India to tighten data protection laws

By Dinesh C. Sharma, Special to ZDNet Asia
Thursday, June 30, 2005 10:58 AM

NEW DELHI--Indian Prime Minister Manmohan Singh has asked for changes in the country's cybersecurity laws to protect the data in foreign work handled by Indian companies.

In a meeting Wednesday, Singh directed the Department of Information Technology to hasten the process of amending the Indian IT Act to ensure that any breach of secrecy and any illegal transfer of commercial or privileged information is made a punishable offense.

Beyond offshoring, a new powerhouse is in the making. "Indian professionals have built for themselves an enviable global reputation through hard work, dedication and commitment, and the occasional misguided acts of some individuals should not be allowed to damage the high reputation of all professionals," Singh was quoted as saying in a government statement.

Singh reviewed the situation in light of the recent case of alleged sale of customer data by an Indian call center employee to an undercover reporter of British newspaper The Sun last week. Singh said the sting operation may have been directed to give Indian industry a bad name in light of its growing competitiveness.

Karan Bahree, the call center worker who figured in the incident, has reportedly been fired by his employer, Infinity e-search, but has yet to be formally charged by local police. He has been reported missing since the Sun report was published, although he has sent statements to the company.

U.K. authorities have warned banks against possible breaches of the British Data Protection Act after the incident.

In India, the National Association of Software and Service Companies has stressed that "tight data security norms (are) followed by the industry." As a measure of further caution, NASSCOM is building a database of all employees in the business process outsourcing industry. This segment currently employs 350,000 workers.


WORTHWHILE?

0

0 votes
Blog

Talkback 2 comments

INDIA HAS SUFFICIENT DATA PROTECTION LAWS.

The proposed change in the Information Technology Act, 2000 for conferring data protection or its separate enactment is not only unwarranted but is equally based on misinterpretation of the provisions of the Indian Copyright Act, 1957 and the TRIPS Agreement.

The concerns and apprehensions of the MNCs are far-fetched and unwarranted. The TRIPS Agreement and the Copyright Act, 1957 provides sufficient safeguards for preventing violations of databases of MNCs. The data, information and details provided by the MNCs will get the protection of ‘Data Property” if the same involves intellectual creations within the meaning of Article 10(2) of the TRIPS Agreement. If they fail to satisfy the requirement of Article 10(2), still they will be protected as copyright. The brightest and the positive aspect of this situation is that even non-data items are also protected, both under the TRIPS Agreement and the Copyright Act, 1957. Thus, the MNCs should concentrate on their “business initiatives” rather than wasting their resources and time on unnecessary concerns.

See perry4law.blogspot.com... for more details.

It must be appreciated that it is not the “enactment” of a law but the desire, will and efforts to accept and enforce it in its true letter and spirit, which can confer the most strongest, secure and safest protection for any purpose. The enforcement of these rights requires a “qualitative effort” and not a “quantitative effort”. The “enforcement” problem cannot be “bypassed” and “labeled” as inadequacy of data protection laws in India. For instance, if we do not enforce the provisions of Copyright Act, 1957 or the Trade Marks Act, 1999, properly, then we can again argue that these Acts need to be amended to accommodate the wishes of MNCs. Any objection of lack of data protection laws in India is raised only due to the ignorance of the availability of data protection laws in India.

India has a sound cyber law regime and both paper based and electronic form data can be effectively and legally protected in India. Any objection regarding “insufficient” cyber law or Data protection law is only a misconception and ignorance of law in this regard.

Praveen Dalal.
* Arbitrator, Consultant and Advocate, Delhi High Court, India.
Contact at: pd37@rediffmail.com/ perry4law@yahoo.com
Telephone No: 9899169611
Posted by PRAVEEN DALAL on Friday, July 01 2005 10:06 PM

AN INSIGHT OF DATA PROTECTION LAWS IN INDIA

The following articles will give a clear picture of the existence of the Data Protection Law in India:

(1) The existence of the Data Protection laws in India- perry4law.blogspot.com...

(2) The need to satisfy the requirements of Constitution of India-perry4law.blogspot.com...

(3) The Privacy and Data rights of netizens- perry4law.blogspot.com...

(4) The need and manner of Data Protection- perry4law.blogspot.com...

It is surprising that despite the proven fact of "sufficient Data Protection Law" in India, we are facing the tremendous pressure of foreign countries.

Regards

Praveen Dalal
Arbitrator, Consultant and Advocate
Delhi High Court
Telephone No: 9899169611
E-mail: pd37@rediffmail.com, perry4law@yahoo.com
Posted by PRAVEEN DALAL on Tuesday, July 05 2005 03:15 PM


Tech Jobs Now!

Search for your ideal tech job:

Hands-on programming: Extract plain text from documents with Syncfusion's components

Web Development

Justin James recently tried Syncfusion's Essential DocIO and Essential PDF to help him extract text from documents he downloaded from the Internet. Here's the code he wrote to get the plain text.


Read more »



Will technology divide us further?

Blog thumbnail

So I finally watched 2012 over the weekend, but the film left me feeling extremely agitated.

The possibility that the world may meet its watery end in three years didn't..... by Eileen Yu

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web