Skip to main content Accessibility help
×
Hostname: page-component-76fb5796d-vvkck Total loading time: 0 Render date: 2024-04-26T12:56:04.169Z Has data issue: false hasContentIssue false

Chapter 1 - Introduction

from PART IV - USE CASES

Published online by Cambridge University Press:  26 June 2019

Get access

Summary

“A functional theory does not necessarily translate into a successful practice”.

Jonathan Zittrain

716. PREFACE – For more than 20 years, the controller-processor model has provided the analytical template for the allocation of responsibility and liability among actors involved in the processing of personal data. While the model itself appears conceptually sound, its application in practice has not always been straightforward. The research objective of this Part of the book is to identify the main issues that surround the practical application of the controller-processor model. To this end, a number of real-life use cases will be examined.

717. SELECTION CRITERIA – Needless to say, it is impossible to document and analyse every possible use case. A selection needs to be made. In social science research, case selection is generally driven by two objectives, namely (1) representativeness (i.e. ensuring that the selected cases are sufficiently representative in light of the research question) and (2) variety (i.e. ensuring useful variation on the dimensions of theoretical interest). A third, sometimes implicit, objective is relevancy (i.e. ensuring that the selected use cases are likely to yield insights which can assist in answering the research question).

718. RELEVANCY – As the research objective of this Part of the book is to document the issues that arise when applying the controller-processor model in practice, the pool of potentially relevant use cases is limited to instances in which such issues occur. In the first phase of selection, a preliminary literature study was undertaken to identify eligible use cases. The threshold for eligibility was the existence of some indication, either in regulatory guidance or doctrine, that the use case in question challenges either the application of the controller and processor concepts or the associated allocation of responsibility and liability. Each of the retained use cases has been cited by scholars and/or regulators as instances where the application of the controller-processor concepts can be challenging, or where the effective allocation of responsibilities and liability may be undermined.

719. VARIETY – Once the initial screening for relevancy was completed, a further selection was made with the aim of ensuring a sufficient degree of variety. In practice, the control capabilities of actors involved in the processing of personal data are shaped by the social context in which they operate (e.g. public sector, business-to-business, business-to-consumer, consumer-to-consumer).

Type
Chapter

Access options

Get access to the full version of this content by using one of the access options below. (Log in options will check for institutional or personal access. Content may require purchase if you do not have access.)

Save book to Kindle

To save this book to your Kindle, first ensure coreplatform@cambridge.org is added to your Approved Personal Document E-mail List under your Personal Document Settings on the Manage Your Content and Devices page of your Amazon account. Then enter the ‘name’ part of your Kindle email address below. Find out more about saving to your Kindle.

Note you can select to save to either the @free.kindle.com or @kindle.com variations. ‘@free.kindle.com’ emails are free but can only be saved to your device when it is connected to wi-fi. ‘@kindle.com’ emails can be delivered even when you are not connected to wi-fi, but note that service fees apply.

Find out more about the Kindle Personal Document Service.

  • Introduction
  • Brendan Van Alsenoy
  • Book: Data Protection Law in the EU: Roles, Responsibilities and Liability
  • Online publication: 26 June 2019
  • Chapter DOI: https://doi.org/10.1017/9781780688459.023
Available formats
×

Save book to Dropbox

To save content items to your account, please confirm that you agree to abide by our usage policies. If this is the first time you use this feature, you will be asked to authorise Cambridge Core to connect with your account. Find out more about saving content to Dropbox.

  • Introduction
  • Brendan Van Alsenoy
  • Book: Data Protection Law in the EU: Roles, Responsibilities and Liability
  • Online publication: 26 June 2019
  • Chapter DOI: https://doi.org/10.1017/9781780688459.023
Available formats
×

Save book to Google Drive

To save content items to your account, please confirm that you agree to abide by our usage policies. If this is the first time you use this feature, you will be asked to authorise Cambridge Core to connect with your account. Find out more about saving content to Google Drive.

  • Introduction
  • Brendan Van Alsenoy
  • Book: Data Protection Law in the EU: Roles, Responsibilities and Liability
  • Online publication: 26 June 2019
  • Chapter DOI: https://doi.org/10.1017/9781780688459.023
Available formats
×