Indian Privacy law & Infosec for Startups

AMolNAik3 222 views 15 slides Jul 23, 2024
Slide 1
Slide 1 of 15
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11
Slide 12
12
Slide 13
13
Slide 14
14
Slide 15
15

About This Presentation

Indian Privacy law for Startups


Slide Content

Indian Privacy Law & InfoSec for
Startups
Amol Naik

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Digital Personal Data Protection (DPDP) Act 2023

https://www.linkedin.com/in/amolnaik4/ @amolnaik4

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Privacy Implementation
Internal
●Data Discovery
●Data Classification
●Data Security
●Infosec Policies
●Processes to fulfil Data Rights requestsExternal/Public
●Privacy Policy
●Concent
●Contact details for Data Rights
request

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Discovery

https://www.linkedin.com/in/amolnaik4/ @amolnaik4

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
When penalties are applicable?
●In case of
○Data Breach
○failure to complete Data Rights requests

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Breach via Insecure Cloud Storage

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Breach via Insecure Database

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Breach via Credential Compromise

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Breach via Application/API Vulnerability

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Data Breach via Secrets in Code

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Take Away
●Reduce Internet facing servers
●Protect employee accounts with 2FA & SSO
●Remove secrets from code
●Focus on Cloud Security
●Test applications & APIs for security issues
●Restrict access to PII data internally

https://www.linkedin.com/in/amolnaik4/ @amolnaik4

https://www.linkedin.com/in/amolnaik4/ @amolnaik4
Thank You !!
Amol Naik
https://www.linkedin.com/in/amolnaik4/
@amolnaik4