|  |     | 
| (137 intermediate revisions by 6 users not shown) | 
| Line 1: | Line 1: | 
|  | == Objective of WIKI == |  | == <span style="font-size:larger">Introduction</span> == | 
|  | 
 |  | 
 | 
|  | During the IPEN workshop held in Leuven on June 5th 2015 ([https://secure.edps.europa.eu/EDPSWEB/edps/site/mySite/lang/en/IPEN_Workshop_2015 https://secure.edps.europa.eu/EDPSWEB/edps/site/mySite/lang/en/IPEN_Workshop_2015]), it was agreed that the IPEN community would benefit from the creation of arepository of information on activities related to privacy engineeringinitiatives andstandards
 |  | The objective of this Wiki is to be a tool allowing stakeholders interested in privacy engineering and standardisation to find resources and to identify and seek harmonisation and convergence opportunities. | 
|  | 
 |  | 
 | 
|  | The objective of this wiki is to be a tool allowing stakeholders interested in privacy engineering and standardisation to find resources and to identify and seek harmonisation and convergence opportunities.
 |  | == <span style="font-size:larger;">Standards</span> == | 
|  | 
 |  | 
 | 
|  | IPEN members can register to this wiki
 |  | *[https://ipen.trialog.com/wiki/ISO <span style="color:#1020AA">Standards published or under development in ISO/IEC</span>] | 
|  | 
 |  | 
 | 
|  | *as observers (i.e.getting information) |  | == <span style="font-size:larger;">Projects</span> == | 
|  | *as contributors (i.e. providing information and comments on privacy standards activities).
 |  | *[https://ipen.trialog.com/wiki/PARIS <span style="color:#1020AA">PARIS (EC project completed)</span>] | 
|  | 
 |  | 
 | 
|  | <span style="background-color:rgb(255, 255, 0);">Contact Antonio Kung (antonio.kung@trialog.com)or Olivier Maridat (olivier.maridat@trialog.com) with topic [IPEN privacy standards] to request access, and indicate whether you want to be an observer or a contributor</span> |  | *[https://ipen.trialog.com/wiki/pdp4e <span style="color:#1020AA">PDP4E (EC project on-going)</span>] | 
|  | 
 |  | 
 | 
|  | If you wish to contribute please read the [http://ipen.trialog.com/wiki/Rules_for_Contribution Rules for Contribution]
 |  | *[https://ipen.trialog.com/wiki/PRIPARE <span style="color:#1020AA">PRIPARE (EC project completed)</span>] | 
|  | 
 |  | 
 | 
|  | == Content == |  | == <span style="font-size: larger;">More on IPEN - Internet Privacy Engineering Network</span> == | 
|  | 
 |  | 
 | 
|  | === Privacy Standards === |  | <span style="line-height: 1.6;">The purpose of IPEN ([https://www.edps.europa.eu/data-protection/ipen-internet-privacy-engineering-network_en]) is to bring together developers and data protection experts with a technical background from different areas in order to launch and support projects that build privacy into everyday tools and develop new tools which can effectively protect and enhance our privacy.</span> | 
|  | 
 |  | 
 | 
|  | {| class="mw-collapsible mw-collapsed autocollapse"
 |  | During the PEN workshop held in Leuven on June 5th 2015, it was agreed that the IPEN community would benefit from the creation of a repository of information on activities related to privacy engineering initiatives and standards. The wiki was further extended in 2016 to cover privacy engineering projects | 
|  | |-
 |  | 
|  | | Click expand to find links to information regarding various standardisation organizations and their work on privacy and data protection standards<br/>
 |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/ISO ISO], International Organization for Standardisation, has standards on e.g. Privacy Engineering or BigData
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/OpenId_Foundation_Activities OpenID Foundation] is a non-profit international standardization organization and has Workingroups regarding e.g. privacy and health related data
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/OASIS OASIS], Organization for theAdvancement of Structured Information Standards, is e.g. working onStandards for Privacy Management Reference Model and Methodology.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/W3C_Activities W3C Activities],World Wide Web Consortium, has a privacy group working e.g. on Tracking Protection.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/IETF_Activities IETF Activities], Internet Engineering Taskforce, is working on theRFC 6973 [https://tools.ietf.org/html/rfc6973 "Privacy Considerations for Internet Protocols"]
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *There exist diverse [http://ipen.trialog.com/wiki/National_Level_Activities National Level Standards] regarding privacy, some with which IPENmembers are invovled, can be found [http://ipen.trialog.com/wiki/National_Level_Activities here].
