Singapore legislation
Regulation 5
of Registration of Criminals (DNA Database, Identification Database and Register) Rules 2023
Regulation 5
Safeguards for specified database
The Registrar must —
ensure that the information and records of a specified database are stored and maintained in a back‑up database server that is separate and distinct from any database server used to administer the day‑to‑day operations of the specified database;
ensure that a database server of a specified database must not be accessible from the internet;
ensure that there is an adequate number of closed‑circuit television cameras or other electronic visual monitoring devices installed at suitable locations in or around any premises where a specified database (or a database server of a specified database) is stored or located;
implement appropriate protocols and processes to protect the information recorded in a specified database against accidental or unlawful loss, modification, destruction, unauthorised access, disclosure, copying, use or modification;
periodically monitor and evaluate the protocols and processes mentioned in paragraph (d) to ensure that they are effective and being complied with by persons who access a specified database; and
ensure that there is an electronic record of any change made to the DNA database or the identification database and that the record is secured against interference or tampering.