8.
Enterprises providing services on telecom networks, the Internet and other added value services on
cyberspace and system administrators are responsible to coordinate with functional [State] agencies
in dealing with information in cyberspace with the contents prescribed in clauses 1 to 5 inclusive
above.
9.
Organizations and individuals who compile, publish and disseminate information in cyberspace with
the contents prescribed in clauses 1 to 5 inclusive above must remove it when so requested by a
CTF and shall be liable [for same] in accordance with law.
Article 17
Prevention of and combatting cyberespionage; and protection of information classified as State
secret, work secrets, business secrets, personal secrets, family secrets and private life in
cyberspace
1.
Conduct constituting cyberespionage; and infringement of State secrets, work secrets, business
secrets, personal secrets, family secrets and private life in cyberspace comprises:
(a)
Appropriating, buying or selling, seizing and/or intentionally disclosing information classified as State
secret or work secrets; business secrets, personal secrets, family secrets and private life [adversely]
impacting on the honour, reputation, dignity and lawful rights and interests of agencies, organizations
and individuals;
(b)
Deliberately deleting, damaging, misplacing and/or changing information classified as State secret, or
work secrets, business secrets, personal secrets, family secrets and private life which is transmitted
and/or stored in cyberspace;
(c)
Deliberately altering, cancelling or invalidating technical measures which have been constructed
and/or applied in order to protect information classified as State secret, work secrets, business
secrets, personal secrets, family secrets and private life;
(d)
Putting in cyberspace information being State secret or work secrets, business secrets, personal
secrets, family secrets and private life contrary to law;
(dd)
Deliberately listening to or recording in sound or images conversations, contrary to law;
(e)
Other acts of intentional infringement of State secrets, work secrets, business secrets, personal
secrets, family secrets and private life.
2.
System administrations have the following responsibilities:
(a)
To inspect [audit] cybersecurity in order to detect and remove malicious codes and malicious
hardware and to remedy security weaknesses and vulnerabilities; and to detect and deal with
unlawful infringement activities or other threats to cybersecurity;
(b)
To apply managerial and technical measures in order to prevent, detect and block any acts of
cyberespionage, infringements of State secrets, work secrets, business secrets, personal secrets,
family secrets or private life on the information system and to promptly remove any information
related to such conduct;
(c)
To coordinate with and implement requests made by the CTF regarding prevention and combatting
cyberespionage and in order to protect information classified as State secret, work secrets, business
secrets, personal secrets, family secrets or private life on the information system.
3.
Agencies compiling and storing information and data classified as State secret are responsible to
protect such State secret information which they have compiled and stored on computers or other
equipment or exchanged in cyberspace, in accordance with the law on protection of State secrets.
Allens - Vietnam Laws Online Database on www.vietnamlaws.com
12