Category Archives: Cyber Law

Fit4Privacy interview with Naavi

Posted in Cyber Law | Leave a comment

Why Not “Significant Data Fiduciary” be Process Centric

(Continuation of the previous article) One of the key aspects of DPDPA 2023 is the recognition of some Data Fiduciaries as “Significant Data Fiduciaries” (SDF). The SDF would have responsibilities to appoint a DPO, a Data Auditor and conduct DPIA … Continue reading

Posted in Cyber Law | Leave a comment

Why Not?..a series of questions on Rules to DPDPA?

(Continued from Previous Article) The MeitY is now trying to finalize the rules under DPDPA 2023. From the indications now available, the ministry is trying to release a complete set of 25/26 rules rolled into one notification. In the last … Continue reading

Posted in Cyber Law | Leave a comment

The “Data Privacy-Risk” in Account Aggregators

(Continued from previous article) One of the major issues of AAs (Account Aggregators) is the need to ensure the strict following of the “Fit and Proper” criteria to ensure that the valuable personal data that may come into the hands … Continue reading

Posted in Cyber Law | Leave a comment

Meity regulations under DPDPA may clash with RBI regulations

(This is a continuation of the previous article) RBI has been a powerful sectoral regulator and has assumed leadership for regulating the entire financial sector including the FinTech companies. In the process, some of its regulations clash with the implementation … Continue reading

Posted in Cyber Law | 1 Comment

There is no need to restrict the role of “Consent Manager” to the pre-DPDPA vision.

In many of my recent discussions with experts on the role of “Consent manager” under DPDPA 2023, I have encountered a view that the role of a consent manager under DPDPA is similar to what is envisaged under the Data … Continue reading

Posted in Cyber Law | Leave a comment