DPDP 2.9: DPIA & Compliance Audits for Significant Data Fiduciaries

If the Central Government notifies your organisation as a Significant Data Fiduciary, the DPDP compliance clock resets to a much higher standard. …

DPDP & Tech 1.9: DPIA & Compliance Audits for Significant Data Fiduciaries
DPDP 2.9: DPIA & Compliance Audits for Significant Data Fiduciaries

DPDP 2.8: Data Principal Rights Portal — Building the Self-Service Compliance Layer

Every person whose data you hold has legal rights over it. Under the DPDP Act, 2023, you must build the technology that makes those rights …

DPDP & Tech 1.8: Data Principal Rights Portal — Building the Self-Service Compliance Layer
DPDP 2.8: Data Principal Rights Portal — Building the Self-Service Compliance Layer

DPDP 2.7: Automated Data Erasure — ‘Right to be Forgotten’ meets your database

DPDP 2.7: Automated Data Erasure — ‘Right to be Forgotten’ meets your database

DPDP 2.6: Breach Detection & 72-Hour Notification — When Seconds Count

A personal data breach has just occurred in your organisation. The 72-hour clock has started. Do your systems know yet? Under Rule 7(2)(b) of the …

dPDP & tech 1.6: Breach Detection & 72-Hour Notification — When Seconds Count
DPDP 2.6: Breach Detection & 72-Hour Notification — When Seconds Count

DPDP 2.5: Most breach studies show the average time to detect a breach is over 200 days. Under DPDP, you have 72 hours to report one.

DPDP 2.5: Most breach studies show the average time to detect a breach is over 200 days. Under DPDP, you have 72 hours to report one.

DPDP 2.4: Access Control & Identity Management — Who Can See What?

DPDP 2.4: Access Control & Identity Management — Who Can See What?

DPDP 2.3: Your database was just breached. What does the attacker actually see?

Your database was just breached. What does the attacker actually see? If the answer is “real names, phone numbers, and financial records” — your …

Your database was just breached. What does the attacker actually see?
DPDP 2.3: Your database was just breached. What does the attacker actually see?

DPDP 2.2: Consent Management Technology — The First Line of Compliance

That checkbox on your sign-up form is not consent under DPDP. Here’s what actually is. Most organisations collecting customer data today have some …

Consent Management Technology — The First Line of Compliance
DPDP 2.2: Consent Management Technology — The First Line of Compliance