arXiv · 2110.07435
Adaptive Differentially Private Empirical Risk Minimization
Abstract
We propose an adaptive (stochastic) gradient perturbation method for differentially private empirical risk minimization. At each iteration, the random noise added to the gradient is optimally adapted to the stepsize; we name this process adaptive differentially private (ADP) learning. Given the same privacy budget, we prove that the ADP method considerably improves the utility guarantee compared to the standard differentially private method in which vanilla random noise is added. Our method is particularly useful for gradient-based algorithms with time-varying learning rates, including variants of AdaGrad (Duchi et al., 2011). We provide extensive numerical experiments to demonstrate the effectiveness of the proposed adaptive differentially private algorithm.
Explore related subjects
Keep this discovery
Xiaoxia Wu, Lingxiao Wang, Irina Cristali, Quanquan Gu, Rebecca Willett. 2021-10-14. Adaptive Differentially Private Empirical Risk Minimization. https://arxiv.org/abs/2110.07435
Cite the original work for its findings. Save a collection to share your selection of sources.