scieee Science in your language
[en] (orig)

Cheat Sheet on Personal Data Management: Data Masking

Author: Research Data Management Network
Publisher: Zenodo
DOI: 10.5281/zenodo.17287596
Source: https://zenodo.org/records/17287596/files/PUBL_Cheatsheet10-Personal-Data-Masking-PDFA_20251007_pub.pdf
Resea ch Da a Managemen
Ne wo k
Pe sonal Da a Managemen
Da a Masking
In esea ch, pe sonal da a ha e o be anonymized o pseudonymized as
soon as he p ocessing pu pose pe mi s. Pe sonal da a may only be p o-
cessed wi h he in o med consen o he pe son conce ned. This guide
explains he basic e ms.
De i ni ions
Pseudonymiza ion e e s o he emo al o pe sonal e e ences, whe eby a mapping key
(i.e., a able ha ansla es pseudonym, e.g. s udy iden i i e (ID), o pe son) is e ained o he
e-pe sonaliza ion o he in o ma ion. I da a is pseudonymized, he condi ions unde which a
pe son may be iden i i ed and how he mapping key is s o ed mus be egula ed (key manage-
men ). Unlike anonymized da a, pseudonymized da a emain pe sonal da a.
Anonymiza ion means ha he e e ence o a pe son is i e e sibly (= de i ni i ely) emo ed in
such a way ha i is no longe possible o iden i y he indi idual wi hou disp opo iona e e o .
Anonymized da a a e no longe ega ded as pe sonal da a.
Enc yp ion is a me hod o p o ec ing da a om unau ho ized access. I means ha a plain ex
is con e ed (encoded) in o a non-in e p e able cha ac e s ing (ciphe ex ) by means o an en-
c yp ion p ocedu e. One o mo e keys (= codes) a e used as c ucial pa ame e s o enc yp ion.
Secu e enc yp ion makes i p ac ically impossible o e ie e he plain ex wi hou he app o-
p ia e key. Howe e , secu e enc yp ion mus be done co ec ly. When in doub , con ac you IT.
Use ul da a anonymiza ion ools
• ARX
• A gus
• scdMic o
• QualiAnon
Resea ch Da a Managemen
Ne wo k
h ps:// esea chda a.unibas.ch • This wo k is licensed unde CC-BY 4.0. • esea chda [email protected]
Illus a ion by FDM@S udium.NRW, modi i ed
Resea ch Da a Managemen
Ne wo k
Resea ch Da a Managemen
Ne wo k
h ps:// esea chda a.unibas.ch • This wo k is licensed unde CC-BY 4.0. • esea chda [email protected]
Illus a ion by FDM@S udium.NRW, modi i ed
Da a Masking Example
Collec ed da a
The o iginal da a con ains pe sonal da a (in his case: name, da e o bi h, disease and
ea men ) and is assigned a s udy ID.
Pseudonymized da a
Pseudonymized da a e e o da ase s in which di ec iden i i e s (in his case: name and
da e o bi h) a e eplaced wi h a unique pseudonym (ID). The mapping key – equi ed
o e-iden i y he da a subjec – is s o ed sepa a ely om he esea ch da ase . While
pseudonymiza ion educes he isk o di ec iden i i ca ion, e-iden i i ca ion emains
possible i he mapping key is accessed and linked o he pseudonymized da a.
Anonymized da a
The mapping key is dele ed, which means ha i is no longe possible o link he ID
in he esea ch able o he pe sonal da a o iginally associa ed wi h ha ID.
Enc yp ed da a
Enc yp ed da a ha e been con e ed om i s o iginal, eadable o m in o an un eadable,
encoded o ma h ough c yp og aphic algo i hms. Access o he o iginal in o ma ion is
es ic ed o au ho ized pa ies in possession o he app op ia e dec yp ion key.
ID Name Da e o bi h Disease T ea men
DS001 Alan Smi h 01.06.2001 Appendici is Ope a ion
ID Name Da e o bi h Disease T ea men
DS001 Alan Smi h 01.06.2001
ID Name Da e o bi h Disease T ea men
DS001 Appendici is Ope a ion
Mapping Key
ID Name Da e o bi h Disease T ea men
DS001 Appendici is Ope a ion
ID Name Da e o bi h Disease T ea men
ZTUVqwEAb
U +M0 KeQX
zQVjnI3VMM
JTdpgB9eIM
bzs
xu05js8QC n
9 0 I j 1 u a l S z U y
b 8uME DT+
KSX JY24
lY V yocsRqT
l6QANxq Dc
jxx RHSWEG
jQY54ddS zE
TOP2AMUh
/Fgs2XhoCY
2Z 30qaKP
wZ/4A7 1Fp
LcRBng
P7Hz796XwSk
PXeQ G 2PG
cR8XUmG/lC0
kSk 6n/bnlc