Skip to content
Cyber Horizon
All frameworks

// APAC Standards

Singapore Personal Data Protection Act Compliance Software

Singapore's Personal Data Protection Act governs the collection, use, disclosure and protection of personal data by private sector organisations, balancing data protection with legitimate business needs.

Framework at a glance

Short name

SG PDPA

Version

2020

Category

APAC Standards

Controls

35

What SG PDPA covers

35 controls across 4 domains — every one tracked, owned and evidenced in Cyber Horizon.

Govern

14 controls
  • PDPA-1 Accountability Obligation
  • PDPA-2 Notification Obligation
  • PDPA-10 Access and Correction Obligation
  • PDPA-11 Data Portability Obligation
  • PDPA-15 Records of Processing Activities

Protect

16 controls
  • PDPA-3 Consent Obligation
  • PDPA-4 Purpose Limitation Obligation
  • PDPA-5 Accuracy Obligation
  • PDPA-6 Protection Obligation
  • PDPA-7 Retention Limitation Obligation

Respond

2 controls
  • PDPA-9 Data Breach Notification
  • PDPA-23 Incident Response Plan

Identify

3 controls
  • PDPA-13 Data Protection Impact Assessment
  • PDPA-18 Third-Party Vendor Management
  • PDPA-27 Data Mapping and Inventory

How Cyber Horizon automates SG PDPA

Every SG PDPA control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.

Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.

Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.

Frequently asked questions

What is Singapore Personal Data Protection Act?

Singapore's Personal Data Protection Act governs the collection, use, disclosure and protection of personal data by private sector organisations, balancing data protection with legitimate business needs.

How many controls does Singapore Personal Data Protection Act have?

Singapore Personal Data Protection Act (2020) has 35 controls in Cyber Horizon's catalogue, organised across 4 domains.

How does Cyber Horizon help with Singapore Personal Data Protection Act?

Cyber Horizon maps Singapore Personal Data Protection Act into a shared control library alongside every other framework you run, so evidence collected once counts towards SG PDPA and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.

See SG PDPA mapped to your environment

Start with the free 20-question readiness check — no signup — or get a personal walkthrough of SG PDPA in Cyber Horizon.