Back to Frameworks

Samoa Telecommunications Act (2005) - Privacy & Data Protection

Samoa
v2005
10 domains
28 controls

Samoa's Telecommunications Act 2005, administered by the Office of the Regulator, includes provisions for privacy and confidentiality of telecommunications. The Act protects customer data held by telecommunications providers, requires consent for disclosure, and establishes obligations for service providers regarding data security. Samoa does not yet have standalone data protection legislation, but the Telecommunications Act provides the primary privacy protections for electronic communications and customer data.

Verified

Samoa Telecommunications Act (2005) - Privacy & Data Protection is a compliance framework from Samoa with 10 domains and 28 controls that map to 40 other frameworks. The largest domains are Samoa Telecommunications Act: Access Control and Security (5 controls), Samoa Telecommunications Act: Confidentiality and Lawful Disclosure (5 controls), Customer Information Confidentiality (Sections 48 to 51) (4 controls). Every control below carries what it requires and what an assessor expects to see.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (10)

Customer Information Confidentiality (Sections 48 to 51)

4 controls
Controls in the Customer Information Confidentiality (Sections 48 to 51) domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection4 controls
CodeTitle
SAM-1Customer Information Confidentiality (Section 48)
SAM-2Consent Requirements
SAM-5Government Access to Information (Section 51)
SAM-6Legal Authorization Requirements

Enforcement

1 controls
Controls in the Enforcement domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
SAMOATEL-4Enforcement

Rights

1 controls
Controls in the Rights domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
SAMOATEL-2Consent and Rights

Samoa Telecommunications Act: Access Control and Security

5 controls
Controls in the Samoa Telecommunications Act: Access Control and Security domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection5 controls
CodeTitle
STA-10Security Safeguards over Networks and Systems
STA-13Encryption of Sensitive Customer Data
STA-14Logging of Access to Customer Data
STA-4Access Control over Subscriber Records
STA-6Employee Confidentiality Undertakings

Samoa Telecommunications Act: Confidentiality and Lawful Disclosure

5 controls
Controls in the Samoa Telecommunications Act: Confidentiality and Lawful Disclosure domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection5 controls
CodeTitle
STA-1Confidentiality of Communications
STA-19Recording of Calls and Communications
STA-2Lawful Interception and Disclosure Controls
STA-20Number and Identifier Protection
STA-5Traffic and Metadata Protection

Samoa Telecommunications Act: Customer Data Handling

4 controls
Controls in the Samoa Telecommunications Act: Customer Data Handling domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection4 controls
CodeTitle
STA-16Privacy by Design in New Services
STA-3Customer Personal Data Handling
STA-8Data Retention Limits
STA-9Marketing Use of Customer Data

Samoa Telecommunications Act: Incidents, Customer Rights and Regulator

4 controls
Controls in the Samoa Telecommunications Act: Incidents, Customer Rights and Regulator domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection4 controls
CodeTitle
STA-11Incident Notification
STA-12Customer Access to Their Own Information
STA-15Regulator Cooperation
STA-18Complaint Handling

Samoa Telecommunications Act: Third Parties and Cross-Border Transfer

2 controls
Controls in the Samoa Telecommunications Act: Third Parties and Cross-Border Transfer domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection2 controls
CodeTitle
STA-17Cross Border Transfer Controls
STA-7Third Party Provider Obligations

Scope

1 controls
Controls in the Scope domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
SAMOATEL-1Scope and Lawful Processing

Security

1 controls
Controls in the Security domain of Samoa Telecommunications Act (2005) - Privacy & Data Protection1 controls
CodeTitle
SAMOATEL-3Security and Cross-Border

Your Compliance Coverage

If you comply with Samoa Telecommunications Act (2005) - Privacy & Data Protection, you already cover:

