Artwork

Content provided by Debra J. Farber (Shifting Privacy Left). All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Debra J. Farber (Shifting Privacy Left) or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

S2E31: "Leveraging a Privacy Ontology to Scale Privacy Processes" with Steve Hickman (Epistimis)

51:35
 
Share
 

Manage episode 379361185 series 3407760
Content provided by Debra J. Farber (Shifting Privacy Left). All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Debra J. Farber (Shifting Privacy Left) or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

This week’s guest is Steve Hickman, the founder of Epistimis, a privacy-first process design tooling startup that evaluate rules and enables the fixing of privacy issues before they ever take effect. In our conversation, we discuss: why the biggest impediment to protecting and respecting privacy within organizations is the lack of a common language; why we need a common Privacy Ontology in addition to a Privacy Taxonomy; Epistimis' ontological approach and how it leverages semantic modeling for privacy rules checking; and, examples of how Epistimis Privacy Design Process tooling complements privacy tech solutions on the market, not compete with them.

Topics Covered:

  • How Steve’s deep engineering background in aerospace, retail, telecom, and then a short stint at Meta, led him to found Epistimis
  • Why its been hard for companies to get privacy right at scale
  • How Epistimis leverages 'semantic modeling' for rule checking and how this helps to scale privacy as part of an ontological approach
  • The definition of a Privacy Ontology and Steve's belief that all should use one for common understanding at all levels of the business
  • Advice for designers, architects, and developers when it comes to creating and implementing privacy ontology, taxonomies & semantic models
  • How to make a Privacy Ontology usable
  • How Epistimis' process design tooling work with discovery and mapping platforms like BigID & Secuvy.ai
  • How Epistimis' process design tooling work along with a platform like Privado.ai, which scans a company's product code and then surfaces privacy risks in the code and detects processing activities for creating dynamic data maps
  • How Epistimis' process design tooling works with PrivacyCode, which has a library of privacy objects, agile privacy implementations (e.g., success criteria & sample code), and delivers metrics on the privacy engineering process is going
  • Steve calls for collaborators who are interested in POCs and/or who can provide feedback on Epistimis' PbD processing tooling
  • Steve describes what's next on the Epistimis roadmap, including wargaming

Resources Mentioned:

Guest Info:

Send us a Text Message.

Privado.ai
Privacy assurance at the speed of product development. Get instant visibility w/ privacy code scans.
Shifting Privacy Left Media
Where privacy engineers gather, share, & learn
Disclaimer: This post contains affiliate links. If you make a purchase, I may receive a commission at no extra cost to you.
Copyright © 2022 - 2024 Principled LLC. All rights reserved.

  continue reading

Chapters

1. S2E31: "Leveraging a Privacy Ontology to Scale Privacy Processes" with Steve Hickman (Epistimis) (00:00:00)

2. Introducing Steve Hickman, Founder of Epistimis: Privacy Process Design Tooling (00:02:21)

3. Why its been hard for companies to get privacy right at scale (00:07:14)

4. How Epistimis leverages 'semantic modeling' for rule checking and how this helps to scale privacy as part of an ontological approach (00:12:25)

5. Definition of an 'ontology' and why a privacy ontology is necessary for scaling privacy at large orgs (00:19:38)

6. Steve's advice for designers, architects, and developers when it comes to creating and implementing a privacy ontology, taxonomy, and semantic model to get started in their orgs (00:26:08)

7. Steve explains how Epistimis' process design tooling work with discovery and mapping platforms like BigID & Secuvy.ai (00:34:37)

8. Steve explains how Epistimis' process design tooling work along with a platform like Privado.ai, which scans a company's product code and then surfaces privacy risks in the code and detects processing activities for creating dynamic data maps (00:37:41)

9. Steve explains how Epistimis' process design tooling works w/ PrivacyCode, which has a library of privacy objects, agile privacy implementations (e.g., success criteria & sample code), and delivers metrics on the privacy engineering process is going (00:39:51)

10. Steve calls for collaborators who are interested in POCs and/or who can provide feedback on Epistimis' PbD processing tooling (00:42:00)

