ISO IEC 29187-1-2013 Information technology - Identification of privacy protection requirements pertaining to learning education and training (LET) - Part 1 Fra.pdf
《ISO IEC 29187-1-2013 Information technology - Identification of privacy protection requirements pertaining to learning education and training (LET) - Part 1 Fra.pdf》由会员分享,可在线阅读,更多相关《ISO IEC 29187-1-2013 Information technology - Identification of privacy protection requirements pertaining to learning education and training (LET) - Part 1 Fra.pdf(198页珍藏版)》请在麦多课文档分享上搜索。
1、 Reference number ISO/IEC 29187-1:2013(E) ISO/IEC 2013INTERNATIONAL STANDARD ISO/IEC 29187-1 First edition 2013-02-15 Information technology Identification of privacy protection requirements pertaining to learning, education and training (LET) Part 1: Framework and reference model Technologies de li
2、nformation Identification des exigences de protection prive concernant lapprentissage, lducation et la formation (AF) Partie 1: Cadre gnral et modle de rfrence ISO/IEC 29187-1:2013(E) COPYRIGHT PROTECTED DOCUMENT ISO/IEC 2013 All rights reserved. Unless otherwise specified, no part of this publicati
3、on may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm, without permission in writing from either ISO at the address below or ISOs member body in the country of the requester. ISO copyright office Case postale 56 CH-1211 Geneva 20
4、 Tel. + 41 22 749 01 11 Fax + 41 22 749 09 47 E-mail copyrightiso.org Web www.iso.org Published in Switzerland ii ISO/IEC 2013 All rights reservedISO/IEC 29187-1:2013(E) ISO/IEC 2013 All rights reserved iiiContents Page Foreword . vii 0 Introduction . ix 0.1 Purpose and overview . ix 0.2 Benefits of
5、 using a multipart ISO/IEC 29187 standard approach ix 0.3 Informed consent and learning transaction . x 0.4 Use of “jurisdictional domain“, jurisdiction, country . xi 0.5 Use of “Person”, “individual”, “organization”, “public administration” and “person” in the context of a learning transaction xii
6、0.6 Importance of definitions and terms xiii 0.7 Standard based on rules and guidelines . xiv 0.8 Size of document and role of “Part 1 Framework and Reference Model” xiv 0.9 Use of “identifier” (in a learning transaction) xv 0.10 Use of “privacy protection” in the context of a commitment exchange an
7、d learning transaction . xv 0.11 Organization and description of document xv 1 Scope 1 1.1 Statement of scope ISO/IEC 29187 multipart standard 1 1.2 Statement of scope part 1: Framework and Reference Model 1 1.3 Exclusions 1 1.3.1 Functional services view (FSV) 1 1.3.2 Overlap of and/or conflict amo
8、ng jurisdictional domains as sources of privacy protection requirements 2 1.3.3 Publicly available personal information 2 1.4 Aspects currently not addressed 3 1.5 IT-systems environment neutrality 6 2 Normative references 7 2.1 ISO/IEC, ISO and ITU . 7 2.2 Referenced specifications 9 3 Terms and de
9、finitions . 9 4 Symbols and acronyms 39 5 Fundamental principles and assumptions governing privacy protection requirements in learning transactions involving individual learners (external constraints perspective) . 41 5.1 Introduction and sources of requirements . 41 5.2 Exceptions to the applicatio
10、n of the privacy protection principles . 43 5.3 Fundamental Privacy Protection Principles . 44 5.3.1 Privacy Protection Principle 1: Preventing Harm 44 5.3.2 Privacy Protection Principle 2: Accountability 44 5.3.3 Privacy Protection Principle 3: Identifying Purposes 48 5.3.4 Privacy Protection Princ
11、iple 4: Informed Consent 48 5.3.5 Privacy Protection Principle 5: Limiting Collection . 50 5.3.6 Privacy Protection Principle 6: Limiting Use, Disclosure and Retention 51 5.3.7 Privacy Principle 7: Accuracy 55 5.3.8 Privacy Protection Principle 8: Safeguards 56 5.3.9 Privacy Protection Principle 9:
12、Openness 57 5.3.10 Principle 10: Individual Access 57 5.3.11 Privacy Protection Principle 11: Challenging Compliance . 59 5.4 Requirement for tagging (or labelling) data elements in support of privacy protection requirements 60 6 Collaboration space and privacy protection 63 ISO/IEC 29187-1:2013(E)
