India's most complete practitioner resource for the Digital Personal Data Protection Act 2023. From foundation to board assurance — structured, sequenced, free.
New to DPDP? Read these in order. A structured, sequential curriculum built for compliance practitioners, DPOs, and internal audit teams in Indian BFSI.
The complete regulatory foundation for India's data protection regime.
Business impact, penalty exposure, and the compliance imperative for BFSI.
A structured implementation roadmap for RBI-regulated banks.
Governance structure, 8-KRI framework, and data discovery methodology.
Get your DPDP baseline score and identify compliance gaps.
When and how to run a Data Protection Impact Assessment under DPDP.
Building a defensible Record of Processing Activities for DPDP.
From operational compliance to board-ready assurance reporting.
Applied guides and sector commentary for compliance teams who understand the law and need to act. Organised by topic.
DPDP implementation for RBI-regulated banks, ROPA, DPIA, and gap assessment guides
Health data obligations, payment data governance, vendor management
FAIR model, PASTA threat modelling, CAI scoring
Sector-specific scenarios — OEM, NBFC, healthcare, EdTech, automotive, B2B SaaS and more.
DPDP Act, RBI ITGRC, RBI DPSC, SEBI CSCRF, and UIDAI compliance guides for BFSI practitioners.
View all frameworksPlatform datasheets, DPO readiness checklists, and compliance action item templates.
Download resourcesReady to turn knowledge into compliance action? These platform modules connect directly to the concepts covered in the curriculum.
Start documenting your processing activities
Get your DPDP baseline score in 60 minutes
Run a Privacy Impact Assessment end-to-end
Complete your Data Protection Impact Assessment
Generate audit-ready DPDP policies with AI
Track your Compliance Assurance Index score
Begin with Guide 01 — DPDP Rules 2025 Explained. It takes 8 minutes and gives you the complete regulatory foundation.
Regulatory guides, checklists, and technical references for CERT-In, DPDP, SEBI, RBI, IRDAI, and VAPT compliance.
12 DPDP Act 2023 scenarios — classify each as Consent, Legitimate Use, Exempt, or Prohibited.
4-step wizard, 6 STRIDE categories, risk rating + PDF export. Aligned to RBI TRA and SEBI CSCRF.
15-clue privacy governance crossword covering DPDP Act 2023 key terms and concepts.
Paste any ROPA entry — 12 client-side checks flag missing legal basis, retention, processors, and more.
12 consent banners in 90 seconds — experience how fatigue drives DPDP §6 non-compliance.
Y/N flowchart: CERT-In 6-hour report vs DPB notification — know your dual reporting obligations.
24-point DPDP §8(1) scorecard across 6 PbD domains with live ring and PDF export.
10 DPDP Act scenario questions on §§11–14 & §17 rights. Score tiers from Expert to Needs Attention.
A 4×4 puzzle where Policy, Control, Role, and Activity must fill each row, column, and 2×2 box exactly once.
Drag 8 real-world privacy threats to the DPDP Act controls that neutralise them. A hands-on trainer for DPOs building DPIA muscle memory.
8 dashboard widgets, financial quantification in ₹ crore, and the regulatory reporting table every BFSI board should review quarterly.
Evidence-backed answers to the questions India's BFSI boards actually ask: CERT-In readiness, director liability, DPDP DPAs, and SEBI CSCRF.
NIST CSF 2.0 tiers mapped to SEBI CSCRF expectations. Most Indian boards sit at Tier 2; regulators expect Tier 3.
FAIR v3.0, NIST 800-30, and Probabilistic VaR — board-ready cyber risk in ₹ crore, not heat maps.
Multi-regulator deadlines, criminal liability under IT Act §70B, and log retention requirements.
Every clause required in a DPDP-compliant Data Processor Agreement under §8 and Rules 2025.
NIST CSF 2.0 tier alignment, maturity scoring per function, and CISO dashboard gate items.
Board attestation timeline changes, 3 new control domains, tightened VAPT closure deadlines.
14 contractual clauses and 6 ongoing monitoring obligations for banks and NBFCs.
AI-assisted VAPT parsing, UCL control mapping, severity deadlines, and IRDAI.AUDIT.1 auto-compliance.
11 routes, DFD enums, and regulatory mapping to RBI TRA, SEBI CSCRF SDLC, and IRDAI IS Audit.
Why static registers fail CISOs managing RBI, SEBI, and DPDP simultaneously.
The 9-field mandatory format, 13 log source categories, and multi-regulator deadline matrix.
We use cookies and analytics (Google Analytics) to improve your experience. Under India's Digital Personal Data Protection Act, 2023, we require your consent before collecting any usage data. Privacy Policy