11. Steve describes what's next on the Epistimis roadmap, including wargaming capabilities (00:44:25)

63 episodes

Artwork
iconShare
 
Manage episode 379361185 series 3407760
Content provided by Debra J. Farber (Shifting Privacy Left). All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Debra J. Farber (Shifting Privacy Left) or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

This week’s guest is Steve Hickman, the founder of Epistimis, a privacy-first process design tooling startup that evaluate rules and enables the fixing of privacy issues before they ever take effect. In our conversation, we discuss: why the biggest impediment to protecting and respecting privacy within organizations is the lack of a common language; why we need a common Privacy Ontology in addition to a Privacy Taxonomy; Epistimis' ontological approach and how it leverages semantic modeling for privacy rules checking; and, examples of how Epistimis Privacy Design Process tooling complements privacy tech solutions on the market, not compete with them.

Topics Covered:

  • How Steve’s deep engineering background in aerospace, retail, telecom, and then a short stint at Meta, led him to found Epistimis
  • Why its been hard for companies to get privacy right at scale
  • How Epistimis leverages 'semantic modeling' for rule checking and how this helps to scale privacy as part of an ontological approach
  • The definition of a Privacy Ontology and Steve's belief that all should use one for common understanding at all levels of the business
  • Advice for designers, architects, and developers when it comes to creating and implementing privacy ontology, taxonomies & semantic models
  • How to make a Privacy Ontology usable
  • How Epistimis' process design tooling work with discovery and mapping platforms like BigID & Secuvy.ai
  • How Epistimis' process design tooling work along with a platform like Privado.ai, which scans a company's product code and then surfaces privacy risks in the code and detects processing activities for creating dynamic data maps
  • How Epistimis' process design tooling works with PrivacyCode, which has a library of privacy objects, agile privacy implementations (e.g., success criteria & sample code), and delivers metrics on the privacy engineering process is going
  • Steve calls for collaborators who are interested in POCs and/or who can provide feedback on Epistimis' PbD processing tooling
  • Steve describes what's next on the Epistimis roadmap, including wargaming

Resources Mentioned:

Guest Info:

Send us a Text Message.

Privado.ai
Privacy assurance at the speed of product development. Get instant visibility w/ privacy code scans.
Shifting Privacy Left Media
Where privacy engineers gather, share, & learn
Disclaimer: This post contains affiliate links. If you make a purchase, I may receive a commission at no extra cost to you.
Copyright © 2022 - 2024 Principled LLC. All rights reserved.

  continue reading

Chapters

1. S2E31: "Leveraging a Privacy Ontology to Scale Privacy Processes" with Steve Hickman (Epistimis) (00:00:00)

2. Introducing Steve Hickman, Founder of Epistimis: Privacy Process Design Tooling (00:02:21)

3. Why its been hard for companies to get privacy right at scale (00:07:14)

4. How Epistimis leverages 'semantic modeling' for rule checking and how this helps to scale privacy as part of an ontological approach (00:12:25)

5. Definition of an 'ontology' and why a privacy ontology is necessary for scaling privacy at large orgs (00:19:38)

6. Steve's advice for designers, architects, and developers when it comes to creating and implementing a privacy ontology, taxonomy, and semantic model to get started in their orgs (00:26:08)

7. Steve explains how Epistimis' process design tooling work with discovery and mapping platforms like BigID & Secuvy.ai (00:34:37)

8. Steve explains how Epistimis' process design tooling work along with a platform like Privado.ai, which scans a company's product code and then surfaces privacy risks in the code and detects processing activities for creating dynamic data maps (00:37:41)

9. Steve explains how Epistimis' process design tooling works w/ PrivacyCode, which has a library of privacy objects, agile privacy implementations (e.g., success criteria & sample code), and delivers metrics on the privacy engineering process is going (00:39:51)

10. Steve calls for collaborators who are interested in POCs and/or who can provide feedback on Epistimis' PbD processing tooling (00:42:00)

11. Steve describes what's next on the Epistimis roadmap, including wargaming capabilities (00:44:25)

63 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide