Managing Multi-Jurisdicational Requirements in a Computational Legal Landscape
نویسندگان
چکیده
Increasingly, information systems are becoming distributed and pervasive, enabling organizations to deliver services remotely to individuals and to share and store personal information, worldwide. However, system developers face significant challenges in identifying and managing the many laws that govern their services and products in this new multi-jurisdictional environment. To address this challenge, we apply the concept of a computational requirements document to multiple U.S. state regulations that share a common theme, data breach notification. The document is expressible using a formal requirements specification language (RSL), which allows document authors to codify, design, debug, analyze, trace, and visualize relationships among requirements from different policies and regulations. To measure gaps and overlaps between regulations, we applied previously validated requirements metrics. Our findings include a formalization of the legal landscape using operational constructs for highand low-watermark practices, which correspond to highand low standards of care, respectively. Business analysts and system developers can use these watermarks to reason about compliance trade-offs based on perceived businesses costs and risks. We discovered and validated these constructs using five U.S. state data breach notification laws that govern transactions of financial and health information of residents of these five states. † Engineering and Public Policy This research was supported by the U.S. Department of Homeland Security under Grant Award Number 2006-CS-001-000001, under the auspices of the Institute for Information Infrastructure Protection (I3P) research program.
منابع مشابه
Regulatory Requirements Traceability and Analysis Using Semi-formal Specifications
Information systems are increasingly distributed and pervasive, enabling organizations to deliver remote services and share personal information, worldwide. However, developers face significant challenges in managing the many laws that govern their systems in this multi-jurisdictional environment. In this paper, we report on a computational requirements document expressible using a legal requir...
متن کاملAutomata-based supervisory control logic design for a multi-robot assembly cell
Supervisory control logic design for a complex automated manufacturing system, a multi-robot assembly cell is discussed. A complex multi-robot assembly cell should be controlled to repeat a work cycle that satisfies the control requirements such as obeying an assembly sequence, and freedom from deadlocks, livelocks, collisions and wasteful behaviour. Recent automata-based control theories for d...
متن کاملReview on Passive Defense Legal Requirements in Territorial Planning
Nowadays, given different definitions and conceptions on development, territorial planning lends to for various economic, social and geographical aspects, however its defensive and security perspectives have been taken into account to less extent. The present research is aimed to specify passive defense legal requirements in Territorial planning through outlining the most important rules on pas...
متن کاملReview on Passive Defense Legal Requirements in Territorial Planning
Nowadays, given different definitions and conceptions on development, territorial planning lends to for various economic, social and geographical aspects, however its defensive and security perspectives have been taken into account to less extent. The present research is aimed to specify passive defense legal requirements in Territorial planning through outlining the most important rules on pas...
متن کاملSmart Contract Templates: essential requirements and design options
Smart Contract Templates support legally-enforceable smart contracts, using operational parameters to connect legal agreements to standardised code. In this paper, we explore the design landscape of potential formats for storage and transmission of smart legal agreements. We identify essential requirements and describe a number of key design options, from which we envisage future development of...
متن کامل