Information technology — Cloud computing and distributed platforms — Data sharing agreement (DSA) framework

This document establishes a set of building blocks, i.e. concepts, terms, and definitions, including Data Level Objectives (DLOs) and Data Qualitative Objectives (DQOs), that can be used to create Data Sharing Agreements (DSAs). This document is applicable to DSAs where the data is intended to be processed using one or more cloud services or other distributed platforms.

Titre manque

General Information

Status
Published
Publication Date
14-Feb-2022
Current Stage
6060 - International Standard published
Start Date
15-Feb-2022
Due Date
07-Jan-2023
Completion Date
15-Feb-2022
Ref Project
Standard
ISO/IEC 23751:2022 - Information technology — Cloud computing and distributed platforms — Data sharing agreement (DSA) framework Released:2/15/2022
English language
26 pages
sale 15% off
Preview
sale 15% off
Preview

Standards Content (Sample)


INTERNATIONAL ISO/IEC
STANDARD 23751
First edition
2022-02
Information technology — Cloud
computing and distributed platforms
— Data sharing agreement (DSA)
framework
Reference number
© ISO/IEC 2022
© ISO/IEC 2022
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may
be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on
the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below
or ISO’s member body in the country of the requester.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: +41 22 749 01 11
Email: copyright@iso.org
Website: www.iso.org
Published in Switzerland
ii
© ISO/IEC 2022 – All rights reserved

Contents Page
Foreword .v
Introduction . vi
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 1
4 Symbols and abbreviated terms.3
5 Overview of DSAs.3
5.1 General . 3
5.2 Data sharing scenarios . 4
5.3 Role of the DSA. 7
5.4 Trust as a key element in data sharing . 7
5.5 Data access and processing rights . 7
5.6 Data flow and DSA elements. 9
5.7 Relationship between data sharing and data portability . 10
5.8 Data sharing agreements (DSAs) in data lifecycles . 10
5.9 Data sharing agreements (DSAs) governance . 10
6 Dataset description .11
6.1 General . 11
6.2 DLOs and DQOs . 11
6.2.1 Title . 11
6.2.2 Domain . 11
6.2.3 Data dictionary . 11
6.2.4 Format. 11
6.2.5 Data types . 11
6.2.6 Data gathering policy . 11
6.2.7 Revision history . 11
6.2.8 Pre-existing transforms . 11
6.2.9 Date of the dataset . 11
6.2.10 Number of instances .12
6.2.11 Summary statistics .12
7 Data use obligations and controls .12
7.1 General .12
7.2 DLOs and DQOs . 13
7.2.1 Regulatory obligations and controls . 13
7.2.2 Data holder obligations and controls . 13
7.2.3 Allowed data uses . .13
7.2.4 Disallowed data uses . 14
7.2.5 Allowed uses of the data processing output . 14
7.2.6 Disallowed uses of the data processing output . 14
7.2.7 Data user obligations and controls . 14
8 Data provenance records, quality, and integrity .14
8.1 Data provenance records . 14
8.1.1 General . 14
8.1.2 DLOs and DQOs . 14
8.2 Data quality . 15
8.2.1 General .15
8.2.2 DLOs and DQOs .15
8.3 Integrity . 16
8.3.1 General . 16
8.3.2 DLOs and DQOs — Dataset integrity . 16
9 Chain of custody and transfer of custody .16
iii
© ISO/IEC 2022 – All rights reserved

9.1 Chain of custody . 16
9.1.1 General . 16
9.1.2 DLOs and DQOs . 16
9.2 Transfer of custody . 17
9.2.1 General . 17
9.2.2 DLOs and DQOs . 17
10 Security and privacy .17
10.1 General . 17
10.2 DLOs and DQOs . 18
10.2.1 Data holder security requirements . 18
10.2.2 Data user security requirements . 18
10.2.3 Data holder privacy requirements . 18
10.2.4 Data user privacy requirements. 18
11 Proof of compliance .18
11.1 General . 18
11.2 DLOs and DQOs — Proof of compliance mechanisms . 19
Annex A (informative) Governance in ecosystems .20
Annex B (informative) Examples of alternatives to bespoke data sharing agreements (DSAs) .21
Annex C (informative) ISO/IEC standards for identity, privacy, chain of custody, forensics
and security.22
Bibliography .24
iv
© ISO/IEC 2022 – All rights reserved

Foreword
ISO (the International Organization for Standardization) and IEC (the International Electrotechnical
Commission) form the specialized system for worldwide standardization. National bodies that are
members of ISO or IEC parti
...

Questions, Comments and Discussion

Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.