The Role of IS in the Conflicting Interests Regarding GDPR
- PDF / 280,198 Bytes
- 12 Pages / 595.276 x 790.866 pts Page_size
- 118 Downloads / 189 Views
DISCUSSION
The Role of IS in the Conflicting Interests Regarding GDPR Timo Jakobi • Maximilian von Grafenstein • Christine Legner • Cle´ment Labadie • ¨ ksu¨z • Gunnar Stevens Peter Mertens • Ayten O
Springer Fachmedien Wiesbaden GmbH, ein Teil von Springer Nature 2020
1 Introduction Timo Jakobi, Information Systems esp. IT-Security and Privacy, University of Siegen Since May 25 2018, the General Data Protection Regulation (GDPR) regulates the handling of personal data both for companies in the European Union and European Citizens. It is part of the European Union’s Digital Single Market strategy and aims to create the conditions for an economy without barriers that would benefit individuals and companies as well as society as a whole (European Parliament and Council 2016). The protective purpose of the GDPR is to enable individuals, against the background of modern data processing possibilities and techniques and their risks, to decide for or against a consent to data processing on the basis of Dr. T. Jakobi (&) Prof. Dr. G. Stevens Information Systems esp. IT-Security and Privacy, University of Siegen, Siegen, Germany e-mail: [email protected] Prof. Dr. M. von Grafenstein Berlin University of the Arts, Einstein Center Digital Future, Berlin, Germany Prof. Dr. C. Legner C. Labadie Faculty of Business and Economics (HEC), University of Lausanne, Lausanne, Switzerland Prof. Dr. Dr. hc. mult. P. Mertens School of Business, Economics and Society and Faculty of Engineering, University of Erlangen-Nuremberg, Nuremberg, Germany ¨ ksu¨z Dr. A. O Consumer Association of North Rhine-Westphalia, Du¨sseldorf, North Rhine-Westphalia, Germany
appropriate information on how their personal data are handled and in a self-determined manner. At the same time, the GDPR has established many fundamentally new concepts, thereby opening new leeway for legal, scientific and practical interpretation, providing both challenges and potential for renewal and innovation. Almost two years after the entry into force of the GDPR, it seems appropriate to reflect on first effects, suggestions for improvement and future high potential research areas. With Business and Information Systems Engineering research focusing on socio-technical systems for digital data processing for commercial or social purposes, it seems that it is the natural place for a transdisciplinary examination of the possibilities and challenges that this new regulation brings along. In this regard, BISE is – maybe better than any other field – suited to address such complex questions at the intersection of law, design, organizational research and information systems. However, with evolvement of its context, maybe also the field itself needs to adapt One sign for this simultaneous potential need and opportunity is the vivid research surrounding GDPR in the areas concerning the interdisciplinary field of BISE. In the vast majority of these contributions, a key question revolves around the interpretation of certain aspects of GDPR. On a more practical level, for exa
Data Loading...