Especificação de requisitos de design de software para sistemas de IoT conforme a LGPD: Resultados de aplicação em um sistema de assistência para pacientes com Diabetes Mellitus.

  • João Pedro Ribeiro UNIFEI
  • Lina Garcés UNIFEI

Abstract


With the evolution of the Internet of Things (IoT) and its operations in different domains, it is necessary to focus on the security and privacy of user data. This work investigates and proposes an approach for specifying and adapting requirements for IoT systems in healthcare, using the DiaMant@Home application as a scenario for compliance with the General Data Protection Law (LGPD). Goal-Oriented Requirement Engineering (GORE), a software engineering method for requirement specification, was used. As a result, a set of functional and non-functional requirements was proposed that can be reused for healthcare IoT systems that need to comply with the LGPD, supporting the software design phase related to security and privacy aspects in IoT systems for the protection of sensitive data and ensuring application integrity.

References

Brasil (2018). Lei Geral de Proteção de Dados (LGPD). Lei n. 13.709 de 14 de agosto de 2018. Presidência da República, Brasília.

Camêlo, M. N. (2022). G-PRIV: um guia para especificação de requisitos de privacidade em conformidade com a LGPD. Dissertação de Mestrado, Universidade Federal de Pernambuco, Recife.

Garcés, L., Oliveira, B., and Arenas, C. (2020). Arquiteturas de software para o domínio da saúde, pages 1–47.

Kelly, J., Campbell, K., Gong, E., and Scuffham, P. (2020). The Internet of Things: impact and implications for healthcare delivery (Preprint). Journal of Medical Internet Research, 22.

Lamsweerde, A. (2001). Goal-oriented requirements engineering: a guided tour. In Proceedings Fifth IEEE International Symposium on Requirements Engineering, pages 249–262.

Liu, J., Zhang, C., and Fang, Y. (2018). EPIC: A Differential Privacy Framework to Defend Smart Homes Against Internet Traffic Analysis. IEEE Internet of Things Journal, 5(2):1206–1217.

Mendes, J., Viana, D., and Rivero, L. (2021). Developing an Inspection Checklist for the Adequacy Assessment of Software Systems to Quality Attributes of the Brazilian General Data Protection Law: An Initial Proposal. pages 263–268.
Published
2023-06-27
RIBEIRO, João Pedro; GARCÉS, Lina. Especificação de requisitos de design de software para sistemas de IoT conforme a LGPD: Resultados de aplicação em um sistema de assistência para pacientes com Diabetes Mellitus.. In: UNDERGRADUATE RESEARCH WORKS CONTEST - BRAZILIAN SYMPOSIUM ON COMPUTING APPLIED TO HEALTHCARE (SBCAS), 23. , 2023, São Paulo/SP. Anais [...]. Porto Alegre: Sociedade Brasileira de Computação, 2023 . p. 37-42. ISSN 2763-8987. DOI: https://doi.org/10.5753/sbcas_estendido.2023.229693.