Security, Identity and Privacy


Bruce Devlin - new Download PDF
Download PDF

Put your hand up if you have more than one online-identity. Keep your hand up if the adverts for your latest online purchase follow you between identities as you surf the web. You can now let your hand fall into your lap because adverts that follow you indicate algorithms that have merged your multiple identities into the one and only you.

Why does this matter? Most of us have a work life and a private life, and it’s often a good idea to keep some separation between the two in case you change jobs or have embarrassing hobbies like wearing lycra and riding bicycles. You probably don’t want everyone in your linked-in group seeing photos of your kids playing in a swimming pool. Conversely, you (probably) don’t want your kids being Snapchat friends with every person you have ever met at work.

You might sometimes need an identity that you can pass on to someone else. I am the SMPTE Standards Vice President. At some stage, I will hand the post onto someone else, so all the online-metadata gathered by that online identity will instantly become someone else’s property. I should probably be careful with how that identity is used!

This makes the new European legislation called GDPR (General Data Protection Regulation) quite interesting from a professional point of view. GDPR applies from 25 May 2018 to any company from the size of a one-man-band, right up to a huge multi-national corporation. The only thing that matters is that at least one of your customers is in a member country of the European Union. The rules apply whether the data is stored on a disc, in a database, in the cloud or written on a paper napkin and stored behind the blue filing cabinet in the basement.

The rules apply to any personal data related to any natural person (identified by name, id, genetic material etc.) that is used by a data processor (person or company anywhere in the world) on behalf of a data controller (the person or company responsible for the data who might be anywhere in the world). Basically, GDPR gives a natural person the right to their own data, but there are some interesting consequences of those rights which might make you think about how you manage your online identities.

The GDPR right to portability and the right to be forgotten means that you are now legally entitled to take your data and move it from one controller to another. This means that a company must be able to isolate the personal data and ensure that it can deleted as well as copied or moved in a structured and commonly used, machine-readable format. The GDPR consent criteria mean that your private data can only be stored if your consent is freely given, specific, informed and unambiguous.

The GDPR data quality provisions mean that personal data should only be collected for specified and legitimate purposes; and should not be excessive given the purposes for which the data was collected and processed; as well as accurate and kept up to date. It also means that if the original purpose for collection has gone then the data must be deleted – Even if the data is still useful to the controller.

“But I’m not in marketing why do I care?”, I hear you ask. There are 3 aspects to that:

(1) you will provide personal information to manage your private identity every day. You should be aware of GDPR because affects almost every online portal you use.

(2) in your job, you will manage an identity which might involve your personal identity leaking into your work identity. This might be an issue if you use online tools which have merged your professional and personal data e.g. because you signed into a portal with a private Facebook account. Oops! Who owns that login identity – you or your employer?

(3) in your job you might manage other peoples’ identity information which is almost certainly linked to some personal information. I am sure you know and have implemented your GDPR requirements.

By the time you read this, GDPR will be in its early stages of enforcement. Whether you’re a UK, EU or US company, the world will have changed for you. You might be an international expert and familiar with the EU-US Privacy Shield or you might be a sole trader searching google and jotting your data breach plan onto a table napkin for later use. Whatever you do, spend an hour or two figuring out how it applies to your identities. In today’s cyber-security world, you’ll need that information either as a professional or an individual. Security relies on identity and identity is affected by GDPR.

Until next time, whoever you are!


Tags: iss131 | class | Security | Identity | Privacy | gdpr | Bruce Devlin - new
Contributing Author Bruce Devlin - new


Download PDF
Article Copyright tv-bay limited. All trademarks recognised.
Reproduction of the content strictly prohibited without written consent.

Related Interviews
  • Classic tubes reinvented by Kino Flo at IBC 2018

    Classic tubes reinvented by Kino Flo at IBC 2018

  • Winner of the LP54 Miller Classic

    Winner of the LP54 Miller Classic

  • Viaccess-Orca content security at IBC 2015

    Viaccess-Orca content security at IBC 2015

  • Viaccess-Orca at IBC 2016

    Viaccess-Orca at IBC 2016

  • Viaccess-Orca at IBC 2013

    Viaccess-Orca at IBC 2013


Articles
What content providers need to know about OTT
Hiren Hindocha As OTT (Over-The-Top) technology has gotten more mature and established robust standards over the years, the concept of OTT monitoring is gaining popularity. With customer expectations soaring, it’s vital for OTT providers to deliver superior quality content. To deliver Quality of Experience (QoE) on par with linear TV broadcast, the entire system, starting from ingest to multi-bitrate encoding to delivery to CDN must be monitored continuously.
Tags: iss134 | ott monitoring | qos | logging | compliance | dash | atsc | cloud | Hiren Hindocha
Contributing Author Hiren Hindocha Click to read or download PDF
The Wireless Way to 4k
JP Delport DTC’s AEON group of products have been specifically designed for the 4K market. We encode with the more efficient HEVC algorithm, which means we are taking a 12G signal and compressing it to a bitrate that can be managed over an RF link. So what makes this a leading idea in the 4K revolution?
Tags: iss134 | wireless | 4k | transmission | JP Delport
Contributing Author JP Delport Click to read or download PDF
State of the Nation - November 2018
Dick Hobbs - new There is an interesting seminar called Size Matters at the KitPlus Show – organised by the publishers of this fine magazine – at MediaCityUK in Salford on 6 November. It’s a talk by cinematographer Alistair Chapman on the way that camera technology is changing, and in particular the size of the electronic device which creates the image is growing.
Tags: iss134 | cmos | 35mm | AJA | Arri | Blackmagic | Canon | Datavideo | GoPro | Grass Valley | Hitachi | Ikegami | JVC | Kinefinity | Nikon | Panasonic | Red | Sony | jpeg2000 | Dick Hobbs - new
Contributing Author Dick Hobbs - new Click to read or download PDF
Sony HDC-4800 Review
Andy McKenzie First announced at NAB 2016, the Sony HDC-4800 is a studio camera system capable of shooting 4K/UHD at up to 8x or full HD at up to 16x. With a price point upwards of £250,000 it is a very high-end product with a wide feature set. In Sony's own words, "This is the future of live production, designed to satisfy the storytelling aspect of modern sports production.” Deliveries began in mid 2017 and, after careful preliminary evaluation, we invested in several systems for our hire fleet ahead of the FIFA World Cup in Russia.
Tags: iss134 | review | hdc-4800 | sony | finepoint | Andy McKenzie
Contributing Author Andy McKenzie Click to read or download PDF
Keeping it remotely real
Reuben Such Everyone wants to do more with less. Always have, although it could be argued that doing more with more is something to aspire to, not many have that luxury. So let’s stick with the prevailing winds of doing more with less, and not just doing more, but doing it remotely, particularly in terms of production. Remote production, in particular, is getting a lot of attention in the field these days, but not so much in terms of the remote operation of fixed studios.
Tags: iss134 | remote control | IPE | IDS | Reuben Such
Contributing Author Reuben Such Click to read or download PDF