Check for Client Response 1 Client Response 2 (If Yes)
Is your Company Certified on ISMS (ISO 27001), ISO 27017, ISO Conflict of No DPDP Adherence and NA Assessment 27018 & PIMS (ISO 27701) by TUV SUD Interest* Describe the objective of the Assessment an ISO certification on Objective Is audit to be conducted on-site or off-site? If on-site, please specify the Locations data protection Onsite/offsite locations When does project need to start and/or be completed by? Deadlines, if Scheduling Reporting TBD Reporting any? requirements shall Does the client have any specific/custom reporting requirements? Requirement follow standard procedures Sr No Questions 1 Description of your business
2 Indication organization size
3 What is your understanding of DPDPA relevance for business?
Are you seeking for Assessment services OR implementation services 4 OR Both
Does your organization have any office or subsidiary in India or
5 providing good or services to Indian consumers?
6 Indicate number of employees
7 Mention locations to be covered
What teams/business verticals are handling personal data directly or
8 indirectly?
9 Number of systems and names where personal data is stored?
10 What type of personal data is your organization handling?
For your organization, indicate source of Indian resident's personal 11 information In what all medium is customer data stored? (e.g. telephonic 12 recordings, computer records, database) 13 Purpose for processing Indian resident's personal data? 14 If company sharing the data with another vendor/processor. 15 What is the retention period? Customer Response Khatabook is a digital ledger app for MSME. Khatabook loans is a module enabled to chosen users as per their behaviour. Khatabook app acts as a digital lending platform 150
Ensure protection of PII as per DPDP norms
Assessment services
Yes. Only indian customers
150
Bengaluru
Across the org. Tech and process functions handle customer PII, khatabook internal teams like HR admin handles KB employee
AWS cloud and saas platforms
Non health PII
NA DB Business reasons. Loans and disburesement Yes. Saas Platforms as data subprocessors 10years HR admin handles KB employee PII