RA 10173 - DATA PRIVACY ACT OF 2012 Flashcards

1
Q

An act protecting individual personal information in information and communications systems in the government and the private sector, creating for this purpose a national privacy commission, and for other purposes.

A

RA 10173 - Data Privacy Act of 2012

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

This Act does not apply to the following:

A
  • individual who is or was an o fficer or employee of a government
    institution.
  • individual who is or was performing service under contract for a government institution.
  • Information relating to any discretionary benefit of a financial nature.
  • Personal information processed for journalistic, artistic, literary or research purposes.
  • Information necessary in order to carry out the functions of public authority.
  • Information necessary for banks and other financial institutions.
  • Personal information originally collected from
    residents of foreign jurisdictions.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

RA where publishers, editors or duly accredited reporters
of any newspaper, magazine or periodical of general circulation protection from being compelled to reveal the source of any news report or information appearing in said publication which was related in any confidence to such publisher, editor, or reporter.

A

Republic Act No. 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

It refers to any freely given, specific, informed indication of will, whereby the data subject agrees to the collection and processing of personal information about and/or relating to him or her.

A

Consent of the Data Subject

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

refers to an individual whose personal information is processed.

A

Data Subject

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

refers to any information whether recorded in a material form or not, from which the identity of an individual is apparent or can be reasonably and directly ascertained by the entity holding the information, or when put together with other information would directly and certainly identify an individual.

A

Personal Information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

refers to communication by whatever means of any advertising or marketing material which is directed to particular individuals.

A

Direct Marketing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

refers to any act of information relating to natural or juridical person in such a way that specific information relating to a particular person is readily accessible.

A

Filing system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

refers to a system for generating, sending, receiving, storing or otherwise processing electronic data messages or electronic documents

A

Information and Communications System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

refers to a person or organization who controls the collection, holding, processing or use of personal information, including a person or organization who instructs another person or organization to collect, hold, process, use, transfer or disclose personal information on his or her behalf.

A

Personal Information Controller

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

refers to any natural or juridical person qualified to act as such under this Act to whom a personal information controller may outsource the processing of personal data pertaining to a data subject.

A

Personal information processor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

refers to any operation or any set of operations performed upon personal information including, but not limited to, the collection, recording, organization, storage, updating or modification, retrieval, consultation, use, consolidation, blocking, erasure or destruction of data

A

Processing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

refers to any and all forms of data which under the Rules of Court and other pertinent laws constitute privileged communication.

A

Privileged Information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which entity has central management and control in the country?

A

Juridicial Entity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

This ensure compliance of personal information controllers

A

National Privacy Commission

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

shall ensure at all times the confidentiality of any personal information that comes to its knowledge and possession.

A

The commission

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Two Deputy Privacy Commissioners:

A
  • Data Processing Systems
  • Policies and Planning
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What are the components of the organizational structure of the Commission?

A

โ— Department of Information and Communications Technology
โ— Privacy Commissioner/Chairman of the Commission.
โ— Two Deputy Privacy Commissioners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Who appoints the Organizational Structure of the Commission?

A

President of the Philippines

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

A privacy commissioner must be how old?

A

At least 35 years of age

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

The Privacy Commissioner shall enjoy the benefits, privileges and emoluments equivalent to the rank of __________

A

Secretary

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Who is the Privacy Commissioner and Chairman

A

Raymund Enriquez Liboro

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

recognized experts in the field of information and communications technology and data privacy.

A

Deputy Privacy Commissioner

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Deputy Private Commissioners shall enjoy the benefits, privileges and emoluments equivalent to the rank of _________

A

Undersecretary

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Who are the Deputy Privacy Commissioners?

A

Leandro Angelo Y. Aguirre and John Henry Du Naga

26
Q

Majority of the members of the Secretariat must have served for at least how many years in any agency of the government that is involved in the processing of personal information?

A

5 years

27
Q

Who may subcontract the processing of personal information?

A

Personal information controller

28
Q

may invoke the principle of privileged communication over privileged information that they lawfully control or process.

A

Personal information controllers

29
Q

May invoke the rights of the data subject for, which he or she is an heir or assignee at any time after the death of the data subject or when the data subject is incapacitated or incapable of exercising the rights as enumerated in the immediately preceding section

A

Lawful heirs and assigns of the data subject

30
Q

Who shall the personal information controller notify when sensitive personal information or other information that may, under the circumstances, be used to enable identity fraud are reasonably believed to have been acquired by an unauthorized person?

