Privacy impact assessment in large-scale digital forensic investigations

Open Access
Authors
Publication date 06-2020
Journal Forensic Science International: Digital Investigation
Article number 200906
Volume | Issue number 33
Number of pages 9
Organisations
  • Faculty of Science (FNWI) - Informatics Institute (IVI)
Abstract
The large increase in the collection of location, communication, health data etc. from seized digital devices like mobile phones, tablets, IoT devices, laptops etc. often poses serious privacy risks. To measure privacy risks, privacy impact assessments (PIA) are substantially useful tools and the Directive EU 2016/80 (Police Directive) requires their use. While much has been said about PIA methods pursuant to the Regulation EU 2016/679 (GDPR), less has been said about PIA methods pursuant to the Police Directive. Yet, little research has been done to explore and measure privacy risks that are specific to law enforcement activities which necessitate the processing of large amounts of data. This study tries to fill this gap by conducting a PIA on a big data forensic platform as a case study. This study also answers the question how a PIA should be carried out for large-scale digital forensic operations and describes the privacy risks, threats we learned from conducting it. Finally, it articulates concrete privacy measures to demonstrate compliance with the Police Directive.
Document type Article
Language English
Published at https://doi.org/10.1016/j.fsidi.2020.200906
Downloads
1-s2.0-S2666281720300263-main (Final published version)
Permalink to this page
Back