Cultivating
a
data-driven
culture
is
crucial
for
businesses
in
today’s
digital
economy.
Organisations
have
to
consider
investing
in
the
quality
and
protection
of
the
data
they
collect
and
use,
so
that
it
yields
valuable
insights
that
can
be
acted
upon.
|
|
|
|
|
How
Technology
Can
Turbocharge
Your
PDPA
Compliance
Strategy
Learn
how
technology,
automation,
and AI
machine
learning
can
dramatically
improve
the
efficiency
and
effectiveness
of how
organisations
institute
key
processes
and
policies
required
to
comply
with
PDPA,
all
while
establishing
good
practices
such as
filling
the
common
gaps in
ICT
systems
to
prevent
data
breaches.
(Article
contributed
by
Dathena)
|
|
|
|
|
Announcements
|
|
|
|
The
PDPC
celebrates
PAW
from
24
to
30
May
2021
and
the
week
aims
to
highlight
organisations'
accountability
to
their
customers,
and
encourage
everyone
to
make
data
protection
a
priority.
Find
the
full
event
highlights
on
the
PDPC's
LinkedIn
page.
|
|
The
PDPC
has
updated
the
advisories
to
include
guidance
on
the
implementation
of
TraceTogether-only
SafeEntry
and
other
safe
management
measures
at
premises
and
workplaces.
|
|
The
PDPC
has
developed
an
infographic
on
the
broad
comparison
between
the
EU
GDPR’s
legal
bases
for
processing
personal
data,
with
the
consent
and
the
exceptions
to
consent
under
the
enhanced
PDPA.
|
|
The
Guide
on
Managing
and
Notifying
Data
Breaches
under
the
PDPA
(previously
known
as
Guide
to
Managing
Data
Breaches
2.0)
has
been
updated
with
details
of
the
mandatory
data
breach
notification
requirement
under
the
PDPA.
The
Guide
on
Active
Enforcement
has
also
been
revised
with
details
of
the
voluntary
undertaking
under
the
enhanced
PDPA.
Additional
information
on
the
expedited
breach
decision
and
financial
penalties
have
also
been
included.
|
|
|
|
|
|
|
New
Resources
|
|
|
|
Many
data
breach
incidents
could
have
been
prevented
through
good
ICT
system
management
and
processes.
The
PDPC
has
identified
the
five
most
common
gaps
and
the
corresponding
good
practices
that
organisations
should
put
in
place.
|
|
Being
accountable
helps
you
strengthen
trust
with
the
public,
enhance
business
competitiveness
and
provide
greater
assurance
to
customers.
We
have
put
together
a
summary
of
all
11
data
protection
obligations
under
the
PDPA
for
you.
|
|
|
|
|
|
|
Commission's
Decisions
May
2021
|
|
|
|
●
|
A
review
application
under
section
28
(now
known
as
section
48H(1)(a))
of
the
PDPA
was
conducted
following
a
failed
request
by
an
individual
to
obtain
his
full
unredacted
internal
evaluation
report
prepared
by
HSBC
Bank
(Singapore)
Limited
for
the
purpose
of
evaluating
his
credit
card
application.
|
|
●
|
A
warning
was
issued
to
Greatearth
Corporation
for
failing
to
obtain
consent
to
disclose
the
personal
data
of
8
crane
operators
on
the
external
façade
of
a
construction
site.
|
|
|
|
Read
more
Commission's
Decisions
here
|
|
|
|
|
|
Help and
Resources
for
DPO
|
|
|
Key
resources
that are
relevant
to data
protection
professionals
throughout
the
different
stages of
the data
protection
journey.
|
|
|
Free-to-use
tool for
generating
basic data
protection
template
notices to
inform an
organisation’s
stakeholders,
such as
customers,
employees, job
applicants,
donors,
service users
and
volunteers, on
how it manages
their personal
data.
|
|
The
Framework
outlines
the core
competencies
and
proficiency
levels for
a DPO, and
provides
guidance
on a
viable
career
pathway.
|
|
|
|
|
|
|