Compliance briefings · India context

The compliance blog for Indian teams.

Regulatory updates, framework deep-dives, and operational playbooks for Bangalore SaaS, fintech, BFSI, HealthTech and capital-markets teams. Written by the partners who actually run the audits.

How-to 6 Sept 2026

VAPT RFP Template (Downloadable DOCX)

Downloadable VAPT RFP template for Indian BFSI and SaaS procurement teams — scope, methodology, deliverables, and CERT-In empanelment requirements.

Read article →
Pricing 30 Aug 2026

IR Retainer India Cost: ₹2.4L/quarter Breakdown

Incident response retainer cost breakdown for Indian BFSI and SaaS teams — what ₹2.4L per quarter buys, 24×7 coverage, and Bangalore DFIR capability.

Read article →
Engineering 23 Aug 2026

MASVS L2 India BFSI: Mobile App Security in Practice

MASVS L2 mobile security testing for Indian BFSI and fintech apps — Bangalore methodology, RBI-aligned reporting, and iOS/Android pentest approach.

Read article →
Industry 16 Aug 2026

Compliance Roadmap Startup: Bangalore SaaS Founder Guide

Compliance roadmap for Bangalore SaaS founders — from seed to Series C, what to build when, and how to budget for SOC 2, ISO 27001, and DPDP in INR.

Read article →
Industry 9 Aug 2026

VARA License India: Crypto Exchange Dubai Application Guide

VARA VASP license application guide for Indian crypto exchanges expanding to Dubai — Bangalore advisory on Category I–IV licensing, controls, and timelines.

Read article →
Engineering 2 Aug 2026

OWASP API Top 10 Testing: 2023 Methodology for Indian Fintechs

OWASP API Security Top 10 2023 testing methodology for Indian fintech and BFSI teams — Bangalore pentest approach, tooling, and regulator-aligned reporting.

Read article →
Frameworks 26 Jul 2026

ISO 27001 2022 Transition: 11 New Controls Explained

ISO 27001:2022 transition guide for Indian SaaS and BFSI teams — 11 new Annex A controls, implementation timeline, and Bangalore certification audit readiness.

Read article →
Industry 19 Jul 2026

SEBI CSCRF Audit: Stock Broker Field Guide

SEBI Cybersecurity and Cyber Resilience Framework field guide for Indian stock brokers, AMCs, and depository participants — Bangalore audit readiness and CSCRF implementation.

Read article →
Comparisons 12 Jul 2026

DPDP vs GDPR: Five Practical Differences for Indian Teams

DPDP Act 2023 vs GDPR for Indian SaaS and BFSI teams — five practical differences that change your compliance programme, written from a Bangalore advisory perspective.

Read article →
Industry 5 Jul 2026

DPDP Children Data India: EdTech Compliance + Parental Consent Guide

DPDP Act 2023 compliance for Indian EdTech — children's data obligations, verifiable parental consent, and Bangalore implementation guidance for schools and learning apps.

Read article →
How-to 28 Jun 2026

SOC 2 Readiness Assessment: Self-Assessment Quiz for Indian SaaS

Five-minute SOC 2 readiness self-assessment for Indian SaaS and BFSI teams — gauge your gap count, timeline, and budget before engaging a Bangalore auditor.

Read article →
Industry 21 Jun 2026

vCISO Services India: Hire-Triggers for Series-B/C Bangalore

Virtual CISO services for Indian Series B–C startups — when to hire, what a vCISO delivers, and Bangalore retainer pricing from a CERT-In empanelled advisory firm.

Read article →
How-to 14 Jun 2026

DPDP Compliance Checklist for B2B SaaS (PDF Download)

Downloadable DPDP Act 2023 compliance checklist for Indian B2B SaaS teams — data inventory, consent, DPIA, and Bangalore implementation milestones.

Read article →
How-to 7 Jun 2026

CERT-In Incident Reporting Six Hours: Direction 20(3)/2022 Runbook

Step-by-step CERT-In incident reporting runbook for Indian BFSI and SaaS teams — what triggers the six-hour window, how to report, and Bangalore compliance templates.

Read article →
Comparisons 31 May 2026

ISO 27001 vs SOC 2: Indian SaaS Decision Tree

ISO 27001 vs SOC 2 for Indian SaaS and BFSI teams — which to pursue first, cost overlap, buyer expectations, and a Bangalore compliance roadmap.

Read article →
Regulatory 24 May 2026

DPDP Act Penalty Explained: ₹50–₹250 Crore by Breach Type

DPDP Act 2023 penalty breakdown by breach type for Indian SaaS, BFSI, and HealthTech teams — what triggers ₹50 Crore vs ₹250 Crore, and how to mitigate risk from Bangalore.

Read article →
Pricing 17 May 2026

VAPT Cost India: What ₹40K, ₹2.5L, ₹15L Actually Buy

VAPT pricing decoded for Indian BFSI, SaaS, and fintech teams — what ₹40K, ₹2.5L, and ₹15L engagement tiers include, and how to scope a CERT-In empanelled audit in Bangalore.

Read article →
Pricing 10 May 2026

SOC 2 Cost India: Type II ₹6L–₹52L Range Explained

Real SOC 2 Type II cost breakdown for Indian SaaS and BFSI teams — readiness, audit, attestation, and partner-led pricing in INR from a Bangalore CERT-In empanelled firm.

Read article →
Regulatory 3 May 2026

DPDP Act Compliance 2023: Complete India Guide for B2B SaaS

End-to-end DPDP Act 2023 compliance guide for Indian SaaS and BFSI teams — data fiduciaries, consent managers, penalties, and Bangalore implementation timelines.

Read article →
Regulatory 26 Apr 2026

CERT-In Empanelled Auditor List 2026: How to Verify, Why It Matters, and Who's On It

Complete guide to CERT-In empanelment for Indian security audits — how to verify a vendor's status, why BFSI / SEBI / RBI tenders require it, and what changes in 2026.

Read article →
Ready to scope this engagement?

Book a thirty-minute scoping call.

Tell us your framework, your stack and the deadline. You leave the call with a written scope, a fixed price in INR, and a kick-off invite.