
This paper compares the four national electronic Identity Management Systems (eIDMS), which have been described in the previous chapters. The section “Similarities and differences between four national eIDMS” will highlight the differences between these systems conceived as socio-technical systems with regard to the eID itself, the eID cards as tokens, the authentication processes as well as the procedures for distribution and personalisation, the support provided for installing the technology and any provider-related regulation. The section “A three-fold path dependency”, according to the conceptual framework presented in the introductory chapter to this special issue, compares the new electronic systems with the previous ones in each country, in order to assess the continuation or changes with regard to the organisational, technological and regulatory path of development. The following sections explain the differences between the paths chosen and the path-related changes by analysing the actor constellation of the institutional actors, in particular the policy field and the power structure, as well as the context in which the policy makers made their choices, looking at privacy and “Staatsverständnis” in particular. Finally the diffusion and usage of the eID function will be compared and analysed, discussing to what extent the new institution has made a contribution to solving the policy problem it was developed for, e.g. providing a stronger authentication in order to meet security concerns regarding e-government and e-commerce transactions and avoiding new privacy infringements. Using grounded theory, the explanations provided have the status of generalisations derived from the four cases. They have to be considered as hypotheses, which will be checked for other countries in the following papers of this special issue. The comparison of the four cases in this article shows a high degree of path dependency. Most of the differences between the new systems are just a continuation of differences between the previous systems although they are to solve the same problem and can draw on the same technologies. But most astonishing is the finding that these differences between the systems do not influence diffusion and use of the eID function in the respective countries.
This article provides a critical view on the development and deployment phase of the e-ID in Belgium since 1999. It is based on extensive desk research and fifteen in depth-interviews with experts and stakeholders from government, administration, academia and industry who have been key in the development of the e-ID. The article identifies different elements that influenced, both in a positive and negative way, the societal, technical and political aspects of the Belgian e-ID. It shows that no severe problems occurred during the initial deployment phase, which came to an end in 2009 providing over eight million Belgian citizens with an e-ID. The pre-existence of a National Register and the preliminary experiences with the exchange of digital information between administrative entities in the field of Social Security enabled and facilitated the development and the distribution of the e-ID. However, the research also reveals that usage of the e-ID by citizens and uptake of e-ID based services by administration and business remains limited due to multiple factors. The complex system of state structures in Belgium and as a consequence the dispersion of competences across different governmental entities makes that no unified approach to e-government and e-ID based services has been developed. From the industries’ point of view the privacy framework and the strictly regulated use of the National Registration Number provides no clear view on the allowed use of data accessible through the e-ID hampering take up in this area.
In view of rapid and dramatic technological change, it is important to take the special requirements of privacy protection into account early on, because new technological systems often contain hidden dangers which are very difficult to overcome after the basic design has been worked out. So it makes all the more sense to identify and examine possible data protection problems when designing new technology and to incorporate privacy protection into the overall design, instead of having to come up with laborious and time-consuming “patches” later on. This approach is known as “Privacy by Design” (PbD).
Positive-sumIn November, 2009, a prominent group of privacy professionals, business leaders, information technology specialists, and academics gathered in Madrid to discuss how the next set of threats to privacy could best be addressed.The event, Privacy by Design: The Definitive Workshop, was co-hosted by my office and that of the Israeli Law, Information and Technology Authority.It marked the latest step in a journey that I began in the 1990's, when I first focused on enlisting the support of technologies that could enhance privacy.Back then, privacy protection relied primarily upon legislation and regulatory frameworks-in an effort to offer remedies for data breaches, after they had occurred.As information technology became increasingly interconnected and the volume of personal information collected began to explode, it became clear that a new way of thinking about privacy was needed.Privacy-Enhancing Technologies (PETs) paved the way for that new direction, highlighting how the universal principles of fair information practices could be reflected in information and communication technologies to achieve strong privacy protection.While the idea seemed radical at the time, 1 it has been very gratifying over the past 15 years to see it come into widespread usage as part of the vocabulary of both privacy and information technology professionals.But the privacy landscape continues to evolve.So, like the technologies that shape and reshape the world in which we live, the privacy conversation must
This paper reviews the history and current status of electronic identities (eID) and eID management in Sweden, including an outlook for the future. The paper is based on official policy documents, technical documentation, presentations by key experts, and comments from government agencies and independent experts. The future perspective is based on the October 2009 public investigation (SOU 2009:86) by the E-delegation. It is concluded that the E-delegation proposal, while still pending political decision, is a major step forward in terms of making eID more established as an infrastructural element in the government electronic service program.
