Singapore PDPA

Singapore PDPA An architecture diagram generated by Archify. Singapore PDPA · Personal Data Protection Act (11 Obligations) · Architecture component Singapore PDPA Personal Data Protection Act (11 Obligations) 1. Consent · explicit opt-in + withdrawal · Architecture component 1. Consent explicit opt-in + withdrawal 10. Data Breach Notificati… · ≤ 3 days from assessment (PDPA §26D) to PDPC · Architecture component 10. Data Breach Notificati… ≤ 3 days from assessment (PDPA §26D) to PDPC 11. Accountability / DPO · designate + publish · Architecture component 11. Accountability / DPO designate + publish 2. Purpose Limitation · no repurposing · Architecture component 2. Purpose Limitation no repurposing 3. Notification · disclose at collection · Architecture component 3. Notification disclose at collection 4. Accuracy · validate + rectify · Architecture component 4. Accuracy validate + rectify 5. Protection · encryption + RBAC + audit logs · Architecture component 5. Protection encryption + RBAC + audit logs 6. Retention Limitation · anonymise when done · Architecture component 6. Retention Limitation anonymise when done 7. Transfer Limitation (§2… · comparable standard overseas · Architecture component 7. Transfer Limitation (§2… comparable standard overseas 8. Access & Correction · DSR endpoints · Architecture component 8. Access & Correction DSR endpoints 9. Withdrawal of Consent · as easy as opt-in · Architecture component 9. Withdrawal of Consent as easy as opt-in Legend Backend

Source summary

  • • 12 of 13 nodes shown
  • • 12 links preserved in the original
  • • Singapore PDPA
  • • 1. Consent