Capabilities
DPDP Readiness Service Capabilities
Personal-data discovery and processing inventory
Identify data subjects, data categories, collection channels, purposes, systems, recipients, processors, retention patterns and cross-border dependencies. Evidence can include system inventories, architecture diagrams, database schemas, SaaS registers, contracts, forms, tags, APIs and stakeholder interviews.
Notice, consent and permitted-processing controls
Assess how approved legal grounds are communicated and operationalised. Define requirements for notice delivery, language, accessibility, purpose linkage, consent capture, withdrawal, record keeping, versioning, channel synchronisation and exception handling.
Data Principal rights and grievance workflows
Design intake, verification, routing, search, response, correction, erasure, nomination and grievance processes with accountable owners, decision rules, evidence and system integration.
Retention, erasure and lifecycle management
Connect business, legal and operational retention decisions with data stores, backups, archives, analytics, test environments and third parties. Define deletion triggers, exceptions, approvals, evidence and monitoring.
Security, incident and breach readiness
Review reasonable safeguard expectations, access governance, logging, monitoring, vulnerability management, business continuity, incident triage, escalation, evidence preservation and notification dependencies at an agreed level of depth.
Processors, vendors and governance
Create risk tiers, due-diligence requirements, contract-control inputs, processor instructions, subprocessor visibility, assurance evidence, issue management, accountability forums, metrics and review cadence.