The convergence of biomedical and information technology holds the potential to alter the discourses of identity, or as is argued here, to turn us inside out. The advent of digital networks makes it possible to ‘see inside’ people in ways not anticipated and thus create new performance arenas for the expression of identity. Drawing on the ideas of Butler and Foucault and theories of performativity, this paper examines a new context for human-computer interaction and articulates potentially disturbing issues with monitoring health rather than wellbeing. It argues that by adopting explicitly social framings we can see beyond the idea of medical interventions for health to recognize the political implications of the new categorizations and their implementation in code. In the process, it critiques traditional ways of understanding machine-body relations within the field of technology design.
A first comparison of the innovation processes of introducing electronic identities on a national level in Austria, Belgium, Germany and Spain, based on extensive expert interviews with key actors, has been amended by four more country reports from Denmark, Finland, Estonia and Sweden in order to check the validity of generalisations derived from the first four cases. The extended comparison with the four additional countries increases the variance between the eID systems in Europe by showing differing technical and organisational features, such as purely software-based solutions, e.g. in Denmark, or complete outsourcing of the eIDMs, e.g. in Sweden. In the second part of the paper, the conceptual framework of the comparative study, a combination of path analysis, institutional actor theory and policy field analysis will be reflected. It has resulted in a fruitful approach allowing for the explanation of some, but by no means all, of the differences between the national eIDMs in Europe.
In this article, I argue that lawmakers must abandon their previous reluctance to engage with questions of personal identity (PI). While frequently seen as an esoteric subject, of limited interest outside of academic philosophy departments, I attempt to show that, in fact, assumptions about PI--and its durability in the face of certain psychological or genetic changes--underpin many current legal rules. This is most perhaps obviously exemplified with regard to reproductive technologies. Yet the Parfitian challenge to identify a victim of `bad' reproductive choices has been largely overlooked in framing legislative responses to such technologies. Furthermore, I argue, it is not only with regard to emerging technologies that questionable assumptions about PI play a role; legal responses to questions about the attribution of criminal responsibility, and about the treatment of demented or brain-injured people, necessitate a frank engagement with such questions. It may be, however, that a multi-faceted approach to PI, which takes account of genetic, psychological and social factors--will prove a better fit for the myriad needs of the legal system than any sort of `unified theory of identity'.
“Privacy as confidentiality” has been the dominant paradigm in computer science privacy research. Privacy Enhancing Technologies (PETs) that guarantee confidentiality of personal data or anonymous communication have resulted from such research. The objective of this paper is to show that such PETs are indispensable but are short of being the privacy solutions they sometimes claim to be given current day circumstances. Using perspectives from surveillance studies we will argue that the computer scientists’ conception of privacy through data or communication confidentiality is techno-centric and displaces end-user perspectives and needs in surveillance societies. We will further show that the perspectives from surveillance studies also demand a critical review for their human-centric conception of information systems. Last, we rethink the position of PETs in a surveillance society and argue for the necessity of multiple paradigms for addressing privacy concerns in information systems design.
The amount of personal data now collected through contemporary marketing practices is indicative of the shifting landscape of contemporary capitalism. Loyalty programs can be seen as one exemplar of this, using the `add-ons' of `points' and `miles' to entice consumers into divulging a range of personal information. These consumers are subject to surveillance practices that have digitally identified them as significant in the eyes of a corporation, yet they are also part of a feedback loop subject to ongoing analysis. This paper focuses on this analysis as the `cultural circuit' of loyalty programs--the ongoing process of meaning-making in this form of contemporary marketing--as exemplary of what Nigel Thrift calls "soft capitalism"(1997, 2005). Loyalty programs engage consumers in an ongoing `relationship' with a corporation, yet it is one predicated on the collection and analysis of personal data in order to identify, maintain and increase profits from these consumer `relationships.' This paper looks at ways of knowing, application and revision in the cultural circuit of loyalty program marketing as a form of reflexive marketing and raises concerns about consumer subjectivity in the context consumer culture that mediates much of contemporary experience. These technologies and practices continually adapt and adjust to strategically act toward consumers as a form of consumer surveillance based on an increasingly intensive and nuanced knowledge of their behaviours.
The article argues for a shift of perspective in identity management (IDM) research and development. Accessibility and usability issues affect identity management to such an extent that they demand a reframing and reformulation of basic designs and requirements of modern identity management systems. The rationale for the traditional design of identity management systems and mechanisms has been security concerns as defined in the field of security engineering. By default the highest security level has been recommended and implemented, often without taking end-user needs and accessibility issues into serious consideration. The article provides a conceptual framework for inclusive IDM, a brief overview of the regulatory status of inclusive IDM and a taxonomy of inclusive identity management methods. Several widespread IDM approaches, methods and techniques are analyzed and discussed from the perspective of inclusive design. Several important challenges are identified and some ideas for solutions addressing the challenges are proposed and discussed.
