Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Restructure pages on Human data and GDPR compliance #1264

Merged
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
22 commits
Select commit Hold shift + click to select a range
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 6 additions & 4 deletions _data/sidebars/data_management.yml
Original file line number Diff line number Diff line change
Expand Up @@ -74,8 +74,10 @@ subitems:
url: /data_management_plan
- title: Data organisation
url: /data_organisation
- title: Data protection
url: /data_protection
- title: Data security
url: /data_security
vildead marked this conversation as resolved.
Show resolved Hide resolved
- title: Data sensitivity
url: /data_sensitivity
- title: Data provenance
url: /data_provenance
- title: Data publication
Expand All @@ -90,14 +92,14 @@ subitems:
url: /metadata_management
- title: Existing data
url: /existing_data
- title: GDPR compliance
url: /gdpr_compliance
- title: Identifiers
url: /identifiers
- title: Licensing
url: /licensing
- title: Machine actionability
url: /machine_actionability
- title: Data sensitivity
url: /sensitive_data
- title: Tool assembly
description: Find concrete combinations of tools and resources assembled into an ecosystem for research data management.
url: /tool_assembly
Expand Down
2 changes: 1 addition & 1 deletion pages/data_life_cycle/planning.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,7 +4,7 @@ page_id: plan
description: Introduction to data management planning.
contributors: [Siiri Fuchs, Korbinian Bösl, Minna Ahokas, Federico Bianchini, Flora D'Anna]
related_pages:
your_tasks: [compliance, costs, dmp, data_protection, dm_coordination, machine_actionability]
your_tasks: [compliance, costs, dmp, data_security, dm_coordination, machine_actionability]
training:
- name: Training in TeSS
registry: TeSS
Expand Down
2 changes: 1 addition & 1 deletion pages/data_life_cycle/preserving.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,7 +4,7 @@ page_id: preserve
description: Introduction to data preservation.
contributors: [Siiri Fuchs, Korbinian Bösl, Anastasia Chasapi, Flora D'Anna]
related_pages:
your_tasks: [data_organisation, data_protection, data_publication, metadata, storage, identifiers, licensing]
your_tasks: [data_organisation, data_security, data_publication, metadata, storage, identifiers, licensing]
training:
- name: Training in TeSS
registry: TeSS
Expand Down
2 changes: 1 addition & 1 deletion pages/data_life_cycle/sharing.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,7 +4,7 @@ page_id: share
description: Introduction to data sharing.
contributors: [Flora D'Anna, Bert Droesbeke, Niclas Jareborg, Ulrike Wittig]
related_pages:
your_tasks: [data_protection, data_brokering, data_publication, transfer, identifiers, licensing, metadata, sensitive]
your_tasks: [gdpr_compliance, data_security, data_brokering, data_publication, transfer, identifiers, licensing, metadata, sensitive]
training:
- name: Training in TeSS
registry: TeSS
Expand Down
2 changes: 1 addition & 1 deletion pages/national_resources/no_resources.md
Original file line number Diff line number Diff line change
Expand Up @@ -132,7 +132,7 @@ national_resources:
how_to_access: Through Feide, only if you are based at the UiB
related_pages:
your_domain: [human_data]
your_tasks: [data_protection, sensitive]
your_tasks: [data_security, gdpr_compliance, sensitive]
your_role: [policy_maker, data_steward]
url: https://rette.app.uib.no/
- name: DataverseNO
Expand Down
4 changes: 2 additions & 2 deletions pages/tool_assembly/csc_assembly.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,7 @@ description: The Center of Science (CSC) provides high-quality ICT expert servic
page_id: csc
affiliations: [FI, CSC, ELIXIR Europe]
related_pages:
your_tasks: [sensitive, dmp, data_protection, storage, data_publication, data_transfer, data_analysis]
your_tasks: [sensitive, dmp, data_security, gdpr_compliance, storage, data_publication, data_transfer, data_analysis]
your_domain: [human_data]
training:
- name: Training in TeSS
Expand Down Expand Up @@ -54,7 +54,7 @@ When you start [collecting](collecting) data and need a storing environment wher


### Data processing and analysis
For [processing](processing), [analysing](analysing) and [storing data](storage) during the research project, CSC offers several [computing platforms](https://research.csc.fi/computing). These include both environments for non-sensitive and [sensitive data](sensitive_data). Depending on your needs, you can choose from a wide variety of computing resources: use [Chipster](https://chipster.csc.fi/) software for high-throughput data such as RNA-seq and single cell RNA-seq, build your own custom virtual machine, or utilise the full power of our world-class supercomputers.
For [processing](processing), [analysing](analysing) and [storing data](storage) during the research project, CSC offers several [computing platforms](https://research.csc.fi/computing). These include both environments for non-sensitive and [sensitive data](data_sensitivity). Depending on your needs, you can choose from a wide variety of computing resources: use [Chipster](https://chipster.csc.fi/) software for high-throughput data such as RNA-seq and single cell RNA-seq, build your own custom virtual machine, or utilise the full power of our world-class supercomputers.

