Data Analytics For Managers (Digital Pill)
Introduction
Welcome to the managerial call about data analytics for managers.
Today's focus: Data Ethics.
Importance of Data Ethics
Data collection is crucial at every digital touchpoint, which includes various digital technologies.
Every digital technology serves as a data collection point that presents risks related to misuse of sensitive data for individuals, communities, and identities.
Current perspective: "Data is the new oil," emphasizing the value of personal data and digital identities for positive and negative purposes.
Data Collection and Ethical Considerations
Data analytics aim to enhance customer value and tailor services/products by collecting customer data.
Sharing sensitive health data exposes personal identity and raises ethical concerns.
Attack Surface
Definition of Attack Surface:
Any touchpoint where data can be collected, presenting an opportunity for potential attacks or data breaches.
Traditional attack surfaces include:
Hardware devices
Software applications
Emerging attack surfaces:
IoT sensors (e.g., Amazon Alexa, webcams, autonomous cars, smart fridges)
These devices can collect personal data without consent.
Case Studies on Data Misuse
BetterHelp Case:
A platform offering mental health support during the pandemic.
Misused sensitive data by sharing with social media companies without consent.
Resulted in loss of trust among users.
23andMe Case:
Company focused on genetic analysis, inviting customers to share genetic material.
Suffered a data breach, exposing sensitive genetic data.
Unique concern: Unlike passwords, DNA cannot be changed, leading to irreversible consequences.
Emerging Concerns in Data Collection
Current focus on brain technologies as the next frontier for data collection.
Devices can read EEG brain waves, raising ethical questions about privacy and data use.
Importance of establishing ethical limits for data collection and use.
Consumer Trust and Data Collection
Statistics reveal 92% of consumers are cautious about app data collection due to potential misuse.
Trust varies across sectors:
Highest in healthcare due to sensitivity of shared data.
Lowest in social media, linked to past data misuse scandals.
Regulatory Environment
Fragmentation in data collection and processing regulations by geographical markets.
Compliance pipelines must be tailored to different regulations, impacting market competitiveness.
Potential downsides of highly regulated or unregulated markets for business growth.
General Principles of Data Protection
Transparent processing of data (clarity on data usage).
Purpose limitation (establish a clear purpose for data collection).
Data minimization (collect only necessary data).
Analogy: Using only the amount of water needed during a shower.
Data accuracy (aim for error-free data to prevent misinterpretations).
Data retention policies (establish how long data is kept).
Data security (ensure confidentiality and resistance to breaches).
Legal Context
European Union: GDPR is a framework that ensures data protection with enforcement of individual rights:
Right to consent.
Right to request data deletion.
Right to transparency about data usage.
Regulations vary significantly across regions (EU, USA, China).
Market laws apply to data collection practices based on citizen protection.
Concept of Data Ethics
Data technology is generally neutral, but potential misuse can have serious consequences.
Real people are behind the data, each with their own lives and vulnerabilities.
Concerns over data impacting personal autonomy, illustrated through the example of insurers accessing cognitive condition data.
Data ethics include:
Transparency.
Establishing criteria for data quality for better decision-making.
Data Ethics Framework
Introducing a data ethics canvas, akin to a business model canvas:
A tool to assess technology-related challenges and ethical considerations in data analytics.
Importance of identifying questions regarding data challenges at the start of evaluation.
Data Security Challenges
Ensuring data confidentiality and integrity, especially during data transfers (e.g., in healthcare).
Adoption of zero-trust strategies in data access and identity verification.
Conclusions
Data can empower individuals or contribute to societal issues like inequality and division.
Importance of regulation as a navigational tool in complex data environments (e.g., the AA Act).
The need for a skilled team capable of asking the right ethical questions regarding data utilization.