DPDP Act, 2023Deadline approaching
India's privacy law: notice & consent, security safeguards, breach reporting (72-hour report to the Board), data-principal rights. Penalties up to ₹250 crore.
Plain-language summaries of the regulations and standards our clients are asked about most, with the fastest route to meeting each one.
India's privacy law: notice & consent, security safeguards, breach reporting (72-hour report to the Board), data-principal rights. Penalties up to ₹250 crore.
Report cyber incidents within 6 hours, keep ICT logs for 180 days in India, sync clocks to NIC/NPL, name a point of contact.
The international standard for an information security management system — 93 Annex A controls in 4 themes, certified by an accredited body.
The reference list of web-application risks — broken access control, misconfiguration, supply-chain failures and more. The baseline for any VAPT.
Sector cyber-security directions: governance, VAPT, SOC monitoring, third-party risk and cyber resilience.
Payment-card security: segmentation, vulnerability management, script integrity on payment pages, logging.
Administrative, physical and technical safeguards for electronic patient data — and evidence your US clients will ask for.
Trust-services criteria and the NIST Cybersecurity Framework (Govern, Identify, Protect, Detect, Respond, Recover).
Most controls overlap. We map ISO 27001, DPDP and your sector's rules into one programme so you build evidence once.
Book a free 30-minute scoping call with our security team. No sales script, just an honest view of your risk and what to do first.