Back to Frameworks

Israel Protection of Privacy Law (5741-1981)

Israel
v1981 (amended 2024)
12 domains
35 controls

Israel's Protection of Privacy Law (5741-1981, amended through 2024) provides the legal framework for data protection, administered by the Privacy Protection Authority (PPA) under the Ministry of Justice. Israel holds EU adequacy recognition (since 2011). The 2024 amendments (Amendment 13) significantly strengthen the framework with expanded PPA enforcement powers, mandatory breach notification, increased penalties, and enhanced data subject rights.

Verified

Israel Protection of Privacy Law (5741-1981) is a compliance framework from Israel with 12 domains and 35 controls that map to 102 other frameworks. The largest domains are Data Security Regulations 2017 (14 controls), Protection of Privacy Law Statutory Sections (10 controls), Supervision and Cross Border Transfer (2 controls). Every control below carries what it requires and what an assessor expects to see.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (12)

Data Security Regulations 2017

14 controls
Controls in the Data Security Regulations 2017 domain of Israel Protection of Privacy Law (5741-1981)14 controls
CodeTitle
PPL-DSR-BREACHSevere Security Event Notification to PPA
PPL-DSR-CLASSIFYDatabase Security Tier Classification
PPL-DSR-COMMCommunications Security and Network Segregation
PPL-DSR-DEF-DOCDatabase Definition Document
PPL-DSR-DEVSecure Development and Change Control
PPL-DSR-EVENTSecurity Event Register and Documentation
PPL-DSR-MOBILEPortable Devices and Removable Media
PPL-DSR-OFFICERSecurity Officer Appointment and Independence
PPL-DSR-PHYSPhysical and Environmental Security
PPL-DSR-PROCProcessor (Outsourcing) Controls
PPL-DSR-RESIDResidual Information and Decommissioning
PPL-DSR-RETAINData Retention and Disposal
PPL-DSR-RISKRisk Assessment and Penetration Testing
PPL-DSR-VENDORVendor Encryption and Cloud Hosting

Israel POPL Cross-Border Transfer

1 controls
Controls in the Israel POPL Cross-Border Transfer domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-CrossBorder-Transfer-Sec36-EU-Adequacy-Israel-Adequacy-SCCs-Reciprocity-Foreign-RecipientIsrael POPL Cross-Border Transfer + Section 36 + Privacy Protection (Transfer of Data to Databases Abroad) Regulations 5761-2001 + EU Adequacy Decision (2011) + SCCs + Foreign Recipient Obligations + Reciprocity

Israel POPL Data Security Regulations 2017

1 controls
Controls in the Israel POPL Data Security Regulations 2017 domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-DataSecurity-Regulations2017-ISO-CISO-Access-Logging-Backup-Physical-Removable-Annual-AuditIsrael POPL Data Security Regulations 5777-2017 + ISO Information Security Officer + Access Control + Logging + Backup + Physical Security + Removable Media + Risk Assessment + Penetration Testing + Annual Internal Audit + Amendment 13 Cyber Updates

Israel POPL Data Subject Rights

1 controls
Controls in the Israel POPL Data Subject Rights domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-DataSubjectRights-Access-Correction-Information-Delivery-Sec13-14-23A-23C-Subject-NotificationIsrael POPL Data Subject Rights - Section 13 Right of Access + Section 14 Right of Correction + Section 23A-C Prohibition on Information Delivery + Notice Obligation + Right to Object + Amendment 13 Enhancements

Israel POPL Database Registration

1 controls
Controls in the Israel POPL Database Registration domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-Database-Registration-Definition-Document-Security-Level-Classification-Sec7-8-PPA-RegistryIsrael POPL Database Registration + Section 7 Database Definitions + Section 8 Registration Requirement + Database Definition Document + Security Level Classification + PPA Public Registry + Amendment 13 Threshold Changes

Israel POPL Enforcement

1 controls
Controls in the Israel POPL Enforcement domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-Enforcement-PPA-Civil-Criminal-Administrative-Amendment13-Coord-GDPR-Adequacy-Convention108Israel POPL Enforcement + Privacy Protection Authority (PPA) + Civil Section 29 + Criminal Section 5 + Administrative Sanctions + Amendment 13 NIS 5 Million Fines + Coordination GDPR Adequacy + Convention 108

Israel POPL Incident Response + Breach

1 controls
Controls in the Israel POPL Incident Response + Breach domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-Incident-Response-Breach-Notification-PPA-Affected-Customers-Section32A-DSR2017-24HoursIsrael POPL Incident Response + Section 32A Severe Security Incident Notification + Data Security Regulations 2017 Article 11 + PPA Notification + Affected Customers + 24-72 Hour Window + Amendment 13 Enforcement

