BDM Architecture Principle 7:
Principle: Security and Privacy-by-Design.
Statement: Balance Service and Security.
Balance Service and proactive and personalized Service Experience and Privacy.
Rationale: Security measure can present constraints for data collection and client interaction. Similarly, proactive and personalized service requires collecting and analyzing client data and proactively initiating interactions with the client which can be viewed as at odds with respecting client’s privacy.
Implications: • BDM will seek to balance client and business needs with appropriate security measures.
• Evaluation of architectures and proposed solutions in regards to applicable and supported security measures will be presented to BDM-ARC.
• BDM will seek to reduce constraints related to data collection and data access and sharing, while maintaining a focus on privacy (e.g. leveraging a client consent-based model).
• Privacy considerations are key to legislation, operational policy, service and business rules design. Through architecture and solution design, BDM will ensure that their intent in regards to privacy is maintained in implementation.