India Data Law Looms
India's Digital Personal Data Protection Act deadline is approaching, but most businesses remain unprepared
The Indian government's passage of the Digital Personal Data Protection Act in August 2023 has set in motion a significant shift in how businesses handle customer information, with the deadline for compliance looming and most businesses still unprepared, as reported by Business Standard. This new law is designed to protect the fundamental right to privacy, which is recognised as essential in the digital age, as outlined on en.wikipedia.org. The Digital Personal Data Protection Bill, 2023, aims to regulate the processing of personal data by businesses and government entities, which can be used for targeted advertising, customisation, and law enforcement, but also poses risks to individuals, such as financial loss and profiling.
The new law is expected to have far-reaching implications for businesses in India, with potential fines and penalties for non-compliance, similar to the General Data Protection Regulation (GDPR) in the European Union, which is described in detail on en.wikipedia.org. The GDPR has been a model for other countries, including the United Kingdom, which has its own Data Protection Act 2018, and California, which has adopted the California Consumer Privacy Act (CCPA). As the deadline for compliance approaches, businesses in India are scrambling to update their data protection policies and procedures, with many seeking guidance from experts and regulatory bodies, such as the Information Commissioner's Office, which provides information on data protection laws and regulations on its website, ico.org.uk. The use of facial recognition technology, such as that being expanded by the Met, as reported in Met Expands Facial Recognition, also raises concerns about data protection and privacy.
The Indian government's efforts to regulate data protection are part of a broader trend towards greater oversight of surveillance and data collection, with other countries and jurisdictions also implementing new laws and regulations, such as the European Union's GDPR, which has been a model for other countries, and the California Consumer Privacy Act (CCPA), which has many similarities with the GDPR. The recent breach of the NSA by Mythos AI, as reported in Mythos AI Breaches NSA, has also highlighted the need for stronger data protection laws and regulations, as well as the potential risks associated with the use of advanced technologies, such as artificial intelligence and facial recognition, which can be used to collect and process large amounts of personal data, as seen in the use of Flock Cameras Raise Concerns. As the deadline for compliance with the Digital Personal Data Protection Act approaches, businesses in India are under pressure to ensure that they are meeting the new regulatory requirements, with potential fines and penalties for non-compliance.
Cross-reference independently — do not take our word for it.
Disclosure: NewsAnarchist uses AI-assisted reporting with web search. Always verify primary sources linked above.