Israel POPL Outsourcing + Marketing

1 controls
Controls in the Israel POPL Outsourcing + Marketing domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-Outsourcing-DataHolder-DirectMarketing-Section17F-EmployeeTraining-Vendor-DPA-SubcontractorIsrael POPL Outsourcing + Data Holder + Section 17F Direct Marketing + Section 23E Direct Mailing Compliance + Employee Training and Vetting + Vendor DPA + Subcontractor Flow-Down

Israel POPL Purpose Limitation

1 controls
Controls in the Israel POPL Purpose Limitation domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-PurposeLimitation-UseLimitations-Sec8B-LawfulProcessing-Notice-Consent-DataMinimisationIsrael POPL Purpose Limitation + Section 8B Use Limitations + Lawful Processing Bases + Notice + Consent + Data Minimisation + Storage Limitation + Amendment 13 Modernisation

Israel POPL Scope + Constitutional Right

1 controls
Controls in the Israel POPL Scope + Constitutional Right domain of Israel Protection of Privacy Law (5741-1981)1 controls
CodeTitle
IsraelPPL-Scope-5741-1981-Knesset-Amendment13-March2024-BasicLaw-Dignity-Sec1-Right-PrivacyIsrael Protection of Privacy Law 5741-1981 Scope + Knesset + Amendment No. 13 March 2024 + Basic Law Human Dignity and Liberty + Section 1 Right to Privacy + Constitutional Status + Chapter 1 Infringement of Privacy

Protection of Privacy Law Statutory Sections

10 controls
Controls in the Protection of Privacy Law Statutory Sections domain of Israel Protection of Privacy Law (5741-1981)10 controls
CodeTitle
PPL-S11-CONSENTLawful Collection and Informed Consent
PPL-S13-ACCESSSubject Right of Access
PPL-S14-CORRECTRight to Correction and Deletion
PPL-S16-CONFConfidentiality and Use Limitation
PPL-S17-SECSecurity Obligation and Database Manager Role
PPL-S17F-DMDirect Mailing and Opt-Out
PPL-S2-DEFPersonal Information and Sensitive Information Definitions
PPL-S23-CONSPublic Body Data Sharing and Consent
PPL-S5-PENALCivil and Criminal Penalties
PPL-S8-REGDatabase Registration with the Registrar

Supervision and Cross Border Transfer

2 controls
Controls in the Supervision and Cross Border Transfer domain of Israel Protection of Privacy Law (5741-1981)2 controls
CodeTitle
PPL-PPA-INSPECTPPA Inspections and Information Requests
PPL-REG2-XBORDERCross-Border Transfer Restrictions

Your Compliance Coverage

If you comply with Israel Protection of Privacy Law (5741-1981), you already cover:

Maps to 102 other frameworks

35 total controls
Vietnam Law on Cybersecurity (No. 24/2018/QH14)
4 source controls mapped|3 target controls covered
11%
USMCA Chapter 19 - Digital Trade (United States-Mexico-Canada Agreement)
4 source controls mapped|2 target controls covered
11%
TEFCA - Trusted Exchange Framework and Common Agreement
4 source controls mapped|1 target controls covered
11%
Pakistan Personal Data Protection Bill 2023
4 source controls mapped|3 target controls covered
11%
Switzerland New Federal Act on Data Protection (nFADP/nDSG, 2023)
4 source controls mapped|9 target controls covered
11%
11%
Barbados Data Protection Act 2019
4 source controls mapped|5 target controls covered
11%
ISO/IEC 29100:2024
4 source controls mapped|4 target controls covered
11%
Azerbaijan Law on Personal Data (2010)
4 source controls mapped|4 target controls covered
11%
ISO/IEC 23894:2023
4 source controls mapped|4 target controls covered
11%
South Korea ISMS-P
4 source controls mapped|4 target controls covered
11%
Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018)
4 source controls mapped|5 target controls covered
11%
ISO/IEC 27557:2022 - Organisational Privacy Risk Management
4 source controls mapped|2 target controls covered
11%
FTC GLBA Safeguards Rule (16 CFR Part 314)
4 source controls mapped|1 target controls covered
11%
Florida Digital Bill of Rights (FDBR)
4 source controls mapped|3 target controls covered
11%
ISO/IEC 38500:2024 - Governance of IT
4 source controls mapped|4 target controls covered
11%
Vermont Artificial Intelligence and Consumer Data Act (AICDA)
3 source controls mapped|1 target controls covered
9%
Regulation on the European Health Data Space (EHDS)
3 source controls mapped|3 target controls covered
9%
Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA)
3 source controls mapped|1 target controls covered
9%
Russia Federal Law on Personal Data (152-FZ)
3 source controls mapped|2 target controls covered
9%
Privacy Act 1988 (Australia)
3 source controls mapped|3 target controls covered
9%
NIST Privacy Framework
3 source controls mapped|1 target controls covered
9%
Ley Orgánica de Protección de Datos Personales (LOPDP)
3 source controls mapped|2 target controls covered
9%
Law No. 172-13 on the Protection of Personal Data
3 source controls mapped|2 target controls covered
9%
South Korea PIPA
3 source controls mapped|1 target controls covered
9%
Bahrain PDPL
3 source controls mapped|4 target controls covered
9%
IAIS Insurance Core Principles (ICPs)
3 source controls mapped|2 target controls covered
9%
GDPR
3 source controls mapped|6 target controls covered
9%
Australian Privacy Principles (APPs)
3 source controls mapped|4 target controls covered
9%
Singapore Government Instruction Manual on ICT&SS Management (IM8)
3 source controls mapped|2 target controls covered
9%
APPI
3 source controls mapped|3 target controls covered
9%
Armenia Law on Protection of Personal Data (2015)
3 source controls mapped|3 target controls covered
9%
ISO/IEC 29134:2023
3 source controls mapped|1 target controls covered
9%
Estonia Personal Data Protection Act (Isikuandmete kaitse seadus, 2019)
3 source controls mapped|1 target controls covered
9%
COSO Internal Control - Integrated Framework (2013)
3 source controls mapped|1 target controls covered
9%
ISO/IEC 27400:2022
3 source controls mapped|2 target controls covered
9%
Azure Security Benchmark
3 source controls mapped|1 target controls covered
9%
W3C Verifiable Credentials (VC) Data Model 2.0
2 source controls mapped|1 target controls covered
6%
SWIFT CSCF
2 source controls mapped|1 target controls covered
6%
Protective Security Policy Framework (PSPF) Release 2024
2 source controls mapped|1 target controls covered
6%
PCAOB AS 2201 - Audit of Internal Control Over Financial Reporting (ICFR)
2 source controls mapped|2 target controls covered
6%
OWASP Top 10:2025
2 source controls mapped|1 target controls covered
6%
OWASP DevSecOps Maturity Model (DSOMM)
2 source controls mapped|2 target controls covered
6%
OWASP ASVS
2 source controls mapped|1 target controls covered
6%
OCC Heightened Standards (12 CFR Part 30, Appendix D)
2 source controls mapped|1 target controls covered
6%
NIST Post-Quantum Cryptography Standards (FIPS 203, 204, 205)
2 source controls mapped|1 target controls covered
6%
MITRE D3FEND
2 source controls mapped|1 target controls covered
6%
ISO 28001:2007 Supply Chain Security Management
2 source controls mapped|1 target controls covered
6%
ISO 26262:2018 - Functional Safety for Road Vehicles
2 source controls mapped|1 target controls covered
6%
BRCGS Global Standard for Food Safety Issue 9
2 source controls mapped|3 target controls covered
6%
IEC 60601-1 - Medical Electrical Equipment Safety
2 source controls mapped|2 target controls covered
6%
6%
ISO 22739:2024 - Blockchain and Distributed Ledger Technologies Vocabulary
2 source controls mapped|3 target controls covered
6%
PCI DSS 4.0
2 source controls mapped|1 target controls covered
6%
ISO 27017
2 source controls mapped|1 target controls covered
6%
ISO 56002
2 source controls mapped|2 target controls covered
6%
ISO 22320:2018
2 source controls mapped|3 target controls covered
6%
ISO 37000:2021 - Governance of Organizations
2 source controls mapped|3 target controls covered
6%
ISO 19011
2 source controls mapped|2 target controls covered
6%
ISO 31000:2018
2 source controls mapped|1 target controls covered
6%
Science Based Targets Initiative (SBTi) - Net-Zero Standard
2 source controls mapped|2 target controls covered
6%
Annex 11 to EU GMP - Computerised Systems
2 source controls mapped|3 target controls covered
6%
ISO/IEC 17025:2017 - General Requirements for Testing and Calibration
2 source controls mapped|2 target controls covered
6%
NIST SP 800-171A Rev 3 - Assessing CUI Security Requirements
2 source controls mapped|3 target controls covered
6%
IEC 62304:2015 Medical Device Software Lifecycle Processes
2 source controls mapped|3 target controls covered
6%
ISO/IEC 25012:2008 - Data Quality Model
2 source controls mapped|2 target controls covered
6%
ISO 20400:2017 - Sustainable Procurement
2 source controls mapped|2 target controls covered
6%
ISO 27018
2 source controls mapped|1 target controls covered
6%
DAMA-DMBOK2 - Data Management Body of Knowledge (2nd Edition)
2 source controls mapped|2 target controls covered
6%
ISO 14064 - Greenhouse Gas Accounting and Verification (Parts 1-3)
2 source controls mapped|1 target controls covered
6%
COBIT 2019
2 source controls mapped|1 target controls covered
6%
ISO/IEC 30111:2019
2 source controls mapped|1 target controls covered
6%
ASIS SPC.1-2009 - Organizational Resilience Standard
2 source controls mapped|1 target controls covered
6%
ISO 41001:2018 - Facility Management Systems
2 source controls mapped|2 target controls covered
6%
CISA Cross-Sector Cybersecurity Performance Goals (CPG) 2.0
2 source controls mapped|1 target controls covered
6%
ISO/IEC 27004:2016
2 source controls mapped|2 target controls covered
6%
IEC 62351 - Power Systems Communication Security
2 source controls mapped|1 target controls covered
6%
FFIEC IT Examination Handbook
2 source controls mapped|1 target controls covered
6%
ISO 8000 - Data Quality
2 source controls mapped|2 target controls covered
6%
ISO/IEC 29147:2018
2 source controls mapped|1 target controls covered
6%
ISO/IEC 27007:2020
2 source controls mapped|1 target controls covered
6%
FedRAMP High
2 source controls mapped|1 target controls covered
6%
NIST SP 800-53 Revision 5.1 HIGH
2 source controls mapped|1 target controls covered
6%
FedRAMP Moderate
2 source controls mapped|1 target controls covered
6%
NIST SP 800-53 Rev 5 MODERATE
2 source controls mapped|1 target controls covered
6%
NIST SP 800-53 Rev 5 LOW
2 source controls mapped|1 target controls covered
6%
ISO/IEC 27031:2011
2 source controls mapped|1 target controls covered
6%
US Foreign Corrupt Practices Act (FCPA)
2 source controls mapped|1 target controls covered
6%
ISO 27043
2 source controls mapped|1 target controls covered
6%
ISO/SAE 21434
2 source controls mapped|1 target controls covered
6%
ISO/IEC 27003:2017
2 source controls mapped|1 target controls covered
6%
Illinois Biometric Information Privacy Act (BIPA)
2 source controls mapped|1 target controls covered
6%
French Sapin II Law (Law No. 2016-1691)
2 source controls mapped|1 target controls covered
6%
IATA Operational Safety Audit (IOSA) Standards Manual
2 source controls mapped|1 target controls covered
6%
ICH Q10 - Pharmaceutical Quality System
2 source controls mapped|2 target controls covered
6%

