New deadline to be set for the annual report of security incidents
At last night's meeting KnowledgeNet meeting of the local chapter of the International Association of Privacy Professionals (IAPP), Deputy Commissioner Leandro Angelo Aguirre of the National Privacy Commission announced that submission of the annual report of security incidents will be postponed to a later date. The move comes after the NPC received a lot of queries on the nature of security incidents to be included in the report. The NPC earlier issued a press release detail
Drafting privacy notices and consent forms
The end of the year comes in a few weeks. After that, I expect that Data Privacy compliance once again shifts into high gear as companies work toward completion of their respective registrations with the National Privacy Commission. I am sure that, by now, there is much awareness of the next deadline from the NPC coming up: March 8 is the last day for registration of your personal data processing systems. Registration of the personal data processing systems is just one of the
What you should know before choosing a DPO
Have your company named its Data Protection Officer (DPO)? I realize that many companies are in a quandary on who to pick as the DPO. The Data Protection Act, as well as the National Privacy Commission’s (NPC) Advisory No. 2017-01 on the designation of Data Protection Officers, describes the responsibilities of the DPO but only specifies general qualifications for the job (i.e., “expertise in the relevant privacy or data protection policies and practices”). “Should the DPO be