ALBURO ALBURO AND ASSOCIATES LAW OFFICES ALBURO ALBURO AND ASSOCIATES LAW OFFICES

contact

MON-SAT 8:30AM-5:30PM

June 1, 2022

PHYSICAL SECURITY MEASURES UNDER DATA PRIVACY ACT

Image via: https://www.gsb.stanford.edu/sites/default/files/styles/1630x_variable/public/resources/top-image-kessler-hidden-cost-0615.jpg?itok=frO7QzUE

Read also: ORGANIZATIONAL SECURITY MEASURES FOR THE PROTECTION OF PERSONAL DATA

  • As part of the physical security measures in protecting personal data, design of office space and work stations, including the physical arrangement of furniture and equipment must be taken into consideration to provide privacy to anyone processing personal data.

  • To protect personal data, the duties, responsibilities and schedule of individuals involved in the processing of personal data must be clearly defined to ensure that only the individuals actually performing official duties shall be in the room or work station, at any given time.

  • The room and workstation used in the processing of personal data must be secured against natural disasters, power disturbances, external access, and other similar threats.

One way to protect personal data under the Data Privacy Act, is by implementing reasonable and appropriate physical security measures.

Implementing Rules and Regulations of the Data Privacy Act of 2012 provides:

Where appropriate, personal information controllers and personal information processors shall comply with the following guidelines for physical security:

  1. Policies and procedures shall be implemented to monitor and limit access to and activities in the room, workstation or facility, including guidelines that specify the proper use of and access to electronic media;
  2. Design of office space and work stations, including the physical arrangement of furniture and equipment, shall provide privacy to anyone processing personal data, taking into consideration the environment and accessibility to the public;
  3. The duties, responsibilities and schedule of individuals involved in the processing of personal data shall be clearly defined to ensure that only the individuals actually performing official duties shall be in the room or work station, at any given time;
  4. Any natural or juridical person or other body involved in the processing of personal data shall implement Policies and procedures regarding the transfer, removal, disposal, and re-use of electronic media, to ensure appropriate protection of personal data;
  5. Policies and procedures that prevent the mechanical destruction of files and equipment shall be established. The room and workstation used in the processing of personal data shall, as far as practicable, be secured against natural disasters, power disturbances, external access, and other similar threats.

These measures help guarantee the safety and security of personal data under the personal information controllers’ and personal information processors’ control or custody, thereby upholding an individual’s data privacy rights. 


Alburo Alburo and Associates Law Offices specializes in business law and labor law consulting. For inquiries, you may reach us at info@alburolaw.com, or dial us at (02)7745-4391/0917-5772207.

All rights reserved.


SUBSCRIBE NOW FOR MORE LEGAL UPDATES!

[email-subscribers-form id=”4″]

Leave a Reply

Your email address will not be published. Required fields are marked *

0 Shares
Share
Tweet
Share