元包括:第一确定子单元,用于确定待测设备支持的隐私安全保护技术项;第二确定子单元,用于针对每个隐私安全保护技术项,确定所述隐私安全保护技术项所应用的隐私安全保护技术的类型、强度以及数量;获取子单元,用于获取预设映射关系集合,所述预设映射关系集合包括预设的隐私安全保护技术的类型、强度以及数量和安全评分的映射关系;第三确定子单元,用于根据所述预设映射关系集合,根据所述隐私安全保护技术项应用的隐私安全保护技术的类型、强度或者数量确定安全评分;第二计算子单元,用于计算各个隐私安全保护技术项的安全评分的平均值,得到平均安全评分;第二生成子单元,用于将所述平均安全评分作为所述待测设备在所述产品隐私安全保护技术测试项的隐私安全得分。
- 一种电子设备,其中,所述电子设备包括存储器、处理器及存储在所述存储器中并可在所述处理器上运行的计算机程序,所述处理器执行所述计算机程序时实现如权利要求1-14任一项所述设备隐私管理方法的步骤。
- 一种计算机可读存储介质,其中,所述计算机可读存储介质上存储有计算机程序,所述计算机程序被处理器执行时实现如权利要求1-14任一项所述设备隐私管理方法的步骤。
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| EP24822535.1A EP4730179A1 (en) | 2023-06-14 | 2024-05-28 | Device privacy management method and apparatus, electronic device, and storage medium |
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN202310707303.6A CN117407892A (zh) | 2023-06-14 | 2023-06-14 | 设备隐私管理方法、装置、电子设备及存储介质 |
| CN202310707303.6 | 2023-06-14 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2024255583A1 true WO2024255583A1 (zh) | 2024-12-19 |
Family
ID=89496798
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2024/095704 Ceased WO2024255583A1 (zh) | 2023-06-14 | 2024-05-28 | 设备隐私管理方法、装置、电子设备及存储介质 |
Country Status (3)
| Country | Link |
|---|---|
| EP (1) | EP4730179A1 (zh) |
| CN (1) | CN117407892A (zh) |
| WO (1) | WO2024255583A1 (zh) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN120068156A (zh) * | 2025-04-18 | 2025-05-30 | 南京霈玥科技有限公司 | 一种眼科临床医疗数据管理与共享系统 |
Families Citing this family (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN117407892A (zh) * | 2023-06-14 | 2024-01-16 | 深圳Tcl新技术有限公司 | 设备隐私管理方法、装置、电子设备及存储介质 |
| CN118364514A (zh) * | 2024-06-20 | 2024-07-19 | 广州信安数据有限公司 | App敏感行为自动化合规检测方法和计算机程序产品 |
Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20140173684A1 (en) * | 2012-12-14 | 2014-06-19 | Nymity, Inc. | Methods, software, and devices for automatically scoring privacy protection measures |
| CN109716345A (zh) * | 2016-04-29 | 2019-05-03 | 普威达有限公司 | 计算机实现的隐私工程系统和方法 |
| CN111400747A (zh) * | 2020-02-24 | 2020-07-10 | 西安交通大学 | 一种基于轨迹隐私保护的度量方法 |
| CN113221161A (zh) * | 2021-04-22 | 2021-08-06 | 朱洪东 | 在线教育大数据场景下的信息防护方法及可读存储介质 |
| CN114357509A (zh) * | 2021-12-28 | 2022-04-15 | 深圳Tcl新技术有限公司 | 隐私安全评估方法、装置、计算机设备和可读存储介质 |
| CN117407892A (zh) * | 2023-06-14 | 2024-01-16 | 深圳Tcl新技术有限公司 | 设备隐私管理方法、装置、电子设备及存储介质 |
-
2023
- 2023-06-14 CN CN202310707303.6A patent/CN117407892A/zh active Pending
-
2024
- 2024-05-28 WO PCT/CN2024/095704 patent/WO2024255583A1/zh not_active Ceased
- 2024-05-28 EP EP24822535.1A patent/EP4730179A1/en active Pending
Patent Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20140173684A1 (en) * | 2012-12-14 | 2014-06-19 | Nymity, Inc. | Methods, software, and devices for automatically scoring privacy protection measures |
| CN109716345A (zh) * | 2016-04-29 | 2019-05-03 | 普威达有限公司 | 计算机实现的隐私工程系统和方法 |
| CN111400747A (zh) * | 2020-02-24 | 2020-07-10 | 西安交通大学 | 一种基于轨迹隐私保护的度量方法 |
| CN113221161A (zh) * | 2021-04-22 | 2021-08-06 | 朱洪东 | 在线教育大数据场景下的信息防护方法及可读存储介质 |
