Executive Regulation of the Personal Data Protection Law
Executive Regulation of the Personal Data Protection Law — Article 26
Chapter Five · Controller and Processor Obligations
The Controller must ensure confidentiality by implementing electronic systems against unlawful access, leakage, tampering or misuse; maintaining recovery systems for physical or technical incidents; and testing the effectiveness of technical measures.
Interpretation and application must be checked against the official Arabic text and the current version.