<?xml version="1.0" encoding="UTF-8"?>
<record>
  <title>A Negotiation-based Approach to Resolve Conflicting Privacy Policies in M-Health</title>
  <journal>Journal of Information &amp; Systems Management</journal>
  <author>Souad SADKI, Hanan EL BAKKALI</author>
  <volume>5</volume>
  <issue>3</issue>
  <year>2015</year>
  <doi></doi>
  <url>http://www.dline.info/jism/fulltext/v5n3/v5n3_2.pdf</url>
  <abstract>Recently, there has been a growing interest in the usage of mobile services and applications for healthcare.
However, this growth also brings on many challenges such as privacy preservation. Many research works have been carried
out emphasizing the important role privacy policies play in protecting patientsâ€™ private data from any kind of violation or
misuse. In fact, policies are expressed using natural languages reflecting different actions third parties may perform on
patientâ€™s data. These policies may not necessary satisfy patientsâ€™ privacy preferences leading to conflicting situations. In this
paper, we compare some privacy policies languages suggested in the literature taking into account a number of criteria such
as high-expressiveness, abstraction and delegation of authority support. Also, we propose an approach aiming at resolving
conflicts among privacy policies by negotiation. Finally, in order to show how our solution can be applied, we consider an
example of conflicting privacy policies. For that, we adopt S4P, a language for specifying both patientsâ€™ preferences and third
partiesâ€™ policies and which satisfy the different criteria considered in the comparative study.</abstract>
</record>