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The European commission has issued amandate to [http://ipen.trialog.com/wiki/CEN-CENELEC-ETSI_Activities European Standardisation Organisations], ESOs, to work on standards relating to privacy management ofsecurity products and related services.
 |  | 
|  |   |  | 
|  | |}
 |  | 
|  |   |  | 
|  | === Privacy Engineering Projects ===
 |  | 
|  |   |  | 
|  | {| class="mw-collapsible mw-collapsed autocollapse"
 |  | 
|  | |-
 |  | 
|  | | Find in the following information ondifferent projects that follow Privacy Engineering ideas such as privacy anddata protection by design and by default.
 |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *With its [http://ipen.trialog.com/wiki/App_PETs APP Pets] project the [https://www.datenschutzzentrum.de/ Datenschutzzentrum (ULD)] is working on privacy enhancing technologies for smart device apps
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The goal of [http://ipen.trialog.com/wiki/AN_ON_Next AN.ON-Next] by the [https://www.datenschutzzentrum.de/ Datenschutzzentrum (ULD)] is to integrate processes for anonymization into the internet infrastructure.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/CREDENTIAL CREDENTIAL] project's goal is to enable end-to-end security and improved privacy incloud identity management services for managing secure access control.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/DNT_Guide DNT Guide] aims at helping website owners to implement the Do Not Track (DNT) standard.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *With the [http://ipen.trialog.com/wiki/PARIS PARIS] project sets out todefine and demonstrate a methodological approach for the development of a surveillance infrastructure which enforces the right of citizens for privacy, justice and freedom.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The mission of [http://ipen.trialog.com/wiki/PRIPARE PRIPARE] is to facilitate the application of a privacy and security-by-design methodology and to foster a risk management culture through educational material.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/PRISMACLOUD PRISMACLOUD] produces tools to enable end-to-end security and thus allowing users to protect their privacy by cryptographic means.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/Privacypatterns Privacypatterns] project provides building blocks for developers to advance privacy and data protection by design.
 |  | 
|  |   |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *[http://ipen.trialog.com/wiki/Signatu Signatu] provides a service for companies to MAP their data processing activities, to create privacy policies and to track their users consent or consent withdrawal.
 |  | 
|  |   |  | 
|  | |}
 |  | 
|  |   |  | 
|  | === Other Privacy projects===
 |  | 
|  | 
 |  | 
 | 
|  | {| class="mw-collapsible mw-collapsed autocollapse"
 |  | Since 2024, the wiki is now entirely managed by Trialog, independently of IPEN | 
|  | |-
 |  | <span style="line-height: 1.6;"></span> | 
|  | | Find in the following
 |  | 
|  | |-
 |  | 
|  | | 
 |  | 
|  | *Privacy related [http://ipen.trialog.com/wiki/Events Events]: see past and upcoming events in Europe
 |  | 
|  | 
 |  | 
 | 
|  | |-
 |  | == <span style="font-size:x-large">Sponsors and Support</span> == | 
|  | | 
 |  | 
|  | *The [http://ipen.trialog.com/wiki/Business_Process_CB Business Process Cookbook] is an open repository to integrate Privacy and DP by design into business processes.
 |  | 
|  | 
 |  | 
 | 
|  | |-
 |  | This Wiki is sponsored by ''[https://trialog.com TRIALOG]'' and supported by the [http://pripareproject.eu/ PRIPARE] project. | 
|  | | 
 |  | 
|  | *Multiple institutions have worked on [http://ipen.trialog.com/wiki/DPIA_and_PIA_Guidelines Guidelines] for Privacy and Data Protection Impact Assessments.
 |  | 
|  | 
 |  | 
 | 
|  | |-
 |  | For any request contact antonio.kung@trialog.com | 
|  | | 
 |  | 
|  | *You can find various [http://ipen.trialog.com/wiki/Studies Studies on Privacy and DP here.]
 |  | 
|  | 
 |  | 
 | 
|  |  | {| style="text-align: center; width: 100%" align="center" border="0" cellpadding="1" cellspacing="1" | 
|  | |- |  | |- | 
|  | |   |  | | style="width: 50%" | [[File:Logo trialog 2.png|500px]]<br/> | 
|  | *The [http://ipen.trialog.com/wiki/OWASP OWASP Top 10 Project] lists the current top 10 privacy risks.
 |  | | [[File:Logo Pripare-Large-clear.png|Logo Pripare-Large-clear.png|link=http://pripareproject.eu/]]<br/> | 
|  |   |  | 
|  | |} |  | |} | 
|  | 
 |  | 
|  | The wiki will contain the following dedicated pages
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">ISO activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="line-height: 20.7999992370605px; width: 900px" border="1" cellpadding="1" cellspacing="1"
 |  | 
|  | |-
 |  | 
|  | | <span style="line-height: 20.7999992370605px;">Link to the page</span><br/>
 |  | 
|  | | [http://ipen.trialog.com/wiki/ISO http://ipen.trialog.com/wiki/ISO]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | Antonio Kung, Irene Kamara<br/>
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">OASIS activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="line-height: 20.7999992370605px; width: 900px" border="1" cellpadding="1" cellspacing="1"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | [http://ipen.trialog.com/wiki/OASIS http://ipen.trialog.com/wiki/OASIS]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | <span style="line-height: 20.7999992370605px">John Sabo?, Dawn Jutla?</span><br/>
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">W3C activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="line-height: 20.7999992370605px; width: 900px" border="1" cellpadding="1" cellspacing="1"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | <span style="line-height: 20.7999992370605px;"> </span>[http://ipen.trialog.com/wiki/W3C_Activities http://ipen.trialog.com/wiki/W3C_Activities]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | Ninja Marnau?
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">IETF activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="line-height: 20.7999992370605px; width: 900px" border="1" cellpadding="1" cellspacing="1"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | [http://ipen.trialog.com/wiki/IETF_Activities http://ipen.trialog.com/wiki/IETF_Activities]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | <span style="line-height: 20.7999992370605px">Steven Farrell?</span><br/>
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">CEN-CENELEC-ETSI activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="line-height: 20.7999992370605px; width: 900px" border="1" cellpadding="1" cellspacing="1"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | [http://ipen.trialog.com/wiki/CEN-CENELEC-ETSI_Activities http://ipen.trialog.com/wiki/CEN-CENELEC-ETSI_Activities]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | Antonio Kung (CEN-CENELEC JWG8), Claude Tételin (CEN TC225), Irene Kamara, Carmine Rizzo (ETSI)<br/>
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">OpenID Foundation activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| border="1" cellpadding="1" cellspacing="1" style="line-height: 20.7999992370605px; width: 900px;"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | [http://ipen.trialog.com/wiki/OpenId_Foundation_Activities http://ipen.trialog.com/wiki/OpenId_Foundation_Activities]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | Nat Sakimura (OpenID Foundation)<br/>
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size:larger">National level activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="line-height: 20.7999992370605px; width: 900px" border="1" cellpadding="1" cellspacing="1"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | <span style="line-height: 20.7999992370605px;"> </span>[http://ipen.trialog.com/wiki/National_Level_Activities http://ipen.trialog.com/wiki/National_Level_Activities]<br/>
 |  | 
|  | |-
 |  | 
|  | | Contributors
 |  | 
|  | | Alan Shipman (BSI)<br/>
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | === <span style="font-size: larger;">Other activities</span> ===
 |  | 
|  | 
 |  | 
|  | {| style="width: 900px; line-height: 20.79px;" cellpadding="1" cellspacing="1" border="1"
 |  | 
|  | |-
 |  | 
|  | | Link to the page
 |  | 
|  | | [http://ipen.trialog.com/wiki/Other_Activities http://ipen.trialog.com/wiki/Other_Activities]<br/>
 |  | 
|  | |-
 |  | 
|  | | <span style="line-height: 20.7999992370605px;">Contributors</span>
 |  | 
|  | | 
 |  | 
|  | <span style="line-height: 20.7999992370605px;">Antonio Kung (Smart grid DPIA template, CNIL PIA methodology, ENISA landscape document, NIST privacy risk management framework),</span>
 |  | 
|  | 
 |  | 
|  | <span style="line-height: 20.7999992370605px;">Florian Stahl (OWASP Top 10 Privacy Risks Project)</span>
 |  | 
|  | 
 |  | 
|  | <span style="line-height: 20.7999992370605px;">Matthieu Grall (CNIL PIA analysis)</span>
 |  | 
|  | 
 |  | 
|  | |}
 |  | 
|  | 
 |  | 
|  | == <span style="font-size: larger;">On IPEN - Internet Privacy Engineering Network</span> ==
 |  | 
|  | 
 |  | 
|  | <span style="line-height: 1.6;">The purpose of IPEN ([http://www.engineeringprivacy.eu/ www.engineeringprivacy.eu]) is to bring together developers and data protection experts with a technical background from different areas in order to launch and support projects that build privacy into everyday tools and develop new tools which can effectively protect and enhance our privacy.</span>
 |  | 
|  | 
 |  | 
|  | == <span style="font-size: larger;">Sponsors and Support</span> ==
 |  | 
|  | 
 |  | 
|  | This wiki is sponsored by Trialog and supported by the PRIPARE project
 |  | 
|  | 
 |  | 
|  | [[File:LOGO TRIALOG 200 small 2.png|LOGO TRIALOG 200 small 2.png|link=http://www.trialog.com/]]
 |  | 
|  | 
 |  | 
|  | [[File:Logo Pripare-Large-clear.png|Logo Pripare-Large-clear.png|link=http://pripareproject.eu/]]
 |  |