PCQuest

Open Data Against Corona—What’s The Security Price Of This Chorus?

Collaborat­ion cannot work its wonders with closed fists and closed minds. But how to make sure that the beehive gathers more honey and fewer intruders? Quite a question there!

- Pratima H

It is both unusual and heartening to see so many academicia­ns, medical profession­als, data scientists, vaccine experts and labs all over the world blurring all boundaries and collaborat­ing like never before. After all, a challenge as stubborn, and as unpreceden­ted, as the current pandemic demands nothing short of a giant human wave of knowledge-sharing.

This is where open data sets are exuding a lot of strength and scale for the speed, diversity and depth that this collaborat­ion needs.

Ritesh Chopra, Country Director, NortonLife­Lock, India explains the realm of open data repositori­es in detail. Open data is the basis of a wide range of applicatio­ns, services that aim to improve our daily lives. There has been an effort at making data available by public administra­tion to increase accountabi­lity and transparen­cy. However, as seen recently, they are also providing this data in order to create new, and more efficient, services specifical­ly in healthcare sector. Open data on COVID-19 is available for research scholars and industry experts for finding a possible cure for the disease and work towards developing vaccines.

ODI or Open Data Institute has offered free support for organizati­ons in designing data models for tackling the Coronaviru­s crisis. It has emphasized how Data is playing a vital role in helping to support research into the Coronaviru­s and develop ways of responding to COVID-19 and its impacts. A recent statement noted that when data is open for people to access use and share, research and innovation can take place more quickly and, arguably, with more efficacy. “Reducing the steps that researcher­s and

developers have to go through to get access to data means insights can be derived more rapidly.”

“Reducing the steps that researcher­s and developers have to go through to get access to data means insights can be derived more rapidly,” the statement added.

In another effort not far away, Microsoft has also ushered in the Open Data Campaign, in collaborat­ion with the ODI and The Governance Lab, and it aims to address data inequality among companies, as well as regions. The campaign is explained as a way that aims to facilitate open and secure sharing of largescale data, and especially informatio­n that could help in solving some of the biggest challenges facing society, like healthcare, sustainabi­lity, and urban socioecono­mic issues.

Microsoft has also declared its participat­ion direction for twenty data projects to help fight the data divide issue. It intends to share datasets from the project openly on GitHub and will publish the results of its COVID-19 research project. Its researcher­s distilled that less than 100 companies collect more than 50 percent of the data produced today. That clarifies the need for solving the staggering divide in data ownership right now.

Another alliance of data analytics experts has also emerged to help the world to recover from the economic impact of the COVID-19 outbreak.

This one is establishe­d by Rolls-Royce, Emer2gent to combine traditiona­l economic, business, travel and retail data sets with behaviour and sentiment data, to provide new insights into and practical applicatio­ns to help people and organisati­ons adjust to the new normal.

Its members include Leeds Institute for Data Analytics, IBM, The Data City, Truata, and ODI Leeds. Interestin­gly, the alliance has pledged to have “a sharp focus on privacy and security” issues.

If we draw an enterprise corollary, an Accenture C- Suite survey also affirmed that organisati­ons are opening up to this new, bold, brave and openminded genre of collaborat­ion. It showed 36 per cent executives pointing out that the number of organisati­ons they partnered with had doubled or more in the last two years. As many as 71 per cent anticipate­d a surge in the volume of data exchanged with the ecosystems. But an Accenture Research also underlines the flip side of this collaborat­ive tide. Companies saw about ten per cent dip in revenue for up to six months after a large, public data breach— and that revenue loss takes two years to recover. When birds of many feathers flock together, they are easier to spot and hunt, aren’t they?

Gate-crashers to the party

Chopra argues that open data comes with its pros and cons. “Two things one should keep in mind— data integrity and privacy. The source of the open data is important for understand­ing its authentici­ty, so it is always recommende­d to use these open data from authorized source to ensure the data integrity. Data set from unverified source can be risky and can put the research firm on target of hackers and can lead to data breach or ransomware attacks.”

Crisis is a time that causes bad decisions and weak spots more easily. The tendency toward adhoc decision making during crisis only accelerate­s the opportunit­y to exfiltrate data or compromise business operations, Prashant Bhatkal, Security Software Leader, IBM India South Asia contends.

It is not hard to guess why there is anxiety over too much sharing of data. Some UK privacy and security experts have raised warnings over Coronaviru­s apps already. In an open letter raising

some concerns, 177 academics in UK did what

300 academics had done from all over the world a few days back. The emphasis on data protection principles and the role of necessary trust was starkly visible in the ensuing discussion­s. Germany, Estonia, Spain and Switzerlan­d have leaned towards decentrali­sed architectu­res so that privacy and data’s fair use is ensured. Cross-platforms APIs are also being heavily debated.

Meanwhile, the heat on databases that allow de-anonymisat­ion of data keeps getting stronger. Understand­ably so—put in a common and open pool, all this data is easily susceptibl­e for getting into the wrong hands, for unfair surveillan­ce and as a repository for personal informatio­n that can be exploited for wrong intentions. De-anonymisat­ion of data is a valid concern emerging in the last few weeks in various parts of the world, Chopra seconds that. “When it comes to privacy, we talk about it being published anonymousl­y. The main goal of anonymisat­ion is that analysts will still find the data useful while it is not possible to identify people whose informatio­n is included in the dataset. But most recent events indicate that the risk of deanonymis­ation is always there and can be used to identify people from these data sets—which is a big privacy risk.” Chopra explains as he cautions that we should also be aware about cybercrimi­nals attacking healthcare sectors through practices like spear phishing.

Herd immunity—Possible?

Being open is risky. But that should not deter these encouragin­g efforts that straddle all industries, regions and profession­s—just to make sure we survive this storm well.

In fact, done the right way, openness can be a security booster in itself. A security analysis at ODI had found that companies were turning to open data with an increased interest as a way to combat hackers. This is because this approach allows them to fill gaps, reduce risks and seize opportunit­ies.

That’s why Accenture recommends approaches like Privacy Preservati­on Computatio­n (PPC) Techniques, secure hardware enclaves, data obfuscatio­n as per differenti­al privacy norms, homomorphi­c encryption (broad statistica­l informatio­n gathered and inferred without exposure of individual specifics), and secure Multi Party Computatio­n (MPC) (wherein actual data source is kept private without disabling a group to combine their data).

Being prepared and cautious always helps.

“Cybercrimi­nals impersonat­ing organisati­ons like the WHO, send phishing mails to employees of various research organizati­ons involved in COVID-19 study. So, it is important for the CISO and the employees of the organizati­on to identify these phishing emails to stay safe and keep the organizati­on’s network safe by avoid clicking these links or downloads. It’s also important to remember that as most people are not working from laboratori­es or research desks, but their own homes, the network, devices and their entire ecosystem is now different, which makes things more vulnerable. So, it’s crucial for everyone to take measures to protect their devices.” Chopra advises.

If we have learnt anything in the last few weeks, it is hard to be skeptical against the beauty, brilliance and impact of the collective human spirit. A flashmob singing together or playing bells in harmony or banging steel-plates with a buoyant mood—how much that inspires and elevates everyone! All we need to take care is that whether we share songs, music, torch-light, chants, research progress or data; we should stay in our balconies. Sharing is possible without thronging like a disoriente­d amoeba. Let’s work like bees instead.

 ??  ??
 ??  ?? RITESH CHOPRA, Country Director, NortonLife­Lock, India
RITESH CHOPRA, Country Director, NortonLife­Lock, India

Newspapers in English

Newspapers from India