Daily Archives: June 9, 2026

Should Management Alone Define the Scope of a DPDPA Audit?

(This is in continuation of the previous article) In the previous article, we discussed the distinction between the objectives of the CISO and the DPO. The same distinction raises a broader question regarding the independence of DPDPA audits. If a … Continue reading

Posted in Privacy | Leave a comment

Why the CISO and DPO May Not Be Natural Substitutes

(ThisĀ  is a continuation of the previous article) During recent discussions on the role of Independent Data Auditors, an interesting debate emerged regarding whether a Chief Information Security Officer (CISO) can effectively discharge the responsibilities of a Data Protection Officer … Continue reading

Posted in Privacy | Leave a comment

Independence in DPDPA Compliance: Two Questions We Need to Answer

The discussions held on June 6th regarding the role of Independent Data Auditors under DPDPA 2023 generated a number of insightful observations. Among them, two issues stood out as being particularly significant for the future evolution of DPDPA compliance and … Continue reading

Posted in Privacy | Leave a comment