Maps to 40 other frameworks

28 total controls
TSA Pipeline Cybersecurity Directives
2 source controls mapped|1 target controls covered
7%
SLSA
2 source controls mapped|1 target controls covered
7%
Sigstore - Software Artifact Signing and Verification
2 source controls mapped|1 target controls covered
7%
SIG (Shared Assessments)
2 source controls mapped|1 target controls covered
7%
Secure by Design: A Guide for Manufacturers (CISA)
2 source controls mapped|1 target controls covered
7%
OWASP SAMM
2 source controls mapped|1 target controls covered
7%
ISO 22739:2024 - Blockchain and Distributed Ledger Technologies Vocabulary
2 source controls mapped|3 target controls covered
7%
BSI IT-Grundschutz
2 source controls mapped|1 target controls covered
7%
NIST SP 800-53 Rev 5
2 source controls mapped|3 target controls covered
7%
CISA Cross-Sector Cybersecurity Performance Goals (CPG) 2.0
2 source controls mapped|1 target controls covered
7%
ISO 27017
2 source controls mapped|1 target controls covered
7%
NIST SP 800-171A Rev 3 - Assessing CUI Security Requirements
2 source controls mapped|1 target controls covered
7%
ISO/IEC 27400:2022
2 source controls mapped|1 target controls covered
7%
Authorised Economic Operator (AEO) Programmes - Global Standards
2 source controls mapped|1 target controls covered
7%
ISO/IEC 27011:2024
2 source controls mapped|1 target controls covered
7%
South Korea ISMS-P
2 source controls mapped|1 target controls covered
7%
ISO/SAE 21434
2 source controls mapped|1 target controls covered
7%
US Automated Commercial Environment (ACE) - CBP Trade Data Requirements
2 source controls mapped|1 target controls covered
7%
ASD Strategies to Mitigate Cyber Security Incidents
2 source controls mapped|2 target controls covered
7%
ISO 27799
2 source controls mapped|1 target controls covered
7%
Singapore Government Instruction Manual on ICT&SS Management (IM8)
2 source controls mapped|1 target controls covered
7%
ISO 13485
2 source controls mapped|1 target controls covered
7%
DAMA-DMBOK2 - Data Management Body of Knowledge (2nd Edition)
2 source controls mapped|1 target controls covered
7%
NIST Cybersecurity Framework 2.0
2 source controls mapped|1 target controls covered
7%
NIST SP 800-190
2 source controls mapped|1 target controls covered
7%
NRC 10 CFR 73.54 - Nuclear Facility Cybersecurity
2 source controls mapped|1 target controls covered
7%
7%
ISO 27043
2 source controls mapped|1 target controls covered
7%
FFIEC Cybersecurity Assessment Tool (CAT)
2 source controls mapped|1 target controls covered
7%
IEC 62351 - Power Systems Communication Security
2 source controls mapped|1 target controls covered
7%
ISO 27018
2 source controls mapped|1 target controls covered
7%
3GPP 5G Security Architecture (TS 33.501)
2 source controls mapped|2 target controls covered
7%
SOC 2
2 source controls mapped|2 target controls covered
7%
Uganda Data Protection and Privacy Act (2019)
2 source controls mapped|1 target controls covered
7%
SSAE 18 - Attestation Standards (SOC Reporting)
2 source controls mapped|2 target controls covered
7%
TISAX - Trusted Information Security Assessment Exchange
2 source controls mapped|1 target controls covered
7%
Security of Critical Infrastructure Act 2018 (SOCI)
2 source controls mapped|1 target controls covered
7%
UK Telecommunications (Security) Act 2021
2 source controls mapped|1 target controls covered
7%

What is Samoa Telecommunications Act (2005) - Privacy & Data Protection and who does it apply to?

Samoa Telecommunications Act (2005) - Privacy & Data Protection is a compliance framework from Samoa with 10 domains and 28 controls. Samoa's Telecommunications Act 2005, administered by the Office of the Regulator, includes provisions for privacy and confidentiality of telecommunications. The Act protects customer data held by telecommunications providers, requires consent for disclosure, and establishes obligations for service providers regarding data security. Samoa does not yet have standalone data protection legislation, but the Telecommunications Act provides the primary privacy protections for electronic communications and customer data. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

What does Samoa Telecommunications Act (2005) - Privacy & Data Protection actually require?

Samoa Telecommunications Act (2005) - Privacy & Data Protection has 28 controls organised across 10 domains. The largest domains are Samoa Telecommunications Act: Access Control and Security (5 controls), Samoa Telecommunications Act: Confidentiality and Lawful Disclosure (5 controls), Customer Information Confidentiality (Sections 48 to 51) (4 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

If I already comply with another framework, how much of Samoa Telecommunications Act (2005) - Privacy & Data Protection do I already cover?

Samoa Telecommunications Act (2005) - Privacy & Data Protection maps to 40 other compliance frameworks. The top mapping partners are TSA Pipeline Cybersecurity Directives (7% coverage), SLSA (7% coverage), Sigstore - Software Artifact Signing and Verification (7% coverage). Use our comparison tool to explore control-level mappings between frameworks.

How do I implement Samoa Telecommunications Act (2005) - Privacy & Data Protection?

Start your Samoa Telecommunications Act (2005) - Privacy & Data Protection compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Samoa Telecommunications Act (2005) - Privacy & Data Protection requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 28 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 686 frameworks.

Get Started Free →

Free forever — no credit card required