Supercomputers Puhti and Mahti can be used for larger scale analysis and simulations. They will soon be accompanied with the world-class supercomputer {% tool "lumi" %}. Pouta and Rahti cloud computing services offer more flexibility, allowing the user to manage the infrastructure. CSC's computers have a wide range of [preinstalled scientific software and databases](https://research.csc.fi/bioscience-programs) with usage instructions.

Expand Down
2 changes: 1 addition & 1 deletion pages/tool_assembly/omero_assembly.md
Original file line number Diff line number Diff line change
Expand Up @@ -39,7 +39,7 @@ Recommendations and software tools are being developed to capture acquisition me

## Who is OMERO intended for?

OMERO is designed to be an institutional repository. It offers a secure central way for scientists, researchers and data stewards to handle their imaging data. All the image data from a facility can be securely stored and managed, using group permissions and user roles to allow controlled access tailored to your institution. From private repositories for [sensitive data](sensitive_data) to hosting public data for your website and latest publications, the permissions model is designed to meet the range of researchers’ needs. OMERO is tried and tested in hundreds of institutions world-wide, with extensive installation and configuration documentation for system administrators and community support via dedicated mailing lists and forums.
OMERO is designed to be an institutional repository. It offers a secure central way for scientists, researchers and data stewards to handle their imaging data. All the image data from a facility can be securely stored and managed, using group permissions and user roles to allow controlled access tailored to your institution. From private repositories for [sensitive data](data_sensitivity) to hosting public data for your website and latest publications, the permissions model is designed to meet the range of researchers’ needs. OMERO is tried and tested in hundreds of institutions world-wide, with extensive installation and configuration documentation for system administrators and community support via dedicated mailing lists and forums.

The OMERO platform uses a Group/User permission system. ​​The degree to which their data is available to other members of the group depends on the permissions settings for that group. Whenever a user logs on to an OMERO server, they are connected under one of their groups. All data they import and any work that is done is assigned to the current group, however the user can move their data into another group. Users require login credentials to access the system. OMERO also supports the use of an LDAP server.

Expand Down
2 changes: 1 addition & 1 deletion pages/tool_assembly/transmed_assembly.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,7 @@ description: TransMed tool assembly from ELIXIR Luxembourg supports projects in
page_id: transmed
affiliations: [ELIXIR Europe, LU]
related_pages:
your_tasks: [compliance, storage, metadata, data_organisation, data_analysis, sensitive, data_protection, dmp]
your_tasks: [compliance, storage, metadata, data_organisation, data_analysis, sensitive, gdpr_compliance, dmp]
your_domain: [human_data]
---

Expand Down
6 changes: 3 additions & 3 deletions pages/tool_assembly/tsd_assembly.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,7 +5,7 @@ description: The Sensitive Data Service (TSD) provides a platform to store, comp
page_id: tsd
affiliations: ["NO", ELIXIR Europe, University of Oslo]
related_pages:
your_tasks: [dmp, storage, sensitive, data_protection, transfer]
your_tasks: [dmp, storage, sensitive, data_security, gdpr_compliance, transfer]
your_domain: [human_data]
training:
- name: Documentation for the HPC cluster
Expand All @@ -18,7 +18,7 @@ training:

## What is the Norwegian tools assembly for sensitive data - TSD data management tools assembly?
The Norwegian ELIXIR tools assembly for sensitive data is centred around
[TSD - literally for: services for sensitive data](https://www.uio.no/english/services/it/research/sensitive-data/) is an infrastructure provided by [the University of Oslo (UiO)](https://www.uio.no). Together with the other complementary tools provided by ELIXIR, TSD can be used for the management of [sensitive data](sensitive_data), including handling of [Human data](human_data).
[TSD - literally for: services for sensitive data](https://www.uio.no/english/services/it/research/sensitive-data/) is an infrastructure provided by [the University of Oslo (UiO)](https://www.uio.no). Together with the other complementary tools provided by ELIXIR, TSD can be used for the management of [sensitive data](data_sensitivity), including handling of [Human data](human_data).
This assembly covers [Planning](planning), [Processing](processing), [Analysing](analysing) and [Sharing](sharing) Data Life Cycle stages and offer [Data Storage](storage) capacities and tools for [transfer](data_transfer) of sensitive data, following the requirements of the {% tool "eu-general-data-protection-regulation" %} and its Norwegian implementation.