What is Israel Protection of Privacy Law (5741-1981) and who does it apply to?

Israel Protection of Privacy Law (5741-1981) is a compliance framework from Israel with 12 domains and 35 controls. Israel's Protection of Privacy Law (5741-1981, amended through 2024) provides the legal framework for data protection, administered by the Privacy Protection Authority (PPA) under the Ministry of Justice. Israel holds EU adequacy recognition (since 2011). The 2024 amendments (Amendment 13) significantly strengthen the framework with expanded PPA enforcement powers, mandatory breach notification, increased penalties, and enhanced data subject rights. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

What does Israel Protection of Privacy Law (5741-1981) actually require?

Israel Protection of Privacy Law (5741-1981) has 35 controls organised across 12 domains. The largest domains are Data Security Regulations 2017 (14 controls), Protection of Privacy Law Statutory Sections (10 controls), Supervision and Cross Border Transfer (2 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

If I already comply with another framework, how much of Israel Protection of Privacy Law (5741-1981) do I already cover?

Israel Protection of Privacy Law (5741-1981) maps to 102 other compliance frameworks. The top mapping partners are Vietnam Law on Cybersecurity (No. 24/2018/QH14) (11% coverage), USMCA Chapter 19 - Digital Trade (United States-Mexico-Canada Agreement) (11% coverage), TEFCA - Trusted Exchange Framework and Common Agreement (11% coverage). Use our comparison tool to explore control-level mappings between frameworks.

How do I implement Israel Protection of Privacy Law (5741-1981)?

Start your Israel Protection of Privacy Law (5741-1981) compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Israel Protection of Privacy Law (5741-1981) requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 35 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 686 frameworks.

Get Started Free →

Free forever — no credit card required