Complementing Organizational Security in Data Ecosystems with Technical Guarantees
Abstract
Federated data ecosystems continue to emerge to connect previously isolated data silos across organizational boundaries over the Internet. These platforms aim to facilitate data sharing while maintaining data sovereignty, which is supposed to empower data owners to retain control over their data. However, the employed organizational security measures, such as policy-enforcing middleware besides software certification, processes, and employees are insufficient to provide reliable guarantees against malicious insiders. This paper thus proposes a corresponding technical solution for federated platforms that builds on communication between Trusted Execution Environments (TEEs) and demonstrates the feasibility of technically enforceable data protection. Specifically, we provide dependable guarantees for data owners formulated via rich policies while maintaining usability as a general-purpose data exchange platform. Further, by evaluating a real-world use case that concerns sharing sensitive genomic data, we demonstrate its real-world suitability. Our findings emphasize the potential of TEEs in establishing trust and increasing data security for federated data scenarios far beyond a single use case.
Authors 5
-
Johannes Lohmöller Aachen
Affiliation as printed
RWTH Aachen University,Germany
-
Fraunhofer Institute for Applied Information Technology
Affiliation as printed
Fraunhofer FIT,Germany
-
Eduard Vlad Aachen
Affiliation as printed
RWTH Aachen University,Germany
-
Jan Pennekamp Aachen
Affiliation as printed
RWTH Aachen University,Germany
-
Klaus Wehrle Aachen
Affiliation as printed
RWTH Aachen University,Germany
Cited by 3 stored of 3
3 results
No patents citing this paper on Lens.org (checked 2026-10-06).
References 40
-
W6838414422details pending0citations
-
W6779278950details pending0citations
-
W1657886273details pending0citations
-
W2028065906details pending0citations
-
W2170512662details pending0citations