• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Scopus
  4. Complementing Organizational Security in Data Ecosystems with Technical Guarantees
 
  • Details
  • Full
Options
2024
Conference Paper
Title

Complementing Organizational Security in Data Ecosystems with Technical Guarantees

Abstract
Federated data ecosystems continue to emerge to connect previously isolated data silos across organizational boundaries over the Internet. These platforms aim to facilitate data sharing while maintaining data sovereignty, which is supposed to empower data owners to retain control over their data. However, the employed organizational security measures, such as policy-enforcing middleware besides software certification, processes, and employees are insufficient to provide reliable guarantees against malicious insiders. This paper thus proposes a corresponding technical solution for federated platforms that builds on communication between Trusted Execution Environments (TEEs) and demonstrates the feasibility of technically enforceable data protection. Specifically, we provide dependable guarantees for data owners formulated via rich policies while maintaining usability as a general-purpose data exchange platform. Further, by evaluating a real-world use case that concerns sharing sensitive genomic data, we demonstrate its real-world suitability. Our findings emphasize the potential of TEEs in establishing trust and increasing data security for federated data scenarios far beyond a single use case.
Author(s)
Lohmöller, Johannes
Rheinisch-Westfälische Technische Hochschule Aachen
Matzutt, Roman  orcid-logo
Fraunhofer-Institut für Angewandte Informationstechnik FIT  
Loos, Joscha
Rheinisch-Westfälische Technische Hochschule Aachen
Vlad, Eduard
Rheinisch-Westfälische Technische Hochschule Aachen
Pennekamp, Jan
Rheinisch-Westfälische Technische Hochschule Aachen
Wehrle, Klaus
Rheinisch-Westfälische Technische Hochschule Aachen
Mainwork
Conference on Building a Secure & Empowered Cyberspace, BuildSEC 2024. Proceedings  
Conference
Conference on Building a Secure & Empowered Cyberspace 2024  
DOI
10.1109/BuildSEC64048.2024.00016
Language
English
Fraunhofer-Institut für Angewandte Informationstechnik FIT  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024