Back to Frameworks

Samoa Telecommunications Act (2005) - Privacy & Data Protection

Samoa
v2005
15 domains
24 controls

Samoa's Telecommunications Act 2005, administered by the Office of the Regulator, includes provisions for privacy and confidentiality of telecommunications. The Act protects customer data held by telecommunications providers, requires consent for disclosure, and establishes obligations for service providers regarding data security. Samoa does not yet have standalone data protection legislation, but the Telecommunications Act provides the primary privacy protections for electronic communications and customer data.

Unverified

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (15)

Access Management

1 controls
Controls in the Access Management domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-4Access Control over Subscriber Records

Communications Privacy

0 controls

Privacy and data protection in communications

Confidentiality Obligations

3 controls
Controls in the Confidentiality Obligations domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection3 controls
CodeTitle
STA-1Confidentiality of Communications
STA-19Recording of Calls and Communications
STA-6Employee Confidentiality Undertakings

Customer Information Protection

2 controls
Controls in the Customer Information Protection domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection2 controls
CodeTitle
SAM-1Customer Information Confidentiality (Section 48)
SAM-2Consent Requirements

Customer Rights

2 controls
Controls in the Customer Rights domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection2 controls
CodeTitle
STA-12Customer Access to Their Own Information
STA-18Complaint Handling

Government Access

2 controls
Controls in the Government Access domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection2 controls
CodeTitle
SAM-5Government Access to Information (Section 51)
SAM-6Legal Authorization Requirements

Incident Management

1 controls
Controls in the Incident Management domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-11Incident Notification

Lawful Access

1 controls
Controls in the Lawful Access domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-2Lawful Interception and Disclosure Controls

Logging and Monitoring

1 controls
Controls in the Logging and Monitoring domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-14Logging of Access to Customer Data

Personal Data Protection

6 controls
Controls in the Personal Data Protection domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection6 controls
CodeTitle
STA-17Cross Border Transfer Controls
STA-20Number and Identifier Protection
STA-3Customer Personal Data Handling
STA-5Traffic and Metadata Protection
STA-8Data Retention Limits
STA-9Marketing Use of Customer Data

Regulatory Engagement

1 controls
Controls in the Regulatory Engagement domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-15Regulator Cooperation

Regulatory Framework

0 controls

Building Safety Regulator and duty holders

Security Safeguards

2 controls
Controls in the Security Safeguards domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection2 controls
CodeTitle
STA-10Security Safeguards over Networks and Systems
STA-13Encryption of Sensitive Customer Data

Service Design

1 controls
Controls in the Service Design domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-16Privacy by Design in New Services

Third Party Management

1 controls
Controls in the Third Party Management domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
STA-7Third Party Provider Obligations

Your Compliance Coverage

If you comply with Samoa Telecommunications Act (2005) - Privacy & Data Protection, you already cover:

Maps to 96 other frameworks

24 total controls
NIS2 Directive Implementing Acts
2 source controls mapped|2 target controls covered
8%
FBI CJIS Security Policy
2 source controls mapped|2 target controls covered
8%
ISO 22739:2024 - Blockchain and Distributed Ledger Technologies Vocabulary
2 source controls mapped|3 target controls covered
8%
IEC 62351 - Power Systems Communication Security
2 source controls mapped|1 target controls covered
8%
NIST Privacy Framework 1.0
2 source controls mapped|2 target controls covered
8%
MTCS (Singapore)
2 source controls mapped|1 target controls covered
8%
FFIEC Cybersecurity Assessment Tool (CAT)
2 source controls mapped|1 target controls covered
8%
ITAR - International Traffic in Arms Regulations
2 source controls mapped|2 target controls covered
8%
OpenSSF Scorecard
2 source controls mapped|1 target controls covered
8%
ISO 27043
2 source controls mapped|1 target controls covered
8%
O-RAN WG11 Security Specification
2 source controls mapped|2 target controls covered
8%
NIST SP 800-144
2 source controls mapped|1 target controls covered
8%
MITRE D3FEND
2 source controls mapped|1 target controls covered
8%
OWASP API Security Top 10 - 2023
2 source controls mapped|3 target controls covered
8%
US NRC 10 CFR 73.54 - Cyber Security for Nuclear Power Plants
2 source controls mapped|1 target controls covered
8%
Spain ENS
2 source controls mapped|1 target controls covered
8%
MARS-E
2 source controls mapped|1 target controls covered
8%
ISO 27001:2022
2 source controls mapped|2 target controls covered
8%
PTES
2 source controls mapped|1 target controls covered
8%
BSI IT-Grundschutz
2 source controls mapped|1 target controls covered
8%
HL7 FHIR Security Framework
2 source controls mapped|3 target controls covered
8%
OWASP Top 10:2025
2 source controls mapped|3 target controls covered
8%
Oman National Cybersecurity Framework
2 source controls mapped|1 target controls covered
8%
OWASP Top 10 for LLM Applications 2025
2 source controls mapped|3 target controls covered
8%
UK Gambling Commission - Cyber Resilience Requirements
2 source controls mapped|1 target controls covered
8%
NIST SP 800-137
2 source controls mapped|1 target controls covered
8%
CISA Cross-Sector Cybersecurity Performance Goals (CPG) 2.0
2 source controls mapped|1 target controls covered
8%
NIST SP 800-145
2 source controls mapped|1 target controls covered
8%
ISMAP (Japan)
2 source controls mapped|1 target controls covered
8%
NAIC Insurance Data Security Model Law (MDL-668)
2 source controls mapped|1 target controls covered
8%
MiFID II / MiFIR
2 source controls mapped|1 target controls covered
8%
ISO 27017
2 source controls mapped|1 target controls covered
8%
NIST SP 800-171A Rev 3 - Assessing CUI Security Requirements
2 source controls mapped|1 target controls covered
8%
Authorised Economic Operator (AEO) Programmes - Global Standards
2 source controls mapped|1 target controls covered
8%
AWS Well-Architected Security Pillar
2 source controls mapped|1 target controls covered
8%
ISO/IEC 27011:2024
2 source controls mapped|1 target controls covered
8%
ISO/SAE 21434
2 source controls mapped|1 target controls covered
8%
ASD Strategies to Mitigate Cyber Security Incidents
2 source controls mapped|2 target controls covered
8%
US Automated Commercial Environment (ACE) - CBP Trade Data Requirements
2 source controls mapped|1 target controls covered
8%
ISO 27799
2 source controls mapped|1 target controls covered
8%
Saudi NCA ECC
2 source controls mapped|1 target controls covered
8%
Philippines Data Privacy Act (RA 10173)
2 source controls mapped|2 target controls covered
8%
NIST SP 800-88
2 source controls mapped|1 target controls covered
8%
Singapore Government Instruction Manual on ICT&SS Management (IM8)
2 source controls mapped|1 target controls covered
8%
NIST SP 800-53 Rev 5
2 source controls mapped|3 target controls covered
8%
ISO 13485
2 source controls mapped|1 target controls covered
8%
PropTech Security Standards - Smart Building Cybersecurity
2 source controls mapped|1 target controls covered
8%
DAMA-DMBOK2 - Data Management Body of Knowledge (2nd Edition)
2 source controls mapped|1 target controls covered
8%
ICAO Annex 17 - Aviation Security (AVSEC)
2 source controls mapped|1 target controls covered
8%
NIST Cybersecurity Framework 2.0
2 source controls mapped|1 target controls covered
8%
NIST SP 800-92
2 source controls mapped|1 target controls covered
8%
NIST SP 800-123
2 source controls mapped|1 target controls covered
8%
NIST SP 800-190
2 source controls mapped|1 target controls covered
8%
MITRE ATT&CK
2 source controls mapped|1 target controls covered
8%
OWASP ASVS
2 source controls mapped|1 target controls covered
8%
OWASP DevSecOps Maturity Model (DSOMM)
2 source controls mapped|3 target controls covered
8%
ISO 27018
2 source controls mapped|1 target controls covered
8%
NIST SP 800-146
2 source controls mapped|1 target controls covered
8%
MDS2 (Medical Device)
2 source controls mapped|1 target controls covered
8%
OWASP MASVS
2 source controls mapped|1 target controls covered
8%
NIST SP 800-63-4
2 source controls mapped|1 target controls covered
8%
NIST SP 800-66
2 source controls mapped|1 target controls covered
8%
Azure Security Benchmark
2 source controls mapped|1 target controls covered
8%
ISO/IEC 27006:2024
2 source controls mapped|1 target controls covered
8%
8%
NIST SP 800-61
2 source controls mapped|1 target controls covered
8%
South Korea ISMS-P
2 source controls mapped|1 target controls covered
8%
ISO/IEC 27400:2022
2 source controls mapped|1 target controls covered
8%
8%
UK Telecommunications (Security) Act 2021
2 source controls mapped|1 target controls covered
8%
SSAE 18 - Attestation Standards (SOC Reporting)
2 source controls mapped|2 target controls covered
8%
SWIFT Customer Security Programme (CSP)
2 source controls mapped|1 target controls covered
8%
TSA Pipeline Cybersecurity Directives
2 source controls mapped|1 target controls covered
8%
3GPP 5G Security Architecture (TS 33.501)
2 source controls mapped|2 target controls covered
8%
SLSA
2 source controls mapped|1 target controls covered
8%
TSA Pipeline Security
2 source controls mapped|1 target controls covered
8%
UNECE WP.29 R156
2 source controls mapped|1 target controls covered
8%
Security of Critical Infrastructure Act 2018 (SOCI)
2 source controls mapped|1 target controls covered
8%
Secure by Design: A Guide for Manufacturers (CISA)
2 source controls mapped|1 target controls covered
8%
UNECE WP.29 R155
2 source controls mapped|1 target controls covered
8%
TISAX - Trusted Information Security Assessment Exchange
2 source controls mapped|1 target controls covered
8%
Uganda Data Protection and Privacy Act (2019)
2 source controls mapped|1 target controls covered
8%
OWASP SAMM
2 source controls mapped|1 target controls covered
8%
SIG (Shared Assessments)
2 source controls mapped|1 target controls covered
8%
Sigstore - Software Artifact Signing and Verification
2 source controls mapped|1 target controls covered
8%
SOC 2
2 source controls mapped|2 target controls covered
8%
SSDF (NIST)
2 source controls mapped|1 target controls covered
8%
Zimbabwe Data Protection Act (2021)
2 source controls mapped|1 target controls covered
8%
UK PSTI Act
2 source controls mapped|1 target controls covered
8%