13、iv ISO/IEC 2013 All rights reserved6.1 Introduction 63 6.2 Privacy collaboration space: Role of individual learner, LET provider and regulator .63 6.3 Learning collaboration space (of a learning transaction) .65 7 Public policy requirements of jurisdictional domains .67 7.1 Introduction 67 7.2 Juris
14、dictional domains and public policy requirements .67 7.2.1 Privacy protection68 7.2.2 Consumer protection 69 7.2.3 Individual accessibility 70 7.2.4 Human rights 71 7.2.5 Privacy as a right of an “individual” and not right of an organization or public administration 72 7.2.6 Need to differentiate be
15、tween “privacy protection” and “confidentiality”, “security”, etc. 72 8 Principles and rules governing the establishment, management and use of identities of an individual (and “individual learner”) 73 8.1 Introduction 73 8.2 Rules governing the establishment of personae, identifiers and signatures
16、of an individual 74 8.3 Rules governing the assignment of unique identifiers to an individual by Registration Authorities (RAs) .80 8.4 Rules governing individual identity (ies), authentication, recognition, and use 80 8.5 Legally recognized individual identity(ies) (LRIIs) .85 9 Person component in
17、dividual sub-type .87 9.1 Introduction 87 9.2 Role qualification of a Person as an individual (learner).87 9.3 Persona and legally recognized names (LRNs) of an individual 88 9.4 Truncation and transliteration of legally recognized names of individuals 88 9.5 Rules governing anonymization of individ
18、uals in a learning transaction .89 9.6 Rules governing pseudonymization of personal information in a learning transaction 91 10 Process component 93 10.1 Introduction 93 10.2 Planning 93 10.3 Identification .94 10.4 Negotiation .94 10.5 Actualization .94 10.6 Post-Actualization 95 11 Data (element)
19、component of a learning transaction .97 11.1 Introduction 97 11.2 Rules governing the role of Learning Transaction Identifier (LTI) in support of privacy protection requirements .97 11.3 Rules governing state of change management of learning transactions in support of privacy protection requirements
20、 98 11.4 Rules governing records retention of personal information in a learning transaction 99 11.5 Rules governing time/date referencing of personal information in a learning transaction .99 12 Conformance statement . 101 12.1 Introduction . 101 12.2 Conformance to the ISO/IEC 29187-1 Reference Mo
21、del . 102 12.3 Conformance to ISO/IEC 29187-2+ parts 102 Annex A (normative) Consolidated list of terms and definitions with cultural adaptability: ISO English and ISO French language equivalency . 103 A.1 Introduction . 103 A.2 ISO English and ISO French 103 A.3 Cultural adaptability and quality co
22、ntrol 103 A.4 Organization of Annex A - Consolidated list of definitions in matrix form 104 A.5 Consolidated list of ISO/IEC 29187-1 Definitions and associated terms 105 Annex B (normative) Learning Transaction Model (LTM): classes of constraints 149 ISO/IEC 29187-1:2013(E) ISO/IEC 2013 All rights r
23、eserved vB.1 Introduction 149 B.2 Fundamental components of a learning transaction . 149 B.3 Learning Transaction Model (LTM) and its two classes of constraints . 152 Annex C (normative) Integrated set of information life cycle management (ilcm) principles in support of information law compliance 15
24、5 C.1 Introduction 155 C.2 Purpose 155 C.3 Approach 156 C.4 Integrated set of information life cycle management (ILCM) principles 156 Annex D (normative) Coded domains for specifying state change and record retention management in support of privacy protection requirements . 159 D.1 Introduction 159
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ISOIEC2918712013INFORMATIONTECHNOLOGYIDENTIFICATIONOFPRIVACYPROTECTIONREQUIREMENTSPERTAININGTOLEARNINGEDUCATIONANDTRAININGLETPART1FRAPDF

链接地址:http://www.mydoc123.com/p-1257185.html