Skip to content

securzecom/dpdpa-docs

Repository files navigation

Digital Personal Data Protection Act (DPDPA) Documentation

This repository is created and maintained by Securze.

For DPDPA Consultation contact Securze:
📧 [email protected]
🌐 www.securze.com


About Securze

Securze is a specialized cybersecurity company with expertise in data protection, compliance, and advanced security assessments.
We help organizations align with the Digital Personal Data Protection Act (DPDPA), by providing structured consultation, implementation guidance, and compliance readiness.

Our Services Include:

  • ✅ DPDPA Implementation & Consultation
  • ✅ Compliance Consulting and Implementation (ISO 27001, GDPR, SOC2, NIST 2.0, NESA, PCI DSS)
  • ✅ Vulnerability Assessment & Penetration Testing (VAPT)
  • ✅ Web3 Security
  • ✅ AI Security
  • ✅ Red Teaming
  • ✅ Purple Team Exercises
  • ✅ Phishing Attack Simulation
  • ✅ Ransomware Attack Simulation
  • ✅ DOS Attack Simulation
  • ✅ Social Engineering Attack Simulation
  • ✅ 24x7x365 SOC (Security Operations Center) Setup & SIEM Integration
  • ✅ Security Awareness Training for Employees
  • ✅ Cloud, Web, Mobile & API Security Assessments

With experience across government, fintech, AI, retail, Web3, healthcare, and BPO industries, Securze ensures organizations remain compliant, secure, and resilient.

24x7x365 Managed Security

We also assist organizations that are focused on security with a customized cybersecurity plan. The plan is customized to provide 24x7x365 security to organizations. We manage your internal and external cybersecurity, working in collaboration with your internal team to fortify your defenses and always stay one step ahead.

View 24x7x365 Continuous Managed Cybersecurity Deck here - View Deck


📖 DPDPA Documentation

The following sections simplify the Digital Personal Data Protection Act (DPDPA).
This documentation is designed to help businesses, employees, and compliance officers understand obligations, rights, and penalties in plain language.


Contents

  • Overview
  • DPDPA Rules
  • Schedules
  • Implementing DPDPA
  • Data Fiduciary General Questions
  • Consent Manager General Questions
  • Significant Data Fiduciary General Questions
  • DPDPA General Questions
  • Rights of Data Principals
  • General Breach and Penalty Questions
  • International Cross-Border General Questions
  • Special Cases or Edge Situations
  • Board & Enforcement Questions

📌 Maintainer

This repository is maintained by Securze (securze.com).
We help organizations implement DPDPA compliance end-to-end — from gap assessments and privacy notices to breach management and cross-border transfer frameworks.

Contributions

All contributions are welcome to this repository to enhance the content over time.
If you’d like to improve explanations, add examples, or suggest clarifications, feel free to open a pull request.
Please ensure that your contributions align with the DPDPA framework and maintain the accuracy of legal and technical details.


Review Panel


Manan Sheth, Confidential LinkedIn

Manan Sheth is a cybersecurity consultant and CISSP-certified professional with hands-on experience in incident response, third-party risk management (TPRM), and data privacy across the APAC region. He has worked with leading firms such as EY and Control Risks, delivering security architecture reviews, SOC effectiveness assessments, and governance frameworks for critical infrastructure and enterprise clients. Manan holds an MBA in Cybersecurity Management from the National Forensic Sciences University (NFSU) and brings a strong focus on operational resilience, GRC, and ISO 27001-based security implementation.

Swapnali Naik, Independent Consultant LinkedIn

Swapnali Naik with over 23 years of extensive experience is a seasoned audit and compliance professional with deep expertise in ISO 9001, 20000, 27001, ITGC, SOC controls, Data Centre and customer audits, and enterprise risk management. She has been recognized by BSI auditors for excellence in streamlining audit processes, timely closure of findings, and driving stronger governance through risk-based internal controls and compliance frameworks.

Gaurri Sapple, Associate Vice President - Security Engineering, Protectt.ai LinkedIn

Gauri Saple - Cybersecurity & GRC leader, CISA and ISO-certified, with 12+ years across ISMS, SOC 2, privacy, BCP and audits. She has served clients as a vCISO, led security programs in India and overseas, and speaks on sectoral compliance (e.g., SEBI cybersecurity mandates). Gauri is the author of Practical GRC Implementation (Shroff, 2025) and has held roles including Senior Manager (BSC Advisors) and AVP–Security Engineering (Protectt.ai).

Sundaravenkataraman Sundararaman, GRC Lead - OneCard LinkedIn

Sundar is a fintech-focused cybersecurity and GRC leader, currently GRC Lead at FPL Technologies (OneCard), where he partners with CXOs to align security and privacy with business goals. He builds and uplifts programs across incident management, SOC/SIEM, cloud security, and cryptography, with hands-on experience implementing PCI DSS, ISO 27001, and RBI-aligned controls. Previously CISO/AVP at LivQuik and a long-time security leader at M2P Fintech, he is a frequent speaker and panelist on data protection and cyber resilience.

Read LICENSE


For consultation, contact us:
📧 [email protected]


About

No description, website, or topics provided.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Contributors 2

  •  
  •