| CN114357509A (zh) * | 2021-12-28 | 2022-04-15 | 深圳Tcl新技术有限公司 | 隐私安全评估方法、装置、计算机设备和可读存储介质 |
| CN117407892A (zh) * | 2023-06-14 | 2024-01-16 | 深圳Tcl新技术有限公司 | 设备隐私管理方法、装置、电子设备及存储介质 |
Non-Patent Citations (1)
| Title |
|---|
| ANONYMOUS: "Huawei releases its first white paper on privacy protection and governance - Huawei Privacy Compliance 17/27 Framework", HUAWEI TECHNOLOGIES CO., LTD., 9 November 2022 (2022-11-09), XP093248073, Retrieved from the Internet <URL:https://www.huawei.com/cn/news/2022/11/huawei-privacy-protection-whitepaper> * |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN120068156A (zh) * | 2025-04-18 | 2025-05-30 | 南京霈玥科技有限公司 | 一种眼科临床医疗数据管理与共享系统 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN117407892A (zh) | 2024-01-16 |
| EP4730179A1 (en) | 2026-04-22 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| WO2024255583A1 (zh) | 设备隐私管理方法、装置、电子设备及存储介质 | |
| CN108255653B (zh) | 一种产品的测试方法及其终端 | |
| CN110889710B (zh) | 设备信息管理方法、服务器及存储介质 | |
| US20230162203A1 (en) | Emissions records ledger for correlated emission analytics | |
| CN108573381A (zh) | 数据处理方法以及装置 | |
| JP7795744B2 (ja) | 管理装置 | |
| CN107944731A (zh) | 典型工程造价模板的建立方法及装置 | |
| CN111537884A (zh) | 获取动力电池寿命数据的方法、装置、计算机设备及介质 | |
| CN110322143A (zh) | 模型实体化管理方法、装置、设备及计算机存储介质 | |
| CN112907220A (zh) | 一种工程造价的系统、方法及装置 | |
| WO2021068591A1 (zh) | 基于区块链的日产日清核算方法、装置、设备及存储介质 | |
| CN118521359A (zh) | 计费方法和装置 | |
| CN108073699B (zh) | 大数据聚合分析方法及装置 | |
| CN115525897A (zh) | 终端设备的系统检测方法、装置、电子装置和存储介质 | |
| CN115587701A (zh) | 一种企业风险评估处理方法、装置及电子设备 | |
| CN115080412A (zh) | 软件更新质量评估方法、装置、设备及计算机存储介质 | |
| WO2019227320A1 (zh) | 维修设备管理方法、服务器和计算机可读存储介质 | |
| CN118822689A (zh) | 设备管控方法、装置、电子设备及计算机可读存储介质 | |
| CN107832080A (zh) | 一种软件演化环境下基于结点介数的构件重要性度量方法 | |
| CN111625753A (zh) | 用于计算直燃机能效参数的方法、装置、设备及存储介质 | |
| CN118172124A (zh) | 交易参数的确定方法、装置、可读存储介质及电子设备 | |
| CN114328487A (zh) | 一种质检评估方法及装置 | |
| CN117829592B (zh) | 基于可配置模型的风险评估方法和装置 | |
| CN112116439A (zh) | 一种清结算测试方法、装置、终端及存储介质 | |
| CN111222739A (zh) | 核电站的任务分配方法及核电站的任务分配系统 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 24822535 Country of ref document: EP Kind code of ref document: A1 |
|
| WWE | Wipo information: entry into national phase |
Ref document number: 2024822535 Country of ref document: EP |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| ENP | Entry into the national phase |
Ref document number: 2024822535 Country of ref document: EP Effective date: 20260114 |
|
| ENP | Entry into the national phase |
Ref document number: 2024822535 Country of ref document: EP Effective date: 20260114 |
|
| ENP | Entry into the national phase |
Ref document number: 2024822535 Country of ref document: EP Effective date: 20260114 |
|
| ENP | Entry into the national phase |
Ref document number: 2024822535 Country of ref document: EP Effective date: 20260114 |
|
| WWP | Wipo information: published in national office |
Ref document number: 2024822535 Country of ref document: EP |