8. Enterprises providing services on telecom networks, the Internet and other added value services on cyberspace and system administrators are responsible to coordinate with functional [State] agencies in dealing with information in cyberspace with the contents prescribed in clauses 1 to 5 inclusive above. 9. Organizations and individuals who compile, publish and disseminate information in cyberspace with the contents prescribed in clauses 1 to 5 inclusive above must remove it when so requested by a CTF and shall be liable [for same] in accordance with law. Article 17 Prevention of and combatting cyberespionage; and protection of information classified as State secret, work secrets, business secrets, personal secrets, family secrets and private life in cyberspace 1. Conduct constituting cyberespionage; and infringement of State secrets, work secrets, business secrets, personal secrets, family secrets and private life in cyberspace comprises: (a) Appropriating, buying or selling, seizing and/or intentionally disclosing information classified as State secret or work secrets; business secrets, personal secrets, family secrets and private life [adversely] impacting on the honour, reputation, dignity and lawful rights and interests of agencies, organizations and individuals; (b) Deliberately deleting, damaging, misplacing and/or changing information classified as State secret, or work secrets, business secrets, personal secrets, family secrets and private life which is transmitted and/or stored in cyberspace; (c) Deliberately altering, cancelling or invalidating technical measures which have been constructed and/or applied in order to protect information classified as State secret, work secrets, business secrets, personal secrets, family secrets and private life; (d) Putting in cyberspace information being State secret or work secrets, business secrets, personal secrets, family secrets and private life contrary to law; (dd) Deliberately listening to or recording in sound or images conversations, contrary to law; (e) Other acts of intentional infringement of State secrets, work secrets, business secrets, personal secrets, family secrets and private life. 2. System administrations have the following responsibilities: (a) To inspect [audit] cybersecurity in order to detect and remove malicious codes and malicious hardware and to remedy security weaknesses and vulnerabilities; and to detect and deal with unlawful infringement activities or other threats to cybersecurity; (b) To apply managerial and technical measures in order to prevent, detect and block any acts of cyberespionage, infringements of State secrets, work secrets, business secrets, personal secrets, family secrets or private life on the information system and to promptly remove any information related to such conduct; (c) To coordinate with and implement requests made by the CTF regarding prevention and combatting cyberespionage and in order to protect information classified as State secret, work secrets, business secrets, personal secrets, family secrets or private life on the information system. 3. Agencies compiling and storing information and data classified as State secret are responsible to protect such State secret information which they have compiled and stored on computers or other equipment or exchanged in cyberspace, in accordance with the law on protection of State secrets.  Allens - Vietnam Laws Online Database on www.vietnamlaws.com 12

Select target paragraph3