Information technology - RFID privacy impact assessment analysis for specific sectors

The scope of this Technical Report is to use the RFID PIA Framework as the basis for exploring issues with four major sectors involved with RFID:
—   libraries;
—   retail;
—   e-Ticketing, toll roads, fee collection, events management;
—   banking and financial services.
After specific sector research and consolidation of the results of industry workshops and seminars that take place in several EU Member States, this Technical Report will identify the characteristics that need to be taken into consideration by operators of RFID systems in the example sectors. In addition it will provide advice to operators in the sector on significant variants both in terms of technology and application data. This will enable the appropriate risk factors to be taken into account.
Based on the synthesis of the applications in the chosen sectors, this Technical Report will also identify a set of factors relevant to specific RFID technologies and features that will need to be taken into account in preparing a Privacy and Data Protection Impact Assessment for many RFID applications.

Informationstechnik - Verfahren zur Datenschutzfolgenabschätzung (PIA) von RFID für spezifische Sektoren

Technologies de l’information - Évaluation d'impact sur la vie privée des applications RFID dans des secteurs spécifiques

Informacijska tehnologija - Ocenjevanje vpliva RFID na zasebnost za določene sektorje

Področje uporabe tega tehničnega poročila je uporaba ogrodja ocenjevanja vpliva RFID na zasebnost kot osnovo za raziskovanje težav v štirih glavnih sektorjih, ki upravljajo z RFID: - knjižnice; - maloprodaja; - elektronska prodaja kart, pobiranje cestnin, pobiranje pristojbin, upravljanje dogodkov; - bančne in finančne storitve. Po raziskavi določenega sektorja in konsolidaciji rezultatov industrijskih delavnic in seminarjev, ki se odvijajo v več državah članicah EU, bo to tehnično poročilo določilo lastnosti, ki jih morajo upoštevati izvajalci sistemov RFID v podanih sektorjih. Poleg tega bo zagotovilo nasvete za izvajalce v sektorjih o pomembnih različicah tako na področju tehnologije kot tudi uporabe podatkov. To bo omogočilo upoštevanje ustreznih dejavnikov tveganja. Na podlagi sinteze uporabe v izbranih sektorjih bo to tehnično poročilo določilo tudi niz dejavnikov, ki so pomembni za posamezne tehnologije RFID in lastnosti, ki jih ni treba upoštevati pri pripravi ocene vpliva na zasebnost in varnost podatkov za številne uporabe RFID.

General Information

Status
Published
Publication Date
03-Jun-2014
Current Stage
6060 - Definitive text made available (DAV) - Publishing
Start Date
04-Jun-2014
Due Date
25-Feb-2014
Completion Date
04-Jun-2014

Buy Standard

Technical report
TP CEN/TR 16673:2014
English language
38 pages
sale 10% off
Preview
sale 10% off
Preview
e-Library read for
1 day
Technical report
TP CEN/TR 16673:2014
English language
38 pages
sale 10% off
Preview
sale 10% off
Preview
e-Library read for
1 day

Standards Content (Sample)

SLOVENSKI STANDARD
SIST-TP CEN/TR 16673:2014
01-september-2014
,QIRUPDFLMVNDWHKQRORJLMD2FHQMHYDQMHYSOLYD5),'QD]DVHEQRVW]DGRORþHQH
VHNWRUMH
Information technology - RFID privacy impact assessment analysis for specific sectors
Informationstechik - Verfahren zur Datenschutzfolgenabschätzung (PIA) von RFID für
spezifische Sektoren
Technologie de l’information - Évaluation de l’impact sur la vie privée de la RFID pour
des secteurs spécifiques
Ta slovenski standard je istoveten z: CEN/TR 16673:2014
ICS:
35.020 Informacijska tehnika in Information technology (IT) in
tehnologija na splošno general
SIST-TP CEN/TR 16673:2014 en,fr,de
2003-01.Slovenski inštitut za standardizacijo. Razmnoževanje celote ali delov tega standarda ni dovoljeno.

---------------------- Page: 1 ----------------------

SIST-TP CEN/TR 16673:2014

---------------------- Page: 2 ----------------------

SIST-TP CEN/TR 16673:2014

TECHNICAL REPORT
CEN/TR 16673

RAPPORT TECHNIQUE

TECHNISCHER BERICHT
June 2014
ICS 35.240.60
English Version
Information technology - RFID privacy impact assessment
analysis for specific sectors
Technologies de l'information - Évaluation d'impact sur la Informationstechnik - Verfahren zur
vie privée des applications RFID dans des secteurs Datenschutzfolgenabschätzung (PIA) von RFID für
spécifiques spezifische Sektoren


This Technical Report was approved by CEN on 20 January 2014. It has been drawn up by the Technical Committee CEN/TC 225.

CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia,
Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania,
Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United
Kingdom.





EUROPEAN COMMITTEE FOR STANDARDIZATION
COMITÉ EUROPÉEN DE NORMALISATION

EUROPÄISCHES KOMITEE FÜR NORMUNG

CEN-CENELEC Management Centre: Avenue Marnix 17, B-1000 Brussels
© 2014 CEN All rights of exploitation in any form and by any means reserved Ref. No. CEN/TR 16673:2014 E
worldwide for CEN national Members.

---------------------- Page: 3 ----------------------

SIST-TP CEN/TR 16673:2014
CEN/TR 16673:2014 (E)
Contents Page

Foreword .4
Introduction .5
1 Scope .6
2 Terms and definitions .6
3 Symbols and abbreviations .8
4 Brief description of an RFID system .9
4.1 Infrastructure of an RFID system .9
4.2 Components of an RFID system .9
4.2.1 Transponder/Tag.9
4.2.2 RFID reader or writer . 10
4.2.3 Backend system. 10
4.3 Characteristics of RFID technology compared to other data capture techniques . 10
5 Privacy concept in RFID-based applications . 11
5.1 Interaction between data protection, data security and privacy . 11
5.2 Data protection . 12
5.3 Data security . 13
5.4 Privacy . 13
5.5 General privacy risks .
...

SLOVENSKI STANDARD
SIST-TP CEN/TR 16673:2014
01-september-2014
Informacijska tehnologija - Ocenjevanje vpliva RFID na zasebnost za določene
sektorje
Information technology - RFID privacy impact assessment analysis for specific sectors
Informationstechik - Verfahren zur Datenschutzfolgenabschätzung (PIA) von RFID für
spezifische Sektoren
Technologie de l’information - Évaluation de l’impact sur la vie privée de la RFID pour
des secteurs spécifiques
Ta slovenski standard je istoveten z: CEN/TR 16673:2014
ICS:
35.040.50 Tehnike za samodejno Automatic identification and
razpoznavanje in zajem data capture techniques
podatkov
SIST-TP CEN/TR 16673:2014 en,fr,de
2003-01.Slovenski inštitut za standardizacijo. Razmnoževanje celote ali delov tega standarda ni dovoljeno.

---------------------- Page: 1 ----------------------
SIST-TP CEN/TR 16673:2014

---------------------- Page: 2 ----------------------
SIST-TP CEN/TR 16673:2014

TECHNICAL REPORT
CEN/TR 16673

RAPPORT TECHNIQUE

TECHNISCHER BERICHT
June 2014
ICS 35.240.60
English Version
Information technology - RFID privacy impact assessment
analysis for specific sectors
Technologies de l'information - Évaluation d'impact sur la Informationstechnik - Verfahren zur
vie privée des applications RFID dans des secteurs Datenschutzfolgenabschätzung (PIA) von RFID für
spécifiques spezifische Sektoren


This Technical Report was approved by CEN on 20 January 2014. It has been drawn up by the Technical Committee CEN/TC 225.

CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia,
Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania,
Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United
Kingdom.





EUROPEAN COMMITTEE FOR STANDARDIZATION
COMITÉ EUROPÉEN DE NORMALISATION

EUROPÄISCHES KOMITEE FÜR NORMUNG

CEN-CENELEC Management Centre: Avenue Marnix 17, B-1000 Brussels
© 2014 CEN All rights of exploitation in any form and by any means reserved Ref. No. CEN/TR 16673:2014 E
worldwide for CEN national Members.

---------------------- Page: 3 ----------------------
SIST-TP CEN/TR 16673:2014
CEN/TR 16673:2014 (E)
Contents Page

Foreword .4
Introduction .5
1 Scope .6
2 Terms and definitions .6
3 Symbols and abbreviations .8
4 Brief description of an RFID system .9
4.1 Infrastructure of an RFID system .9
4.2 Components of an RFID system .9
4.2.1 Transponder/Tag.9
4.2.2 RFID reader or writer . 10
4.2.3 Backend system. 10
4.3 Characteristics of RFID technology compared to other data capture techniques . 10
5 Privacy concept in RFID-based applications . 11
5.1 Interaction between data protection, data security and privacy . 11
5.2 Data protection . 12
5.3 Data security . 13
5.4 Privacy . 13
5.5 General privacy risks .
...

Questions, Comments and Discussion

Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.