Copenhagen Compliance

One-Day Executive Certification

DPDPA Lead Implementer Certification

A high-impact program designed for senior leaders to bridge the gap between legal interpretation and operational execution of India's Digital Personal Data Protection Act, 2023.

🗓️ Date: 25th March 2026
Time: 9:30 AM IST
💻 Mode: Classroom / Virtual
📑 Format: 5 x 90-min Sessions
Register Now
DPDPA Seal

Why This Certification?

As India’s data protection regime moves to active enforcement, organisations face heightened board-level accountability and financial exposure. This program focuses on implementing, governing, and defending compliance decisions in real-world scenarios.

  • DPDPA is operational with phased compliance obligations.
  • Non-compliance attracts significant financial penalties.
  • Explicit board and senior management accountability.
  • Critical need for structured implementation leadership.

Course Structure

Session 1: Foundations & Global Context
 
Objective: Establish foundation
  • Legislative intent and scope of the DPDPA, 2023
  • Applicability: data fiduciaries, processors, and territorial reach
  • Key definitions: personal data, digital personal data, consent
  • Rights and obligations under the Act
  • Comparison with GDPR and prior Indian frameworks

Executive Focus: Determining applicability and immediate compliance priorities.

Session 2: Consent Architecture & Core Compliance
 
Objective: Translate statutory requirements into operational controls
  • Consent requirements: notice, purpose limitation, withdrawal
  • Consent managers and consent lifecycle management
  • Lawful processing without consent: legitimate uses
  • Data minimisation, retention, and purpose limitation
  • Vendor and processor alignment

Practical Elements: Data flow mapping and identifying compliance gaps.

Session 3: Governance & SDF Obligations
 
Objective: Embed DPDPA into enterprise governance
  • Criteria and obligations for Significant Data Fiduciaries (SDFs)
  • Role and responsibilities of the Data Protection Officer (DPO)
  • Board and CXO oversight responsibilities
  • RACI models for DPDPA implementation
  • Integrating DPDPA into enterprise GRC frameworks

Executive Perspective: Evidencing "reasonable security safeguards" and Board triggers.

Session 4: Enforcement & Breach Response
 
Objective: Prepare for investigations and regulatory scrutiny
  • Role of the Data Protection Board of India
  • Penalty framework and financial exposure (up to 250 Crores)
  • Breach notification requirements and timelines
  • Incident response governance and escalation
  • Documentation, audit trails, and defensibility

Simulation: Data breach scenario walkthrough under pressure.

Session 5: Roadmap & Certification Assessment
 
Objective: Enable post-certification implementation
  • Step-by-step DPDPA implementation roadmap
  • Prioritisation based on risk and organisational maturity
  • Aligning DPDPA with ISO and existing security frameworks
  • Measuring and reporting progress to the Board
Assessment: 30 Multiple Choice Questions (MCQs) for final certification.

Key Learning Outcomes

  • Interpret and apply DPDPA provisions with confidence
  • Design a structured DPDPA compliance framework
  • Advise boards on legal and governance risks
  • Lead breach response and investigation readiness
  • Build a defensible implementation roadmap

Who Should Attend?

  • Board Members & Directors
  • CEOs, CFOs & CXOs
  • CISO & Security Leaders
  • Risk & Compliance Officers
  • General Counsel & Legal Teams
  • Data Protection Officers (DPOs)

Deliverables

  • Comprehensive course material & reference guide
  • Sample DPDPA-policy templates
  • Breach response checklist
  • Compliance roadmap template
  • Official Lead Implementer Certification

Program Highlights

  • Practical, implementation-focused approach
  • Strong governance and board oversight perspective
  • Board-level case studies and crisis simulations
  • Industry-specific insights (BFSI, HealthTech, Start-ups)
  • Interactive discussions with peer specialists

In corporation with

In corporation with ISACA

Prof, Kersi F. Porbunderwalla


Professor at the IE Law School, the Copenhagen Business School from 1984-1993 and lecturer at Georgetown University, Cass Business School, and Fordham University President and CEO at Copenhagen Compliance, The Information Security Institute, The Corporate Governance Institute, The EUGDPR and The E-Compliance Academy Established global GRC networks to provide certifications and training and has trained professionals on four continents Lead organization in the development and implementation of AI-driven solutions, GRC applications,, and frameworks, including specialized cybersecurity and privacy products

Atul Juvle


Atul Juvle is a seasoned Legal and GRC (Governance, Risk & Compliance) consultant with over 40 years of cross-industry experience spanning banking, manufacturing, exports, life insurance, vertical transport, and agrochemicals. Formerly in leadership roles at TATA International, OTIS, HDFC Life, Godrej Agrovet, and Schindler India, he now advises clients on legally compliant, tech-enabled governance solutions and serves as an Independent Director on several boards. Known for his expertise in risk management, crisis handling, and ethical leadership—also the subject of his TEDx talk—he has been recognized in the Top 100 India GC list by Forbes India–Legitquest and UK–Legal 500 (2016–2023) and honored twice by ACFE Mumbai. A lifelong learner, he continues to deepen his expertise through certifications from Oxford University (AI), ISB (Corporate Governance), and IICA (Startup Governance), with a mission to embed governance as a daily culture in individuals and organizations.