Singapore legislation

Regulation 5

of Registration of Criminals (DNA Database, Identification Database and Register) Rules 2023

Regulation 5

Safeguards for specified database

The Registrar must —

(a)

ensure that the information and records of a specified database are stored and maintained in a back‑up database server that is separate and distinct from any database server used to administer the day‑to‑day operations of the specified database;

(b)

ensure that a database server of a specified database must not be accessible from the internet;

(c)

ensure that there is an adequate number of closed‑circuit television cameras or other electronic visual monitoring devices installed at suitable locations in or around any premises where a specified database (or a database server of a specified database) is stored or located;

(d)

implement appropriate protocols and processes to protect the information recorded in a specified database against accidental or unlawful loss, modification, destruction, unauthorised access, disclosure, copying, use or modification;

(e)

periodically monitor and evaluate the protocols and processes mentioned in paragraph (d) to ensure that they are effective and being complied with by persons who access a specified database; and

(f)

ensure that there is an electronic record of any change made to the DNA database or the identification database and that the record is secured against interference or tampering.