Differentially Private Statistical Inference through β-Divergence One Posterior Sampling
Jack Jewson, Sahra Ghalebikesabi, Chris C. Holmes
Abstract
Differential privacy guarantees allow the results of a statistical analysis involving sensitive data to be released without compromising the privacy of any individual taking part. Achieving such guarantees generally requires the injection of noise, either directly into parameter estimates or into the estimation process. Instead of artificially introducing perturbations, sampling from Bayesian posterior distributions has been shown to be a special case of the exponential mechanism, producing consistent, and efficient private estimates without altering the data generative process. The application of current approaches has, however, been limited by their strong bounding assumptions which do not hold for basic models, such as simple linear regressors. To ameliorate this, we propose βD-Bayes, a posterior sampling scheme from a generalised posterior targeting the minimisation of the β-divergence between the model and the data generating process. This provides private estimation that is generally applicable without requiring changes to the underlying model and consistently learns the data generating parameter. We show that βD-Bayes produces more precise inference estimation for the same privacy guarantees, and further facilitates differentially private estimation via posterior sampling for complex classifiers and continuous regression models such as neural networks for the first time. * Joint first authorship. Order decided based on coin flip. 37th Conference on Neural Information Processing Systems (NeurIPS 2023).
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 793f6a2b-899e-43fe-8226-0b3b95ff5624Builds on9
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan et al.CCS 2016 · 7,620 citations
- Auditing Differentially Private Machine Learning: How Private is Private SGD?Matthew Jagielski, Jonathan R. Ullman, Alina OpreaNeurIPS 2020 · 354 citations
- Adversary Instantiation: Lower Bounds for Differentially Private Machine LearningMilad Nasr, Shuang Song, Abhradeep Thakurta, Nicolas Papernot et al.S&P 2021 · 288 citations
- Faster Differentially Private Samplers via Rényi Divergence Analysis of Discretized Langevin MCMCArun Ganesh, Kunal TalwarNeurIPS 2020 · 44 citations
- Differentially Private Bayesian Inference for Generalized Linear ModelsTejas D. Kulkarni, Joonas Jälkö, Antti Koskela, Samuel Kaski et al.ICML 2021 · 30 citations
Related papers
- Data Augmentation MCMC for Bayesian Inference from Privatized DataNianqiao Ju, Jordan Awan, Ruobin Gong, Vinayak RaoNeurIPS 2022 · 35 citations
- Differentially Private Distributed Bayesian Linear Regression with MCMCBaris Alparslan, Sinan Yildirim, S. Ilker BirbilICML 2023 · 1 citation
- Bayesian Estimation of Differential PrivacySantiago Zanella-Béguelin, Lukas Wutschitz, Shruti Tople, Ahmed Salem et al.ICML 2023 · 50 citations
- Bayesian Differential Privacy for Machine LearningAleksei Triastcyn, Boi FaltingsICML 2020 · 79 citations
- Incentives in Private Collaborative Machine LearningRachael Hwee Ling Sim, Yehong Zhang, Nghia Hoang, Xinyi Xu et al.NeurIPS 2023 · 12 citations
