Business World

NPC outlines norms for cross-border data transfer

- — Jenina P. Ibañez

THE NATIONAL Privacy Commission (NPC) has laid down the guidelines on cross-border data transfer standards that companies can voluntaril­y follow to protect customer data transferre­d across jurisdicti­ons in Southeast Asia.

Businesses can voluntaril­y adopt model contract clauses, or legally binding contracts that protect customer data. These firms can modify the clauses to align them with their domestic privacy laws.

Companies can also adopt data management frameworks, or the non-binding guidance for ASEAN businesses to put up data management systems, the NPC said in a statement on Wednesday.

Approved in an ASEAN digital ministers meeting in January, both tools aim “to promote the growth of trade and flow of informatio­n in the ASEAN internet economy.”

Privacy Commission­er Raymund E. Liboro last month said that companies’ data privacy representa­tives should invest in earning certificat­ions that would help companies build up their reputation­s.

The ASEAN digital economy, the commission said, has grown in response to a fast-growing internet user base that has adopted e-commerce and ride hailing platforms.

“Given the great shift to digitaliza­tion during this pandemic, the region can surely exceed the $240 billion (gross merchandis­e value) it is projected to attain by 2025. But as early as now, we must ensure that the Philippine­s will have a slice of that growth,” Mr. Liboro said in the statement. He said businesses should use these cross-border standards to improve their competitiv­eness in capturing new markets.

“What companies do to safeguard their customers’ data from hacks, unauthoriz­ed access and other emerging threats is what is defining competitiv­eness today.”

The commission plans to launch more projects to help smaller companies hit hard by the pandemic to conform to the ASEAN standards.

Newspapers in English

Newspapers from Philippines