Research Note

Why Workplace Data Requires Governance

Audience

Data protection officers, CIOs, CRE leaders

Core question

What does legitimate workplace evidence architecture require?

Thesis

Aggregation thresholds, purpose limitation, consent architecture and suppression are engineering requirements, not policy statements. 'The data is anonymised' fails exactly when tested; governance built into the architecture does not.

Suggested structure
  1. The re-identification problem in workplace data
  2. The five architectural requirements
  3. Employment consent and its asymmetry problem
  4. Function creep and its prevention
Research sources
  • Privacy engineering literature
  • Re-identification research
  • GDPR employment guidance
Workplaced relation

References the approved trust claims: cohort thresholds, consent, suppression.

Related methods
Full article body — in development.