Identity governance is an emerging concept for fine-grained conditional disclosure of identity information and enforcement of corresponding data handling policies. Although numerous technologies underlying identity management have been developed, people still have difficulty obtaining a clear picture of how their identity information is maintained, used, and propagated. An identity management framework is described for tracking the history of how a person’s identity information is handled after it is transferred across domains of control and for enforcing meta-policies related to managing identity information distributed over the Internet. With this framework, organizations that manage identity information can improve accountability for their data practices and thereby increase their trustworthiness. The framework also enables users to control and optimize the propagation of their identity information in a user-centric manner.
During the last few years a large number of companies have emerged offering DNA testing via the Internet “direct-to-consumer”. In this paper, I analyse the rhetoric appeal to personal identity put forward on the websites of some of these consumer genomics companies. The investigation is limited to non-health-related DNA testing and focuses on individualistic and communitarian—in a descriptive sense—visions of identity. The individualistic visions stress that each individual is unique and suggest that this uniqueness can be supported by, for example, DNA fingerprinting. The communitarian visions emphasise that individuals are members of communities, in this case genetic communities. It is suggested that these visions can be supported by, for example, various types of tests for genetic ancestry tracing. The main part of the paper is devoted to an analysis of these communitarian visions of identity and the DNA tests they refer to.
IDIS is a multidisciplinary journal with a focus on identity in the information society. The information society is usually associated with information and communication technologies, such as computers, mobile phones and the Internet, and with information in the form of computeror human-readable data. In this special issue on genetics, information and identity, however, we focus on a different type of information, namely genetic information. The DNA of the human genome is often called a ‘blueprint’ of human life, containing information that regulates—in various and very complex ways—most of the processes in human life. In this sense, genetics may well be considered an information technology in its own right. Genetic information is becoming ever more important in society, although current knowledge of the human genome and how the genome relates to human life is still limited. Nevertheless, what knowledge we have about the genetic make-up of people— whether in terms of congenital diseases or medical conditions, or in terms of propensities to develop certain physical or behavioural characteristics—is increasingly being used, by data subjects or others, to make decisions that have more or less serious consequences. Examples can be found, inter alia, in the areas of reproductive technologies (pre-implantation genetic diagnosis and embryo selection, prenatal IDIS (2010) 3:415–421 DOI 10.1007/s12394-010-0076-5
This paper explores the intersections between national identity and the production of medical/population genomics in Mexico. The ongoing efforts to construct a Haplotype Map of Mexican genetic diversity offers a unique opportunity to illustrate and analyze the exchange between the historic-political narratives of nationalism, and the material culture of genomic science. Haplotypes are central actants in the search for medically significant SNP’s (single nucleotide polymorphisms), as well as powerful entities involved in the delimitation of ancestry, temporality and variability (www.hapmap.org). By following the circulation of Haplotypes, light is shed on the alignments and discordances between socio-historical and bio-molecular mappings. The analysis is centred on the comparison between the genomic construction of time and ethnicity in the laboratory (through participant observation), and on the public mobilisation of a “Mexican Genome” and its wider political implications. Even though both: the scientific practice and the public discourse on medical/population genomics are traversed by notions of “admixture”, there are important distinctions to be made. In the public realm, the nationalist post-revolutionary ideas of Jose Vasconcelos, as expressed in his Cosmic Race (1925), still hold sway in the social imaginary. In contrast, admixture is treated as a complex, relative and probabilistic notion in laboratory practices. I argue that the relation between medical/population genomics and national identity is better understood as a process of re-articulation (Fullwiley Social Studies of Science 38:695, 2008), rather than coproduction (Reardon 2005) of social and natural orders. The evolving process of re-articulation conceals the novelty of medical/population genomics, aligning scientific facts in order to fit the temporal and ethnic grids of “Mestizaje”. But it is precisely the social and political work, that matches the emerging field of population genomics to the pre-existing projects of national identity, what is most revealing in order to understand the multiple and even subtle ways in which population genomics challenges the historical and identitarian frames of a “Mestizo” nation.
The individual management of online identity, as part of a wider politics of personal information, privacy, and dataveillance, is an area where public policy is developing and where the public sector attempts to intervene. This paper attempts to understand the strategies and methods through which the UK government and public sector is engaging in online identity management. The analysis is framed by the analytics of government (Dean 2010) and governmentality (Miller and Rose 2008). This approach draws attention to the wide assemblage of public and private actors with shared regimes of practice and fields of visibility, as well as to the extent to which individual actors are made responsible for their own identity management. The paper also uses communication and discursive research to examine the potential failings of engagement efforts. Communication theory suggested that the assumption of individual responsibility, alongside linguistic distortions created by this way of understanding the problematic of identity management, complicate and fundamentally limit engagement activity.