A

The Commission and affected data subjects

31
Q

T/F: No employee of the government shall have access to sensitive personal information on government property or through online facilities

A

T

32
Q

What is the limitation of records for off-site access to sensitive information?

A

1,000 Records

33
Q

Penalty for Unauthorized Processing of Personal Information and Sensitive
Personal Information

A

Imprisonment ranging from 1 year to 3 years and a fine of not less than Php 500,000 but not more than Php 2,000,000.

34
Q

Penalty for Accessing Information Sensitive Information Negligence.

A

Imprisonment ranging from 3 years to 6 years and a fine of not less than Php500,000 but not more than Php4,000,000

35
Q

Penalty for Improper Disposal of Personal Information

A

imprisonment ranging from 6 months to 2 years and a fine of not less than Php 100,000 but not more than Php500,000.

36
Q

Penalty for Processing of Personal Information for Unauthorized Purposes.

A

Imprisonment ranging from 1 year and 6 months to 5 years and a fine of not less than Php500,000 but not more than Php1,000,000.

37
Q

Penalty for Unauthorized Access or Intentional Breach.

A

imprisonment ranging from 1 year to 3 years and a fine of not less than Php500,000 but not more than Php2,000,000.

38
Q

Penalty for Concealment of Security Breaches Involving Sensitive Personal Information.

A

imprisonment of one 1 year and 6 months to 5 years and a fine of not less than Php500,000 but not more than Php 1,000,000.

39
Q

Penalty for Malicious Disclosure

A

imprisonment ranging from 1 year and 6 months to 5 years and a fine of not less than Php500,000 but not more than Php 1,000,000.

40
Q

Penalty for Unauthorized Disclosure of Personal Information

A

imprisonment ranging from 1 year to 3 years and a fine of not less than Php500,000 but not more than Php 1,000,000

41
Q

Penalty for Combination or Series of Acts

A

imprisonment ranging from 3 years to 6 years and a fine of not less than Php1,000,000 but not more than Php5,000,000.

42
Q

If the offender is a corporation, partnership or any juridicial the penalty shall be imposed upon who?

A

responsible officers, as the case may be, who participated in, or by their gross negligence, allowed the commission of the crime.

43
Q

What is meant by โ€œlarge-scaleโ€ in this law?

A

At least one hundred (100) persons are harmed, affected or involved

44
Q

What is the accessory penalty for offense committed by public officer?

A

disqualification to occupy public office for a term double the term of criminal penalty imposed shall be applied.

45
Q

Restitution for any aggrieved party shall be governed by the provisions of what?

A

New Civil Code

46
Q

Who shall undertake whatever efforts it may determine to be necessary or appropriate to inform and educate the public of data privacy, data protection and fair information rights and responsibilities?

A

The Commission

47
Q

Who shall The Commission report to in carrying out the provisions of this Act?

A

President and Congress

48
Q

The Commission shall be provided with an initial appropriation of how much?

A

20 million pesos

49
Q

How much shall the commission receive per 5 years of implementation of this act?

A

10 million pesos

50
Q

How many years of transitory period do existing industries, businesses and offices affected by the implementation of this Act be given to comply to the requirements?

A

1 year

51
Q

Who is the president of the Philippines that signed into this law?

A

Benigno S. Aquino III

52
Q

Who is the president of the senate during the implementation of this law?

A

Juan Ponce Enrile

53
Q

What is the penalty for improper disposal of sensitive personal information

A

imprisonment ranging from one (1) year to three (3) years and a fine of not less than One hundred thousand pesos (Php100,000.00) but not more than One million pesos (Php1,000,000.00)

54
Q

What is the penalty for sensitive personal information for unauthorized purposes

A

imprisonment ranging from two (2) years to seven (7) years and a fine of not less than Five hundred thousand pesos (Php500,000.00) but not more than Two million pesos (Php2,000,000.00)

55
Q

What is the penalty for unauthorized disclosure of Sensitive Personal Information

A

Imprisonment ranging from 3 years to 5 years and a fine of not less than Php 500,000 but not more than Php 2,000,000

56
Q

If the offender is a juridicial person, who may suspend or revoke any of its rights under this act?

A

The court

57
Q

What is the penalty if the offender is an alien?

A

He/She shall be deported without further proceedings after serving the penalties prescribed.

58
Q

What is the penalty if the offended is a public official or employee

A

perpetual or temporary absolute disqualification from office

59
Q

Who is in charge of administering and implementing RA 10173?

A

National Privacy Commission (NPC)

60
Q

Date of Approval of RA 10173

A

August 15, 2012