Expand Down Expand Up @@ -52,7 +52,7 @@ You can access the [ELIXIR-NO instance of the Data Stewardship Wizard](https://e
If you use one of the Norwegian research infrastructures, such as the Norwegian sequencing infrastructure [NorSeq](https://www.norseq.org/) they can directly upload data to your TSD project for you - the process is described by ELIXIR Norway at [https://elixir.no/Services-bak/data_produced_NorSeq](https://elixir.no/Services-bak/data_produced_NorSeq)

The sensitive data tools assembly provides [Nettskjema](https://nettskjema.no) as a solution for designing and managing data collections using online forms and surveys. This is a secure and GDPR-compliant service. It can be accessed through the UiO's web pages and it is used through a web browser. Submissions from a Nettskjema questionnaire can be delivered securely (fully encrypted) to your project area within TSD.
TSD-users are granted access to Nettskjema through [IDporten or Feide](https://www.uio.no/tjenester/it/adm-app/nettskjema/mer-om/eksterne-brukere). When the Nettskjema form is complete, you can upload it on TSD following [these instructions](https://www.uio.no/tjenester/it/adm-app/nettskjema/hjelp/koble-skjema-til-tsd.html). After verification, the form can be used for collecting sensitive data. Note that further processing and analysis of the results should be conducted within TSD. If exporting data is necessary, the files should be properly [de-identified or anonymised](sensitive_data.html#how-can-you-de-identify-your-data).
TSD-users are granted access to Nettskjema through [IDporten or Feide](https://www.uio.no/tjenester/it/adm-app/nettskjema/mer-om/eksterne-brukere). When the Nettskjema form is complete, you can upload it on TSD following [these instructions](https://www.uio.no/tjenester/it/adm-app/nettskjema/hjelp/koble-skjema-til-tsd.html). After verification, the form can be used for collecting sensitive data. Note that further processing and analysis of the results should be conducted within TSD. If exporting data is necessary, the files should be properly [de-identified or anonymised](data_sensitivity.html#how-can-you-de-identify-your-data).

### Data Processing and Analysis

Expand Down
6 changes: 3 additions & 3 deletions pages/your_domain/human_data.md
Original file line number Diff line number Diff line change
Expand Up @@ -4,7 +4,7 @@ description: Data management solutions for human data.
contributors: [Niclas Jareborg, Nirupama Benis, Ana Portugal Melo, Pinar Alper, Laura Portell Silva, Wolmar Nyberg Åkerström, Nazeefa Fatima, Vilem Ded, Teresa D'Altri]
page_id: human_data
related_pages:
your_tasks: [sensitive]
your_tasks: [sensitive, gdpr_compliance]
tool_assembly: [tsd, covid-19, transmed]
training:
- name: Training in TeSS
Expand Down Expand Up @@ -57,8 +57,8 @@ When working with human data, you must follow established research ethical guide
* **Receiving data from a repository** also comes with certain use restrictions. These are either defined in the license attributed to the data or defined in a dataset specific **access policy** and **terms of service** of the repository.
* Personal data protection legislation:
* **Within the EU.** If you are performing human data research in the EU, or your data subjects are located in the EU, then you must adhere to the General Data Protection Regulation - GDPR.
* Requirements for research that fall under the GDPR are outlined in the [RDMkit Data protection page](data_protection).
* Attributes of the data determines data sensitivity and sensitivity affects the considerations for data handling. The [RDMkit Data Sensitivity page](sensitive_data) provides guidance on determining and reducing data sensitivity.
* Requirements for research that fall under the GDPR are outlined in the [RDMkit GDPR compliance page](gdpr_compliance).
* Attributes of the data determines data sensitivity and sensitivity affects the considerations for data handling. The [RDMkit Data Sensitivity page](data_sensitivity) provides guidance on determining and reducing data sensitivity.
* **Outside the EU.** For countries outside the EU, the {% tool "international-compilation-of-human-research-standards" %} list relevant legislations.


