Privacy and Security in Computer Systems
Download Free Electronic Document
|PDF file||1.2 MB||
Use Adobe Acrobat Reader version 10 or higher for the best experience.
Purchase Print Copy
|Add to Cart||Paperback24 pages||$20.00||$16.00 20% Web Discount|
This paper examines (1) the protection of privacy and other individual rights in personal information databank systems, (2) maintenance of information confidentiality in statistical and research databases, and (3) implementation of data security techniques against malicious users and external penetrators. Although the Privacy Act of 1974 was an important advance in protecting the rights of data subjects, further legislation is needed. Extension of the Code of Fair Information Practices to include databanks in nongovernmental establishments is clearly the next move. Until some of the pending bills to provide statutory confidentiality protection to identifiable personal information in databanks can be enacted, technical and procedural protective measures must be used. Sensitive information in online, shared, or integrated databanks may require all the known protective features and more. The authors conclude that "extremely sensitive information should not be stored in any contemporary resource-sharing computerized databank system."
This report is part of the RAND Corporation Paper series. The paper was a product of the RAND Corporation from 1948 to 2003 that captured speeches, memorials, and derivative research, usually prepared on authors' own time and meant to be the scholarly or scientific contribution of individual authors to their professional fields. Papers were less formal than reports and did not require rigorous peer review.
This document and trademark(s) contained herein are protected by law. This representation of RAND intellectual property is provided for noncommercial use only. Unauthorized posting of this publication online is prohibited; linking directly to this product page is encouraged. Permission is required from RAND to reproduce, or reuse in another form, any of its research documents for commercial purposes. For information on reprint and reuse permissions, please visit www.rand.org/pubs/permissions.
The RAND Corporation is a nonprofit institution that helps improve policy and decisionmaking through research and analysis. RAND's publications do not necessarily reflect the opinions of its research clients and sponsors.