Cultivating a data-driven culture is crucial for businesses in today’s digital economy. Organisations have to consider investing in the quality and protection of the data they collect and use, so that it yields valuable insights that can be acted upon.
|
|
|
|
|
How Technology Can Turbocharge Your PDPA Compliance Strategy
Learn how technology, automation, and AI machine learning can dramatically improve the efficiency and effectiveness of how organisations institute key processes and policies required to comply with PDPA, all while establishing good practices such as filling the common gaps in ICT systems to prevent data breaches.
(Article contributed by Dathena)
|
|
|
|
|
Announcements
|
|
|
|
The PDPC celebrates PAW from 24 to 30 May 2021 and the week aims to highlight organisations' accountability to their customers, and encourage everyone to make data protection a priority. Find the full event highlights on the PDPC's LinkedIn page.
|
|
The PDPC has updated the advisories to include guidance on the implementation of TraceTogether-only SafeEntry and other safe management measures at premises and workplaces.
|
|
The PDPC has developed an infographic on the broad comparison between the EU GDPR’s legal bases for processing personal data, with the consent and the exceptions to consent under the enhanced PDPA.
|
|
The Guide on Managing and Notifying Data Breaches under the PDPA (previously known as Guide to Managing Data Breaches 2.0) has been updated with details of the mandatory data breach notification requirement under the PDPA.
The Guide on Active Enforcement has also been revised with details of the voluntary undertaking under the enhanced PDPA. Additional information on the expedited breach decision and financial penalties have also been included.
|
|
|
|
|
|
|
New Resources
|
|
|
|
Many data breach incidents could have been prevented through good ICT system management and processes. The PDPC has identified the five most common gaps and the corresponding good practices that organisations should put in place.
|
|
Being accountable helps you strengthen trust with the public, enhance business competitiveness and provide greater assurance to customers. We have put together a summary of all 11 data protection obligations under the PDPA for you.
|
|
|
|
|
|
|
Commission's Decisions
May 2021
|
|
|
● |
A review application under section 28 (now known as section 48H(1)(a)) of the PDPA was conducted following a failed request by an individual to obtain his full unredacted internal evaluation report prepared by HSBC Bank (Singapore) Limited for the purpose of evaluating his credit card application.
|
● |
A warning was issued to Greatearth Corporation for failing to obtain consent to disclose the personal data of 8 crane operators on the external façade of a construction site.
|
|
|
|
Read more Commission's Decisions here
|
|
|
|
|
Help and Resources for DPO
|
|
|
Key resources that are relevant to data protection professionals throughout the different stages of the data protection journey.
|
|
Free-to-use tool for generating basic data protection template notices to inform an organisation’s stakeholders, such as customers, employees, job applicants, donors, service users and volunteers, on how it manages their personal data.
|
|
The Framework outlines the core competencies and proficiency levels for a DPO, and provides guidance on a viable career pathway.
|
|
|
|
|
|
|