This paper presents a framework for the design of human-centric identity management systems. Whilst many identity systems over the past few years have been labelled as human-centred, we argue that the term has been appropriated by technologists to claim moral superiority of their products, and by system owners who confuse administrative convenience with benefits for users. The framework for human-centred identity presented here identifies a set of design properties that can impact the lived experience of the individuals whose identity is being managed. These properties were identified through an analysis of public response to 15 historic national identity systems. They capture the practical design aspects of an identity system, from structural aspects that affect the flow of information - Control Points, Subject Engagement, Identity Exposure, Population Coverage—to the metrical aspects that considers how information is used and perceived—Expert Interpretation, Population Comprehension, Information Accuracy, Information Stability, Subject Coupling, Information Polymorphism. Any identity system can be described in terms of these fundamental properties, which affect individuals’ lived experience, and therefore help to determine the acceptance or rejection of such systems. We first apply each individual property within the context of two national identity systems—the UK DNA Database and the Austrian Citizen Card, and then also demonstrate the applicability of the framework within the contexts of two non-government identity platforms—Facebook and Phorm. Practitioners and researchers would make use of this framework by analysing an identity system in terms of the various properties, and the interactions between these properties within the context of use, thus allowing for the development of the potential impacts that the system has on the lived experience.
Genetic information is becoming increasingly used in modern life, extending beyond medicine to familial history, forensics and more. Following this expansion of use, the effect of genetic information on people’s identity and ultimately people’s quality of life is being explored in a host of different disciplines. While a multidisciplinary approach is commendable and necessary, there is the potential for the multidisciplinarity to produce conceptual misconnection. That is, while experts in one field may understand their use of a term like ‘gene’, ‘identity’ or ‘information’ for experts in another field, the same term may link to a distinctly different concept. These conceptual misconnections not only increase inefficiency in complex organisational practices, but can also have important ethical, legal and social consequences. This paper comes at the problem of conceptual misconnection by clarifying different uses of the terms ‘gene’, ‘identity’ and ‘information’. I start by looking at three different conceptions of the gene; the Instrumental, the Nominal and the Postgenomic Molecular. Secondly, a taxonomy of four different concepts of identity is presented; Numeric, Character, Group and Essentialised, and their use is clarified. A general concept of Information is introduced, and finally three distinct kinds of information are described. I then introduce Concept Creep as an ethical problem that arises from conceptual misconnections. The primary goal of this paper is to reduce the potential for conceptual misconnection when discussing genetic identity and genetic information. This is complimented by three secondary goals—1) to clarify what a conceptual misconnection is, 2) to explain why clarity of use is particularly important to discussions of genes, identity and information and 3) to show how concept creep between different uses of genetic identity and genetic information can have important ethical outcomes.
Much legislation dealing with the uses of genetic information could be criticised for exceptionalising genetic information over other types of information personal to the individual. This paper contends that genetic exceptionalism clouds the issues, and precludes any real debate about the appropriate uses of genetic information. An alternative to “genetically exceptionalist” legislation is to “legislate for fairness”. This paper explores the “legislating for fairness” approach, and concludes that it demonstrates a fundamental misunderstanding of both how legislation is drafted, and how it is interpreted. The uncomfortable conclusion is this: policy-makers and legislators must tackle head-on the difficult policy questions concerning what should and should not be done with genetic information. Only by confronting this crucial issue will they achieve a workable legislative solution to the problems caused by genetic information.
The number of large research projects in the fields of identity, privacy and related topics has burgeoned in recent years.This is a development of great importance to academic scholarship but also to a wider range of audiences and 'users', including policy-makers and regulators, the information and communication technology industries, and the general public.New issues have been spotlighted as we move into what some call 'surveillance societies', along with a clearer sense of the problems created, and the advantages afforded, by the ability of governments and businesses to identify people and groups, monitor and track their behaviour ad movements, provide them with services at home, in the workplace, online, and in the streets, and enable them to engage in important transactions involving flows of information as well as money.New ways of mitigating adverse effects and enhancing the benefits have been explored, although we are only near the beginning of thinking through and acting on these issues, problems, and solutions.The 5-year FIDIS programme, of which this edited volume is the published product, is one of the most extensive of these research endeavours, and is amongst the most fruitful.The cast of individual and institutional characters, and the separate but linked 'deliverable' studies that have been involved, take some 75 pages to be described in this book: more than 61 studies, 43 researchers, and 24 organisations in 31 countries have been involved.This book is a magisterial condensation and integration of this multidisciplinary work, providing something of a long-lasting handbook and an anchor in this rapidly changing field.There are an Introduction and nine further chapters, as well as an Appendix that proposes a user-centric identity metasystem, and eight 'vignettes'short futuristic scenarios involving the fictitious characters Frank and (the unfortunately-named-to British readers-Fanny) as they go through their everyday lives in a technologically saturated world.The chapters are each based on a number of 'deliverables' whose authors are fully acknowledged, and there are extensive references.Some chapters are better integrated than others, but all are at