Izazovi u elektronskom poslovanju sa aspekta zaštite ličnih podataka i digitalne forenzike.
Keywords:
Ključne reči: elektronsko poslovanje, zaštita ličnih podataka, digitalna forenzikaAbstract
ApstraktNesumljivo je da se u digitalnoj eri sve više razvija i primenjuje elektornsko poslovanje. Upotreba podataka u elektronskom obliku, sredstava elektronske komunikacije i elektronske obrade podataka u obavljanju poslova fizičkih i pravnih lica je evidentno u porastu, kao odgovor na izazove koje elektronsko poslovanje donosi dolazi do razvoja i usaglašavanja normativnog okvira kako u domenu povećanja efikasnosit poslovanja tako i izazova koje digitalna era sa sobom nosi posebno sa sa aspekta zaštite ličnih podataka. Nova Evropska opšta uredba o zaštiti podataka (GDPR) se primenjuje od maja 2018. godine, dok primena na nacionalnom nivou počinje u drugoj polovini 2019. godine, iskustva i izazovi su predmet aktuelnih razmatranja. Izazove koje nosi implementacija normatnivnog okvira neminovno je pratiti i sa forenzičkog aspekta kao odgovor na potencijalno narušavanje i nepoštovanje pravnih normi, što iziskuje razvoj i primenu novih procedura i alata u ovoj oblasti. Takođe je evidentna potreba podizanja nivoa znanja u ovoj oblasti imajući specifičnost veze normativnog i tehnološkog aspekta i istraživanja koja se u ovoj oblasti sprovode, kako sa aspekta razmatranja i podizanja poverenja u pouzdanost primene elektronskog poslovanja tako sa aspekta kako se dobijaju i procesuiraju informacije vezane za forenzičke aspekte u digitalnom svetu. Predmet razmatranja su upravo ova pitanja koja se odnose na izazove u elektronskom poslovanju kako sa aspekta zaštite ličnih podataka tako i sa aspekta digitalne forenzike.
Ključne reči: elektronsko poslovanje, zaštita ličnih podataka, digitalna forenzika
Abstract
There is no doubt that the digital era is increasingly developing as well as everyday use of e-business. Growth of the usage of the data in electronic form, electronic communications infrastructure and electronic data processing in the business processes by the natural persons or legal entities are de facto happening. It implies further needs for generating adequate response to the challenges that electronic business brings. Furthermore, it comes to the development and harmonization of the normative framework both in the domain of increasing the efficiency of business and the challenges that the digital era carries with it especially from the aspect of protection of personal data. The new General Data Protection Regulation (GDPR) entered into force on May 2018, while implementation at national level new legislation related to data protection will begin in the second half of 2019. A year after the introduction of the General Data Protection Regulation in the European Union effects, experiences and challenges after this first year are the subject of current investigations, analysis and discussion. The challenges posed by the implementation of the normative framework must also be followed by the forensic response to potential violations and non-compliance with legal norms. Moreover it requires the development and application of new procedures and tools in this area. Also it is evident that there is a need to raise the level of knowledge in this field. Regarding that there is specific relation between the normative and technological aspect and the research’s that is being carried out in this field. As well as from the aspect of consideration and confidence raising in the reliability of the application of electronic services in business and government scope and from the aspect of obtaining and processing information related to digital forensic aspects. Nowadays, the subject of the discussion and analyses is related to the challenges in electronic commerce and other e-business services both from the aspect of protection of personal data and from the aspect of digital forensics.
Keywords : electronic business, personal data protection, digital forensics
References
2. N. Simeunović, N Ristić, (2013) Digitalna forenzička istraga manipulacije računovodstvenim softverom, INFOTEH-Jahorina, http://www.infotech.org.rs/blog/wp-content/uploads/radovi2013/111.pdf
3. Zakonik o krivičnom postupku, („Sl. glasnik RS“ 72/2011, 101/2011, 121/2012, 32/2013, 45/2013, 55/2014 i 35/2019)
4. Zakon o zaštiti podataka o ličnosti („Sl. Glasnik RS“, br. 97/2008, 104/2009 – dr. Zakon, 68/2012 – odluka US i 107/2012)
5. Zakon o zaštiti podataka o ličnosti („Sl. Glasnik RS“, br. 87/2018), http://www.parlament.gov.rs/upload/archive/files/lat/pdf/zakoni/2018/2959-18-lat.pdf
6. https://www.informationisbeautiful.net/visualizations/worlds-biggest-data-breaches-hacks/
7. One Year of GDPR: How Nwe EU Privacy Rules have changed the lanscape, (2019), TME News https://themunicheye.com/one-year-of-gdpr-how-new-eu-privacy-rules-have-changed-the-landscape-3693
8. Implementing GDPR, Tips for business, Ibec, https://www.ibec.ie/IBEC/DFB.nsf/vPages/Digital~Publications_and_Submissions~general-data-protection-regulation-(gdpr)-ibec-guidance/$file/Ibec_Implementing+GDPR+guide.pdf
9. Annex 2 on the review and assessment of certification criteria pursuant to Article 42(5) to the Guidelines 1/2018 on certification and identifying certification criteria in accordance with Articles 42 and 43 of the Regulation 2016/679, https://edpb.europa.eu/sites/edpb/files/consultation/edpb_guidelines_1_2018_certification_en_annex2_en_0.pdf
10. Guidelines 1/2018 on certification and identifying certification criteria in accordance with Articles 42 and 43 of the Regulation 2016/679, (2019), https://edpb.europa.eu/sites/edpb/files/files/file1/certification_guidelines_with_corrigendum_en.pdf
11. IAPP-EY Annual Privacy Governance Report 2018, https://iapp.org/media/pdf/resource_center/IAPP-EY-Gov_Report_2018-FINAL.pdf
12. GDPR: One year on, (2019), International Commissioner’s Office, UK, v 1.0 https://ico.org.uk/media/about-the-ico/documents/2614992/gdpr-one-year-on-20190530.pdf