Kuwait CITRA Data Privacy Protection Regulation (Decision No. 26 of 2024)
Article 5: Security and protection of personal data – Kuwait CITRA Data Privacy Protection Regulation (Decision No. 26 of 2024)

Kuwait CITRA Data Privacy Protection Regulation (Decision No. 26 of 2024) 5.1: 5.1 Appropriate security measures, encryption and resilience

Provide appropriate security measures to protect users' personal data against loss, damage, disclosure, intrusion by an unauthorised party, or replacement or addition of incorrect data, proportionate to the nature and scope of activities and the sensitivity of the data collected and stored, including (1.1) processing and encrypting personal data according to the data level set by the provider's data classification policy, (1.2) ongoing confidentiality, integrity, availability and resilience of processing systems and services, (1.3) timely restoration of availability of and access to personal data after force majeure, and (1.4) testing and evaluating the effectiveness of technical and organisational measures. (In 2021 CITRA set the encryption mechanism by its own classification policy; 2024 refers to the provider's policy.)

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Article 5: Security and protection of personal data – Kuwait CITRA Data Privacy Protection Regulation (Decision No. 26 of 2024)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.