Learning Differentially Private Language Models Without Losing Accuracy

  • 2017-10-18 23:46:57
  • H. Brendan McMahan, Daniel Ramage, Kunal Talwar, Li Zhang
  • 7

Abstract

We demonstrate that it is possible to train large recurrent language modelswith user-level differential privacy guarantees without sacrificing predictiveaccuracy. Our work builds on recent advances in the training of deep networkson user-partitioned data and privacy accounting for stochastic gradientdescent. In particular, we add user-level privacy protection to the federatedaveraging algorithm, which makes "large step" updates from user-level data. Ourwork demonstrates that given a dataset with a sufficiently large number ofusers (a requirement easily met by even small internet-scale datasets),achieving differential privacy comes at the cost of increased computation,rather than in decreased utility as in most prior work. We find that privateLSTM language models are quantitatively and qualitatively similar to un-noisedmodels when trained on a large dataset.

 

Quick Read (beta)

loading the full paper ...