5.
(ix)
(x)
CONFIDENTIAL #2
- 4
-
Reasonable measures should be introduced to ensure accuracy of personal data. Contacts or correspondence initiated either by the department or by the data subject in the normal conduct of service should be used to confirm data accuracy. Periodic exercises should also be conducted to seek confirmation from data subjects of the accuracy of the personal data held.
Security measures should be implemented to guard against unauthorised access and alteration, accidental loss of data, etc. These measures should include:
a) procedures to prevent illegal access to the
computer room, media library and terminal area,
b) installation of fire prevention and fire fighting
facilities,
c) a properly designed electrical and air-conditioning
system in the computer room and the terminal area,
d) procedures to guard against unauthorised access to
computer files, including pass-words, audit trail, file access codes, etc., and
e) procedures to ensure security in the generation
and distribution of reports.
Advice on security measures can be obtained from the Government Data Processing Agency.
!
CONFIDENTIAL ##
機密