Personal Data Distribution Management via Segmented Catalogs
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current personal data management systems lack a distribution management device that creates and stores catalogs for promoting data distribution while ensuring information security and compliance with GDPR, making it difficult to manage personal data distribution effectively and protect sensitive information.
Innovation Solution
A personal data distribution management system comprising separate source data management devices, data distribution management devices, and relay processing devices connected on a network, where the data distribution management device receives usage requests, selects personal data, and creates a catalog excluding real name information, reducing the risk of information leakage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If personal data is distributed to multiple users, then data utilization efficiency is improved, but information security and risk of data leakage worsen
Solution Approach 1:
The system segments personal data into multiple categories (identification information, attribute information, measurement results, images) and applies different management and authorization rules to each category. This allows selective distribution of appropriate data types to different users while maintaining security controls for sensitive information.
Solution Approach 2:
The data management server acts as an intermediary between data holders and data users, managing data distribution, authorization, and tracking. This intermediary layer enables efficient data sharing while maintaining security controls, audit trails, and compliance with GDPR requirements without requiring direct access between all parties.
2Ease of operation
If a centralized data management system is implemented, then data distribution control is improved, but system complexity and cost worsen
Solution Approach 1:
The system architecture is segmented into multiple functional components: data holder terminals, data management server, data user terminals, and measuring instruments. Each component has specific responsibilities, allowing distributed control while maintaining overall system coordination without requiring a fully centralized complex system.
Solution Approach 2:
The data management server provides multiple functions including data reception, storage, catalog creation, authorization management, and distribution control within a single system component. This multi-functionality reduces overall system complexity compared to having separate specialized systems for each function.
3Adaptability or versatility
If comprehensive consent is obtained from all individuals, then data utilization scope is improved, but time and cost for consent collection worsen
Solution Approach 1:
The system obtains and stores consent information in advance during data collection, creating a consent database that records which individuals have consented to which types of data usage. This preliminary action eliminates the need for repeated consent requests when distributing data to multiple users, significantly reducing time and administrative burden.
Solution Approach 2:
The system implements automated feedback mechanisms where the data management server checks consent status against the consent database before distributing data to users. This automated feedback process replaces manual consent verification, reducing time and cost while ensuring compliance with GDPR requirements for individual consent.
Data Source
AI summary
A personal data distribution management system includes source data management devices, a data distribution management device, and a relay processing device that are separate devices and are connected on a network. The source data management device includes a database that stores personal data on an individual subjected to a measurement with a measuring instrument, and attribute information related to the individual and the measurement, the database storing the personal data and the attribute information as original data associated with real name information on the individual. The data distribution management device fetches original data except for personal data, and creates a data catalog. The relay processing device outputs the data, which is the data except for real name information on individuals and from the database of each source data management device based on the data usage request received from the outside, to a data user terminal. This configuration enables data distribution management that reduces the risk of information leakage of personal data and individual real name information.


