We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs

Change to browse by:

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Statistics > Machine Learning

Title: Variational Bayes In Private Settings (VIPS)

Abstract: Many applications of Bayesian data analysis involve sensitive information, motivating methods which ensure that privacy is protected. We introduce a general privacy-preserving framework for Variational Bayes (VB), a widely used optimization-based Bayesian inference method. Our framework respects differential privacy, the gold-standard privacy criterion, and encompasses a large class of probabilistic models, called the Conjugate Exponential (CE) family. We observe that we can straightforwardly privatise VB's approximate posterior distributions for models in the CE family, by perturbing the expected sufficient statistics of the complete-data likelihood. For a broadly-used class of non-CE models, those with binomial likelihoods, we show how to bring such models into the CE family, such that inferences in the modified model resemble the private variational Bayes algorithm as closely as possible, using the Polya-Gamma data augmentation scheme. The iterative nature of variational Bayes presents a further challenge since iterations increase the amount of noise needed. We overcome this by combining: (1) an improved composition method for differential privacy, called the moments accountant, which provides a tight bound on the privacy cost of multiple VB iterations and thus significantly decreases the amount of additive noise; and (2) the privacy amplification effect of subsampling mini-batches from large-scale data in stochastic learning. We empirically demonstrate the effectiveness of our method in CE and non-CE models including latent Dirichlet allocation, Bayesian logistic regression, and sigmoid belief networks, evaluated on real-world datasets.
Comments: The previous version of this paper had an error in the composition method we used. This version fixed that error
Subjects: Machine Learning (stat.ML); Cryptography and Security (cs.CR)
Cite as: arXiv:1611.00340 [stat.ML]
  (or arXiv:1611.00340v5 [stat.ML] for this version)

Submission history

From: Mijung Park [view email]
[v1] Tue, 1 Nov 2016 19:19:49 GMT (4278kb,D)
[v2] Mon, 28 Nov 2016 21:09:16 GMT (5297kb,D)
[v3] Wed, 21 Dec 2016 23:16:31 GMT (5305kb,D)
[v4] Tue, 6 Mar 2018 20:52:01 GMT (2735kb,D)
[v5] Mon, 3 Dec 2018 20:32:56 GMT (568kb,D)

Link back to: arXiv, form interface, contact.