// APAC Standards
Singapore Personal Data Protection Act Compliance Software
Singapore's Personal Data Protection Act governs the collection, use, disclosure and protection of personal data by private sector organisations, balancing data protection with legitimate business needs.
Framework at a glance
Short name
SG PDPA
Version
2020
Category
APAC Standards
Controls
35
What SG PDPA covers
35 controls across 4 domains — every one tracked, owned and evidenced in Cyber Horizon.
Govern
14 controls- PDPA-1 Accountability Obligation
- PDPA-2 Notification Obligation
- PDPA-10 Access and Correction Obligation
- PDPA-11 Data Portability Obligation
- PDPA-15 Records of Processing Activities
Protect
16 controls- PDPA-3 Consent Obligation
- PDPA-4 Purpose Limitation Obligation
- PDPA-5 Accuracy Obligation
- PDPA-6 Protection Obligation
- PDPA-7 Retention Limitation Obligation
Respond
2 controls- PDPA-9 Data Breach Notification
- PDPA-23 Incident Response Plan
Identify
3 controls- PDPA-13 Data Protection Impact Assessment
- PDPA-18 Third-Party Vendor Management
- PDPA-27 Data Mapping and Inventory
How Cyber Horizon automates SG PDPA
Every SG PDPA control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.
Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.
Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.
Frequently asked questions
What is Singapore Personal Data Protection Act?
Singapore's Personal Data Protection Act governs the collection, use, disclosure and protection of personal data by private sector organisations, balancing data protection with legitimate business needs.
How many controls does Singapore Personal Data Protection Act have?
Singapore Personal Data Protection Act (2020) has 35 controls in Cyber Horizon's catalogue, organised across 4 domains.
How does Cyber Horizon help with Singapore Personal Data Protection Act?
Cyber Horizon maps Singapore Personal Data Protection Act into a shared control library alongside every other framework you run, so evidence collected once counts towards SG PDPA and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.
More APAC Standards frameworks
See SG PDPA mapped to your environment
Start with the free 20-question readiness check — no signup — or get a personal walkthrough of SG PDPA in Cyber Horizon.