Frequently Asked Questions

What is Samoa Telecommunications Act (2005) - Privacy & Data Protection?

Samoa Telecommunications Act (2005) - Privacy & Data Protection is a compliance framework from Samoa with 15 domains and 24 controls. Samoa's Telecommunications Act 2005, administered by the Office of the Regulator, includes provisions for privacy and confidentiality of telecommunications. The Act protects customer data held by telecommunications providers, requires consent for disclosure, and establishes obligations for service providers regarding data security. Samoa does not yet have standalone data protection legislation, but the Telecommunications Act provides the primary privacy protections for electronic communications and customer data. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

How many controls does Samoa Telecommunications Act (2005) - Privacy & Data Protection have?

Samoa Telecommunications Act (2005) - Privacy & Data Protection has 24 controls organised across 15 domains. The largest domains are Personal Data Protection (6 controls), Confidentiality Obligations (3 controls), Customer Information Protection (2 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

What frameworks does Samoa Telecommunications Act (2005) - Privacy & Data Protection map to?

Samoa Telecommunications Act (2005) - Privacy & Data Protection maps to 96 other compliance frameworks. The top mapping partners are NIS2 Directive Implementing Acts (8% coverage), FBI CJIS Security Policy (8% coverage), ISO 22739:2024 - Blockchain and Distributed Ledger Technologies Vocabulary (8% coverage). Use our comparison tool to explore control-level mappings between frameworks.

How do I get started with Samoa Telecommunications Act (2005) - Privacy & Data Protection compliance?

Start your Samoa Telecommunications Act (2005) - Privacy & Data Protection compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Samoa Telecommunications Act (2005) - Privacy & Data Protection requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 24 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 700 frameworks.

Get Started Free →

Free forever — no credit card required