DUCA

DUCA

Data Usage Control for empowering digital sovereignty for All citizens

DUCA

With the increasing concern over the use of personal and sensitive data on the internet, DUCA (Data Usage Control for empowering digital sovereignty for All citizens) aims to empower European users and organizations to take control of their data. Our project provides a unified framework that enhances confidentiality and personal data protection, encompassing both citizens' personal data and confidential information generated by data-driven organizations. It represents a significant step towards a more secure, privacy-conscious and sovereign digital landscape in Europe.

Project description

DUCA's framework consists of modular building blocks designed to support a versatile architecture and reference implementation. This includes techniques for assessing privacy risk exposure, ensuring that our solution is both general and flexible. By making the main components platform-independent, we guarantee compatibility with a wide range of architectures and deployment models within the Internet of Everything (IoE).

We have identified three primary use cases to demonstrate our framework:

  • Smart Energy: Enhancing data usage control in energy management systems.
  • Big Data and Artificial Intelligence: Ensuring secure and privacy-conscious use of data in big data analytics and AI applications.
  • Collaborative Mobility: Improving data protection in shared mobility services.

Research contribution

The project's research approach includes comprehensive measures to ensure compliance with legal frameworks and standards by formalizing, analyzing and monitoring guidelines

  • Assurance of compliance in accordance to legal frameworks (e.g., GDPR, EU AI Act) and standards for auditing and engineering purposes.
  • Representation of attestation schemes and trusted policies in ontologies and knowledge graphs, for the purpose of testing, maintainability of policies and dependency tracing.
  • Ensuring the correctness of complex policies using formalization and static analysis techniques.
  • Monitoring the policy enforcement in runtime to increase the confidence in the correctness of the implementation of usage control systems

In addition, DUCA promotes participants' knowledge, improves research and innovation capabilities and provides European society with advanced data protection mechanisms.

Funding

HORIZON-MSCA-2021-SE-01, Marie Skłodowska-Curie Actions & Support to Experts, MSCA Staff Exchanges
Grant number 101086308

Project duration

01.01.2023. – 31.12.2026

Dr. Fathiyeh Faghih

Your contact

Dr. Fathiyeh Faghih

+49 89 3603522 261
faghih@fortiss.org

 Tomas Bueno Momcilovic

Your contact

Tomas Bueno Momcilovic

+49 89 3603522 266
momcilovic@fortiss.org

More information