Compliance
Indian regulations, mapped to identity controls
Global vendors write compliance pages for GDPR and SOX. Your auditors ask about DPDP, RBI, SEBI CSCRF and IRDAI. Each hub below maps the regulation's actual identity requirements to specific IamLogic controls.
DPDP Act 2023
The Digital Personal Data Protection Act, 2023 and the DPDP Rules, 2025 turn access control from good practice into statutory obligation. Rule 6 names the minimum safeguards every …
View the control mappingRBI Cybersecurity Framework
RBI supervision treats access control as a board-level concern: the Cybersecurity Framework for banks, the Master Directions on IT Governance and scale-based regulation for NBFCs a…
View the control mappingSEBI CSCRF
SEBI's Cybersecurity and Cyber Resilience Framework (CSCRF, 2024) consolidates cyber obligations for regulated entities — brokers, depositories, AMCs, exchanges and intermediaries …
View the control mappingIRDAI Guidelines
IRDAI's Information and Cyber Security Guidelines (2023) make insurers accountable — at board level — for controlling access to policyholder data across employees, agents and third…
View the control mappingISO 27001
ISO/IEC 27001:2022's Annex A dedicates a cluster of controls to identity: access control policy (5.15), identity management (5.16), authentication information (5.17), access rights…
View the control mappingFacing an inspection or a deadline?
Tell us the framework and the date. We'll show you which controls close which findings — and what a realistic deployment timeline looks like.