Skip to main content

AI Summary of 4. Data security.

Version status: In force | Document consolidation status: Updated to reflect all known changes
Version date: 1 August 2023 - onwards
Version 3 of 3

4. Data security.

(1) A service provider who retains or preserves data under section 3(1), 3A(5), 3B(1), 7A(11) or 7B(10) shall take the following security measures in relation to the retained data:

(a) the data shall be of the same quality and subject to the same security and protection as those data relating to the publicly available electronic communications service or to the public communications network, as the case may be;

(b) the data shall be subject to appropriate technical and organisational measures to protect the data against accidental or unlawful destruction, accidental loss or alteration, or unauthorised or unlawful storage, processing, access or disclosure;

(c) the data shall be subject to appropriate technical and organisational measures to ensure that they can be accessed by authorised personnel only;