FDPPI is all set to launch its first course of CIDA or Certified Independent Data Auditors on a three day program from August 21-23.
Today the program is commencing with a curtain raiser which also is a crash program on DPO. This will be a virtual event for the registrants. This itself will be a bundle of DPDPA knowledge which is part of the larger program.
Independent Data Auditor (IDA) is a new profession which comes beyond being a DPO. DPDPA or Digital Personal Data Protection Act is a mandatory law that must be implemented by all business entities in India by 13th May 2027. MeitY has recently confirmed that there is no likely hood of this date being extended.
We have already reached the stage when those entities which are processing sensitive personal information will have to decide whether they should treat themselves as Significant Data Fiduciaries (SDF) and undertake the additional obligations of designating a DPO, Appointing an external Independent Data Auditor and a DPIA.
With the use of AI everywhere and also capture of employee biometrics by most large organizations almost every organization is crossing the threshold from Data Fiduciary to Significant Data Fiduciary. There will therefore be as many SDFs in the country as there are DFs and this means a huge requirement of DPOs and Data Auditors.
They need DPOs immediately so that their implementation is put on track. But soon they will also have to think of Independent Data Auditors who will start their audit on or after 13th May 2027.
The Data Auditors will have to be quickly in place to first conduct a DPIA (Data Protection Impact Assessment) which will also be the First Data Compliance Audit of a Company any time after 13th May 2027.
We have 269 days for professionals to get ready and claim the coveted appointment as a Data Auditor for the company when companies will be scrambling to find the right person.
FDPPI has set upon itself a mission to create as many eligible Independent Data Auditors as possible in the next 269 days so that there will be no dearth for such professionals.
The profession of “Independent Data Auditor” (IDA) is all set to create revolution in the professional field around the Data Protection Industry in India.
At the same time RBI has set the Cat amongst the pigeons by releasing the Data Governance Framework and Model Risk Management Framework to be implemented by Banks and to be “Audited” .
The guideline states “An RE should ensure that DGF and policies and processes thereunder are subject to periodic internal and external audit, including through CERT-IN empanelled auditors, as applicable”. Hence CERT In empanelled auditors who are primarily Information Security auditors today are also required to become Data Auditors and join the community of Data Auditors to be ready for the task of auditing the Data Governance Frameworks of Banks.
The CIDA program recognizes this and covers Data Audit from the perspective of DPDPA as well as the RBI guidelines.
While August 21 will be the date when the first such program will be launched, today the curtain raiser to refresh the participants with the preliminary knowledge on DPDPA as a law and the task of a DPO in implementation will be discussed in a virtual session. Further a plan of action to prepare for the program over the next 4-5 days will also be suggested so that they will be ready to participate in the CIDA program on August 21st.
All those who have registered for the course may join the program at the link already sent to them. For any further information, please contact FDPPI.
Naavi








