A

Complementing Organizational Security in Data Ecosystems with Technical Guarantees

Abstract

Federated data ecosystems continue to emerge to connect previously isolated data silos across organizational boundaries over the Internet. These platforms aim to facilitate data sharing while maintaining data sovereignty, which is supposed to empower data owners to retain control over their data. However, the employed organizational security measures, such as policy-enforcing middleware besides software certification, processes, and employees are insufficient to provide reliable guarantees against malicious insiders. This paper thus proposes a corresponding technical solution for federated platforms that builds on communication between Trusted Execution Environments (TEEs) and demonstrates the feasibility of technically enforceable data protection. Specifically, we provide dependable guarantees for data owners formulated via rich policies while maintaining usability as a general-purpose data exchange platform. Further, by evaluating a real-world use case that concerns sharing sensitive genomic data, we demonstrate its real-world suitability. Our findings emphasize the potential of TEEs in establishing trust and increasing data security for federated data scenarios far beyond a single use case.

Authors 5

  1. RWTH Aachen University

    Affiliation as printed

    RWTH Aachen University,Germany

  2. Fraunhofer Institute for Applied Information Technology

    Affiliation as printed

    Fraunhofer FIT,Germany

  3. Eduard Vlad Aachen

    RWTH Aachen University

    Affiliation as printed

    RWTH Aachen University,Germany

  4. Jan Pennekamp Aachen

    RWTH Aachen University

    Affiliation as printed

    RWTH Aachen University,Germany

  5. Klaus Wehrle Aachen

    RWTH Aachen University

    Affiliation as printed

    RWTH Aachen University,Germany

Cited by 3 stored of 3

3 results

No patents citing this paper on Lens.org (checked 2026-10-06).

References 40