In the differentially private top- selection problem, we are given a dataset , in which each row belongs to an individual and each column corresponds to some binary attribute, and our goal is to find a set of columns whose means are approximately as large as possible. Differential privacy requires that our choice of these columns does not depend too much on any on individual's dataset. This problem can be solved using the well known exponential mechanism and composition properties of differential privacy. In the high-accuracy regime, where we require the error of the selection procedure to be to be smaller than the so-called sampling error , this procedure succeeds given a dataset of size . We prove a matching lower bound, showing that a dataset of size is necessary for private top- selection in this high-accuracy regime. Our lower bound is the first to show that selecting the largest columns requires more data than simply estimating the value of those columns, which can be done using a dataset of size just .
View on arXiv