DIN EN 16571-2014 Information technology - RFID privacy impact assessment process German version EN 16571 2014《信息技术 射频识别隐私影响评估过程 德文版本EN 16571-2014》.pdf
《DIN EN 16571-2014 Information technology - RFID privacy impact assessment process German version EN 16571 2014《信息技术 射频识别隐私影响评估过程 德文版本EN 16571-2014》.pdf》由会员分享,可在线阅读,更多相关《DIN EN 16571-2014 Information technology - RFID privacy impact assessment process German version EN 16571 2014《信息技术 射频识别隐私影响评估过程 德文版本EN 16571-2014》.pdf(105页珍藏版)》请在麦多课文档分享上搜索。
1、October 2014 Translation by DIN-Sprachendienst.English price group 31No part of this translation may be reproduced without prior permission ofDIN Deutsches Institut fr Normung e. V., Berlin. Beuth Verlag GmbH, 10772 Berlin, Germany,has the exclusive right of sale for German Standards (DIN-Normen).IC
2、S 35.240.60!%;s2“2248015www.din.deDDIN EN 16571Information technology RFID privacy impact assessment process;English version EN 16571:2014,English translation of DIN EN 16571:2014-10Informationstechnik Verfahren zur Datenschutzfolgenabschtzung (PIA) von RFID;Englische Fassung EN 16571:2014,Englische
3、 bersetzung von DIN EN 16571:2014-10Technologies de linformation Processus dvaluation dimpact sur la vie prive des applications RFID;Version anglaise EN 16571:2014,Traduction anglaise de DIN EN 16571:2014-10www.beuth.deIn case of doubt, the German-language original shall be considered authoritative.
4、Document comprises 105 pages 09.14 DIN EN 16571:2014-10 2 A comma is used as the decimal marker. National foreword This document (EN 16571:2014) has been prepared by Technical Committee CEN/TC 225 “AIDC technologies” (Secretariat: NEN, Netherlands). The responsible German body involved in its prepar
5、ation was the DIN-Normenausschuss Informationstechnik und Anwendungen (DIN Standards Committee Information Technology and selected IT Applications), Working Committee NA 043-01-31 AA Automatische Identifikation und Datenerfassungsverfahren. This European Standard provides a standardized set of proce
6、dures for developing PIA templates, including tools compatible with the RFID PIA methodology. In addition, it identifies the conditions that require an existing PIA to be revised, amended, or replaced by a new assessment process. DIN EN 16571 defines aspects of the Privacy Impact Assessment (PIA) Fr
7、amework for RFID as normative or informative procedures to enable a common European method for undertaking an RFID PIA. This framework was developed by European data protection authorities and was endorsed by the “Article 29 Data Protection Working Party” and signed by all key stakeholders, includin
8、g the European Commission, in 2011. In March 2009 the European standards organizations CEN, CENELEC and ETSI accepted the European Commissions Mandate M/436 to draw up and execute a standardization work programme for the sector-specific implementation of RFID applications. The focus of the Mandate i
9、s the data protection, privacy and information aspects of RFID. It is being executed in two phases. In Phase 1 a roadmap was drawn up analysing the current situation in Europe, identifying gaps in standardization, and identifying the necessary standardization work programme. This phase was completed
10、 in 2011. Phase 2 is concerned with the execution of the work programme identified in the first phase, with the aim of filling the above-mentioned gaps. This European Standard is one of 11 standardization deliverables to be drawn up in Phase 2. EUROPEAN STANDARD NORME EUROPENNE EUROPISCHE NORM EN 16
11、571 June 2014 ICS 35.240.60 English Version Information technology - RFID privacy impact assessment process Technologies de linformation - Processus dvaluation dimpact sur la vie prive des applications RFID Verfahren zur Datenschutzfolgenabschtzung (PIA) vonRFID This European Standard was approved b
12、y CEN on 14 May 2014. CEN members are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the conditions for giving this European Standard the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standard
13、s may be obtained on application to the CEN-CENELEC Management Centre or to any CEN member. This European Standard exists in three official versions (English, French, German). A version in any other language made by translation under the responsibility of a CEN member into its own language and notif
14、ied to the CEN-CENELEC Management Centre has the same status as the official versions. CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Ice
15、land, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION COMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Mana
16、gement Centre: Avenue Marnix 17, B-1000 Brussels 2014 CEN All rights of exploitation in any form and by any means reserved worldwide for CEN national Members. Ref. No. EN 16571:2014 E-Informationstechnik - EN 16571:2014 (E) 2 Contents Page Foreword 5 Introduction .6 1 Scope 7 2 Normative references
17、7 3 Terms and definitions .7 4 Symbols and abbreviations . 11 5 Structure of this European Standard 12 6 Field of reference for this European Standard 12 6.1 RFID as defined by the EU RFID Recommendation 12 6.2 RFID application as defined by the EU RFID Recommendation 13 6.3 RFID operator as defined
18、 by the EU RFID Recommendation . 13 6.4 Relationship between the RFID PIA and data protection and security . 14 6.5 Relevant inputs for the PIA process . 17 6.5.1 General . 17 6.5.2 The privacy capability statement 17 6.5.3 The Registration Authority 17 6.5.4 RFID PIA templates . 17 7 RFID operators
19、 organizational objectives of the RFID PIA . 17 7.1 Overview 17 7.2 Meeting and exceeding legal requirements . 18 7.3 When to undertake the RFID PIA . 19 7.3.1 General . 19 7.3.2 Undertaking a PIA at the design stage before the RFID system becomes operational 19 7.3.3 Undertaking a PIA at a review a
20、nd update the design-based PIA . 19 7.3.4 Undertaking a PIA to contribute to the development of a template 19 7.3.5 Undertaking a PIA with an established template . 20 7.3.6 Undertaking a PIA at the introduction of a new function within the RFID application 20 7.3.7 Undertaking a PIA based on change
21、s in RFID technology 20 7.3.8 Undertaking a PIA when a privacy breach has been reported . 20 8 Tools to simplify the process 21 8.1 RFID operator responsibility . 21 8.2 RFID technology privacy capability tools - overview 21 8.3 Registration of RFID privacy capability statements by RFID product manu
22、facturers 21 8.3.1 General . 21 8.3.2 Obligations of the Registration Authority 21 8.3.3 Appointment 22 8.3.4 Resignation . 22 8.3.5 Responsibilities of the RFID product manufacturers . 22 8.4 RFID technology privacy capability tools - details 23 8.4.1 RFID integrated circuit privacy capabilities .
23、23 8.4.2 RFID tag privacy capabilities . 23 8.4.3 RFID interrogator privacy capabilities 23 8.4.4 The default privacy capability statement . 23 8.4.5 Using CEN/TR 16672 to construct privacy capabilities for products using proprietary protocols 24 8.5 Templates 24 8.5.1 General . 24 DINEN 16571:2014-
24、10EN 16571:2014 (E) 3 8.5.2 Developing a template 24 8.5.3 Who should prepare the templates? . 25 8.5.4 The role of stakeholders in template development . 25 9 RFID PIA - a process approach 26 9.1 Introduction 26 9.2 Process Steps 26 9.3 Achieving the correct level of detail 27 9.3.1 General . 27 9.
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- DINEN165712014INFORMATIONTECHNOLOGYRFIDPRIVACYIMPACTASSESSMENTPROCESSGERMANVERSIONEN165712014 信息技术 射频

链接地址:http://www.mydoc123.com/p-672968.html