Republic Act 10173 Flashcards
Republic Act 10173
Data Privacy Act of
2012
Section 1
Short Title
CHAPTER I
GENERAL PROVISIONS
Section 2
Declaration of Policy
Declaration of Policy
Protect the fundamental human right of ________, of communication
while ensuring free flow of information
privacy
Declaration of Policy
Vital role of information and communications technology in ___________
nationbuilding
Declaration of Policy
To ensure that personal information and communications systems in the government and in the private
sector are _______ and _______
protected
Section 3
Definition of terms
National Privacy Commission created
by virtue of this Act
Commission
An individual whose personal
information is processed
Data subject
Any information whether recorded in
a material form or not, from which the identity of an individual is apparent or can be reasonably and directly ascertained by the entity holding the information
Personal information
A person or organization who controls the collection, holding, processing or use of personal information. Including a person or organization who instructs another person or organization to collect, hold, process, use, transfer or disclose personal information on his or her behalf
Personal information controller
Any operation or any set of
operations performed upon personal
information including, but not limited
to, the collection, recording,
organization, storage, updating or
modification, retrieval, consultation,
use, consolidation, blocking, erasure
or destruction of data
Processing
Section 4
Scope
This Act does not apply to the following:
- Info about government officer/empolyees
- Info about individual who perform service with government
- Info reltng to discretionary benefit of finacial nature
- Personal info processed for journal, artisitc, literary, researrch purpose
- Info necessary to carry out public authority functions
- Info necessary for banks/finacial institutions
- Personal info from residents of foreign jurisdiction
Section 5
Protection Afforded to Journalists and Their Sources
Republic Act No. 53
Journalist are not compelled to reveal the source of any news
Section 6
Extraterritorial Application
This act also apply even if you are out of the coutry as long as:
- related sa personal info ng philippine citizen
- a contract is entered in the philippines
- basta related sa philippines
CHAPTER II
THE NATIONAL PRIVACY COMMISSION
Section 7
Functions of the National Privacy Commission
Functions of the National Privacy Commission
Ensure compliance of
personal information controllers
Functions of the National Privacy Commission
Receive complaints, institute investigations, facilitate
or enable settlement of complaints, prepare ______ on disposition of complaints and resolution of any investigation it initiates, and, in cases it deems appropriate, publicize any such report
reports
Functions of the National Privacy Commission
Issue ___________, impose a temporary or permanent ban
cease and desist orders
Functions of the National Privacy Commission
____________ or _______ any entity, government agency or instrumentality
Compel or petition
Functions of the National Privacy Commission
Monitor the _______ of other government agencies
or instrumentalities
compliance
Functions of the National Privacy Commission
__________ with other government agencies and the
private sector
Coordinate
Functions of the National Privacy Commission
Publish on a regular basis a _____ to all laws relating to data protection
guide
Functions of the National Privacy Commission
Publish a compilation of _______ of records and notices, including index and other finding aids
agency system
Functions of the National Privacy Commission
Recommend to the ______ the prosecution and imposition of penalties
Department of Justice (DOJ)
Functions of the National Privacy Commission
Review, approve, reject or require modification of __________
voluntarily adhered to by personal information controllers
privacy codes
Functions of the National Privacy Commission
that the privacy codes shall adhere to the underlying _____________
data privacy principles
That such privacy codes may include private dispute resolution mechanisms for _______ against any participating personal information controller
complaints
Functions of the National Privacy Commission
For this purpose, the Commission shall consult with relevant _________ in the formulation and administration of privacy codes applying the standards in this Act
regulatory agencies
Functions of the National Privacy Commission
Provide ______ on matters relating to privacy or data protection
assistance
Functions of the National Privacy Commission
______ on the implication on data privacy of proposed national or local statutes, regulations or procedures, issue advisory opinions and interpret the provisions
Comment
Functions of the National Privacy Commission
______ legislation, amendments or modifications to Philippine laws
Propose
Functions of the National Privacy Commission
Ensure proper and effective coordination with _______ in other countries and private accountability agents,
participate in international and regional initiatives for data
privacy protection
data privacy
regulators
Functions of the National Privacy Commission
Negotiate and contract with other data privacy authorities of
other countries for ________ and implementation of respective privacy laws
cross-border application
Functions of the National Privacy Commission
Assist ___________ doing business abroad to respond to foreign privacy or data protection laws and regulations
Philippine companies
Functions of the National Privacy Commission
Generally perform such acts as may be necessary to facilitate ______________ of data privacy protection
cross-border enforcement
Section 8
Confidentiality
Section 9
Organizational structure of the commission
Organizational structure of the commission
- Privacy Commissioner
- Deputy Privacy Commisioners (2)
The Commission shall be attached to the
Department
of Information and Communications Technology
(DICT)
Chairman of the
Commission
Privacy Commissione
in cahrge of the Data Processing Systems, Policies and Planning.
appointed by the President of the Philippine
Deputy Privacy Commissioners
How many terms does the The Privacy Commissioner and the two (2) Deputy Privacy Commissioners have?
3 years
may be reaapointed for another 3
the privacy commisioner mus be atleast ___ yrs old
35
good moral character, unquestionable integrity and known probity, and a recognized expert in the field of information technology and data privacy
Privacy Commissioner
The Privacy Commissioner shall enjoy
the benefits, privileges and emoluments equivalent to the rank of _________
Secretary
Who is the Privacy Commisioner and chairman
Raymund
Enriquez Liboro
must be recognized experts in the field of information and
communications technology and data privacy
Deputy Privacy Commissioners
Deputy Privacy Commissioners shall enjoy the benefits, privileges and
emoluments equivalent to the rank of _______
Undersecretary
Who are the Deputy Privacy commisioners
Leandro Angelo Y. Aguirre, John Henry Du Naga
Section 10
The Secretariat
Majority of the members of the Secretariat must have served for at least ______ in any agency of the government that is involved in the processing of personal information
five (5) years
Majority of the members of the Secretariat must have served for at least five (5) years in any agency of the government that is involved in the processing of personal information including, but not limited to, the following offices:
- Social Security System (SSS)
- Government Service Insurance System (GSIS)
- Land Transportation Office (LTO)
- Bureau of Internal Revenue (BIR)
- Philippine Health Insurance Corporation (PhilHealth)
- Commission on Elections (COMELEC)
- Department of Foreign Affairs (DFA)
- Department of Justice (DOJ)
- Philippine Postal Corporation (Philpost)
CHAPTER III
PROCESSING OF PERSONAL
INFORMATION
Section 11
General Data Privacy Principles
Kept in a form which permits identification of ________ for no longer than is necessary for the purposes for which the data were collected and processed
data subjects
Section 12
Criteria for Lawful Processing of
Personal Information
Section 13
Sensitive Personal Information and Privileged Information
The processing of sensitive personal information and privileged information shall be prohibited except if the The data subject has given his or her consent, specific
to the purpose _____________
prior to the processing