Clarification to the Indian Data Protection Laws
- Saturday, August 27, 2011, 6:03
- Corporate Law
- News
Clarification on Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 Under Section 43A of the Information Technology ACT, 2000
The Department of Information Technology had notified Information Technology (Reasonable security practices and procedures and sensitive personal data or information) Rules, 2011 under section 43A of the Information Technology Act, 2000 on 11.4.2011 vide notification no. G.S.R. 313(E).
These rules are regarding sensitive personal data or information and are applicable to the body corporate or any person located within India. Any such body corporate providing services relating to collection, storage, dealing or handling of sensitive personal data or information under contractual obligation with any legal entity located within or outside India is not subject to the requirement of Rules 5 & 6. Body corporate, providing services to the provider of information under a contractual obligation directly with them, as the case may be, however, is subject to Rules 5 & 6. Providers of information, as referred to in these Rules, are those natural persons who provide sensitive personal data or information to a body corporate. It is also clarified that privacy policy, as prescribed in Rule 4, relates to the body corporate and is not with respect to any particular obligation under any contract. Further, in Rule 5(1) consent includes consent given by any mode of electronic communication.
Ministry of Communications & Information Technology (Depatt. of Information Technology)
Press Information Bureau, Government of India, Bhadra 2, 1933, August 24, 2011
Related posts:
- Access to Sensitive Personal Information under New IT Rules Only with Checks and Balances: Clarifies DIT
- RRBs – Submission of Data to Credit Information Companies – Format of Data to be submitted by Credit Institutions
- Apple Android phones face tighter laws in Europe
- Indian names in Swiss bank data list, says WikiLeaks founder Julian Assange
- Indian Bank Request for Proposal for Information Systems Audit of Core Banking / Net Banking / Mobile Banking / ATM / Data Centre / D R Site / Networking Infrastructure and Other Integrated systems