Data protection: NITDA extends deadline for initial data audit report filing
The National Information Technology Development Agency (NITDA) has granted a three-month extension period that will elapse on Friday 25th October 2019 for the filing of initial audit report for every data controller and processor.
TheNewsGuru (TNG) reports Dr Isa Ali Ibrahim Pantami, Director General/Chief Executive Officer (CEO) of the NITDA and Chief Information Technology Officer of Nigeria made this known in a statement in Abuja.
This is following a series of consultations held by the agency with various industry and government stakeholders on the implementation of the Nigeria Data Protection Regulation (NDPR).
According to the statement, the overwhelming consensus of all stakeholder groups is that the NDPR is an appropriate regulation that would help provide clarity for data controllers and processors on the rights of data subjects, basis of processing personal data and transfer of data outside Nigeria among others.
“NITDA is pleased to note that stakeholders including other Sector Regulators, Government, Banks, Industry groups, Private Sector players among many others, have shown tremendous willingness towards compliance with the NDPR.
“Consequently, Article 4.1(5) of the NDPR requires Data Controllers to submit an initial audit report within six months of issuance of the Regulation (which lapsed on 25th July, 2019).
“Several Data Controllers have appealed for an extension of time to meet this obligation. Therefore, NITDA is hereby granting a three-month extension for the conduct of the initial audit report for every data Controller and Processor. This extension period would elapse on Friday 25th October 2019.
“This extension of time for the purpose of audit filing does not limit NITDA’s right to investigate and enforce other allegations of breach made against any Data Controller or Processor pursuant to the NDPR and the NITDA Act 2007,” the statement read.
TNG reports NITDA is a Federal Government Agency established in 2001 to implement the Nigerian Information Technology Policy as well as coordinate general IT development and regulation in the country.
Specifically, Section 6(a,c) of the Act mandates the NITDA to create a framework for the planning, research, development, standardization, application, coordination, monitoring, evaluation and regulation of Information Technology practices, activities and systems in Nigeria.
The Act also mandates the NITDA to develop guidelines for electronic governance and monitor the use of electronic data interchange and other forms of electronic communication transactions as an alternative to paper-based methods in government, commerce, education, the private and public sectors, labour, and other fields.