Board & Executive Sponsor
Fiduciary liability, penalty ceilings, resource funding and programme outcomes
Key Statutory Provisions
3 Enforced ProvisionsEstablishes that the Data Fiduciary is solely responsible for compliance with all provisions of the Act and subordinate Rules for all processing done by itself or on its behalf by Data Processors.
Prescribes statutory financial penalty ceilings up to ₹250 crore for failure to take reasonable security safeguards and up to ₹200 crore for failure to notify the Board and affected Data Principals of personal data breaches.
Mandates board-level oversight for Significant Data Fiduciaries including appointment of an India-based DPO responsible to the governing board, engaging independent data auditors, and conducting periodic DPIAs.
Key Deliverables & Artifacts
4 Key DeliverablesRecommended Reading Sequence
Chapters essential for discharging this role's specific accountability under the DPDP Act and Rules.
Priority Action Checklists
Interactive self-audit checklists directly owned or reviewed by this role.