Expand Down
4 changes: 2 additions & 2 deletions pages/your_domain/human_pathogen_genomics.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@ related_pages:
- data_brokering
- metadata
- transfer
- data_protection
- data_security
- data_quality
tool_assembly:
- covid-19
Expand Down Expand Up @@ -51,7 +51,7 @@ While the object of interest in this domain are pathogens, the data is usually d
* [Processing and analysing human data](human_data#processing-and-analysing-human-data)

#### Isolate pathogen from host information
* Depending on the pathogen, how it interacts with the host, or the methods applied, it can be possible to generate clean isolates that do not contain host related material. Data produced from a clean isolate could potentially be handled with few restrictions, while other data will be considered to be personal and [sensitive](sensitive_data) that need [protection](data_protection).
* Depending on the pathogen, how it interacts with the host, or the methods applied, it can be possible to generate clean isolates that do not contain host related material. Data produced from a clean isolate could potentially be handled with few restrictions, while other data will be considered to be personal and [sensitive](data_sensitivity) that need [protection](data_security).

#### Public health initiatives
* National and international recommendations from public health authorities, epidemic surveillance programs and research data communities should be considered when planning a new study or surveillance programme. In particular, you could consult conventions for relevant surveillance programs while considering widely adopted guidelines for research documentation, and instructions from the data sharing platforms.
Expand Down
4 changes: 2 additions & 2 deletions pages/your_role/policy_maker.md
Original file line number Diff line number Diff line change
Expand Up @@ -31,8 +31,8 @@ In your role of policy maker, you may need to:

* The [Compliance page](compliance_monitoring) helps comply with the institution policy, including legal and ethical aspects.
* The [National resources pages](national_resources) point to country-specific information resources such as local funding agencies and research councils, and information on local policies for open science, national regulations on data ethics, and domain-specific infrastructures and tools.
* [Data protection](data_protection) helps to make research data compliant to GDPR.
* [Data sensitivity](sensitive_data) helps to identify sensitivity of different research data types.
* [Data protection](data_security) helps to make research data compliant to GDPR.
* [Data sensitivity](data_sensitivity) helps to identify sensitivity of different research data types.
* [Licensing](licensing) gives advice on how to assign a licence to research data.
* [Data management plan](data_management_plan) guides through writing a data management plan.
* [Project data management coordination](dm_coordination) gives support in coordination and organisation of RDM in collaborative projects.
Expand Down
2 changes: 1 addition & 1 deletion pages/your_role/principal_investigator.md
Original file line number Diff line number Diff line change
Expand Up @@ -33,7 +33,7 @@ In your role of PI, you may need to:
* To organise data management in collaborative projects, it will benefit from a formalised way of working via a [Data Management Working Group (DMWG)](dm_coordination).
* The [costs of data management page](costs_data_management) helps you budget for your project, including costs for data storage and preservation.
* The [national resources pages](national_resources) provide country-specific guidance, to help you choose the best services, tools and pipelines to manage your data.
* The [human data page](human_data#planning-for-projects-with-human-data) gathers information that needs to be taken into consideration when working with human data. Make sure to [protect the data](data_protection#how-do-you-ensure-that-your-data-is-handled-securely) in your project well and prevent unauthorised access.
* The [human data page](human_data#planning-for-projects-with-human-data) gathers information that needs to be taken into consideration when working with human data. Make sure to [protect the data](data_security#how-do-you-ensure-that-your-data-is-handled-securely) in your project well and prevent unauthorised access.
* Consider your [data storage needs](storage) in an early stage, including long-term storage at the project end.
* The [data organisation page](data_organisation) helps you with file naming, versioning and folder structures.
* [Data documentation](metadata_management), like README files and metadata, help secondary users to understand and reuse your data.
Expand Down
4 changes: 2 additions & 2 deletions pages/your_role/research_software_engineer.md
Original file line number Diff line number Diff line change
Expand Up @@ -38,8 +38,8 @@ In your role of research software engineer, you may need to:
* The [identifiers page](identifiers) gives advice on how to create and use identifiers.
[Machine actionability](machine_actionability) helps to automatically access and process research data.
* Consider the best practices and technical solutions for [data analysis](data_analysis).
* [Data protection](data_protection) helps you to make research data GDPR-compliant.
* [Data sensitivity](sensitive_data) helps you to identify sensitivity of different research data types.
* [Data protection](data_security) helps you to make research data GDPR-compliant.
* [Data sensitivity](data_sensitivity) helps you to identify sensitivity of different research data types.
* [Licensing](licensing) gives advice on how to assign a licence to research data.
* Consult the [data transfer page](data_transfer) for information about transferring large data files.
* The [data brokering page](data_brokering) provides information on uploading data to repositories and metadata requirements for the process.
Expand Down
Loading