{"id":1087,"date":"2013-10-01T21:10:30","date_gmt":"2013-10-01T13:10:30","guid":{"rendered":"http:\/\/george.t05.sg\/?p=1087"},"modified":"2018-09-02T19:33:45","modified_gmt":"2018-09-02T11:33:45","slug":"personal-data-protection-compliance-programme","status":"publish","type":"post","link":"https:\/\/georgehwangllc.com\/index.php\/2013\/10\/01\/personal-data-protection-compliance-programme\/","title":{"rendered":"Personal Data Protection Compliance Programme"},"content":{"rendered":"<p>By 2 July 2014, all private organisations are expected to be in full compliance with the Personal Data Protection Act (\u201cPDPA\u201d).<\/p>\n<p>George Hwang LLC has developed a compliance programme to help you meet the obligations of this new law.<\/p>\n<p>The PDPA requires all private entities holding personal data to have the following in place:<\/p>\n<ul>\n<li>A Data Protection Officer (\u201cDPO\u201d) who is easily contactable by the public;<\/li>\n<li>Policies and practices to ensure compliance with the PDPA;<\/li>\n<li>A process or system to respond to public enquiries and complaints;<\/li>\n<li>Trained its staff on the organisation\u2019s personal data protection policies and practices; and<\/li>\n<li>A transparent data protection policies and complaint system<\/li>\n<\/ul>\n<p>The Personal Data Protection Commission (\u201cPDPC\u201d) constituted in Jan 2013 is tasked with overseeing the implementation of PDPA. The PDPC has wide ranging power. It includes the power to investigate and to direct organisations, amongst others, to stop using, destroy, provide access to or correct personal data within their control. It can also order a fine to the maximum of $1 million.<\/p>\n<p>Our compliance programme has a 3 Stage procedure. Each stage complements the others, yet, each can be independent. After each stage, the organisation can decide whether to proceed further. They are:<\/p>\n<ul>\n<li>Stage 1 \u2013 Audit<\/li>\n<li>Stage 2 \u2013 Implementation<\/li>\n<li>Stage 3 \u2013 Training<\/li>\n<\/ul>\n<p>For SMEs, we have a service for continuous compliance. This is our \u201cDPO Service\u201d.<\/p>\n<p><b>STAGE 1 &#8211; AUDIT<\/b><\/p>\n<p>This is a fact finding stage. We will analyse the organisation\u2019s database, their purposes and its data management system. Some organisation may already have a set of policies and practices. We will review them, as part of the audit.<\/p>\n<p>A report on its shortcomings and recommendations will be made. The organisation\u2019s management can study this report and decide whether to proceed to the next stage.<\/p>\n<p><b>STAGE 2 \u2013 IMPLEMENTATION<\/b><\/p>\n<p>We will assist the organisation to create a system or process, together with drafting the necessary notices, forms and manuals. Depending on the requirements, we may have to work with an IT consultant regarding security of the database.<\/p>\n<p>For SMEs which needs or keeps very limited amount of personal data for its business, we have a standard procedure and manual for adoption.<\/p>\n<p><b>STAGE 3 &#8211; TRAINING<\/b><\/p>\n<p>As it is new, everyone needs to be sensitised to personal data protection issues and the rights of the data subjects. This will enable them to be identified at an early stage and escalation of problems prevented.<\/p>\n<p>We will assist in training your staff through seminars and hands-on coaching. This will depend on the size and needs of the organisation concerned.<\/p>\n<p><b>DPO SERVICE<\/b><\/p>\n<p>We provide a DPO on an annual basis. All clients who use our DPO service must first go through our 3 Stage Programme. We need to ensure compliance before taking on the duties of a DPO.<\/p>\n<p>George Hwang<br \/>\nDirector<br \/>\n10th October 2013<\/p>\n<p>For more information, please contact\u00a0<a href=\"mailto:ge%6Fr%67e%40ge%6Frgeh%77an%67l%6C%63.com\">george@georgehwangllc.com<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>By 2 July 2014, all private organisations are expected to be in full compliance with the Personal Data Protection Act (\u201cPDPA\u201d). George Hwang LLC has developed a compliance programme to help you meet the obligations of this new law. The PDPA requires all private entities holding personal data to have the following in place: A [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_links_to":"","_links_to_target":""},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/posts\/1087"}],"collection":[{"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/comments?post=1087"}],"version-history":[{"count":1,"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/posts\/1087\/revisions"}],"predecessor-version":[{"id":1088,"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/posts\/1087\/revisions\/1088"}],"wp:attachment":[{"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/media?parent=1087"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/categories?post=1087"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/georgehwangllc.com\/index.php\/wp-json\/wp\/v2\/tags?post=1087"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}