CourtMesh

Section 5: Security obligations of service providers, etc

The Aadhaar (Data Security) Regulations, 2016.Central Regulations · 2016

The agencies, consultants, advisors and other service providers engaged by the Authority for discharging any function relating to its processes shall:

(a) ensure compliance with the information security policy specified by the Authority;

(b) periodically report compliance with the information security policy and contractual requirements, as required by the Authority;

(c) report promptly to the Authority any security incidents affecting the confidentiality, integrity and availability of information related to the Authority’s functions;

(d) ensure that records related to the Authority shall be protected from loss, destruction, falsification, unauthorised access and unauthorised release;

(e) ensure confidentiality obligations are maintained during the term and on termination of the agreement;

(f) ensure that appropriate security and confidentiality obligations are provided for in their agreements with their employees and staff members;

(g) ensure that the employees having physical access to CIDR data centers and logical access to CIDR data centers undergo necessary background checks;

(h) define the security perimeters holding sensitive information, and ensure only authorised individuals are allowed access to such areas to prevent any data leakage or misuse; and

(i) where they are involved in the handling of the biometric data, ensure that they use only those biometric devices which are certified by a certification body as identified by the Authority and ensure that appropriate systems are built to ensure security of the biometric data.

Where this provision sits

ActThe Aadhaar (Data Security) Regulations, 2016.
Section5
Marginal noteSecurity obligations of service providers, etc
JurisdictionCentral
StatusIn force as published by the source

Find the provision, not just read it

The full text above is free, and it stays free. What a free CourtMesh account adds is everything you cannot do by reading one page at a time:

  • Search 49,000+ Central and State enactments by what a provision says, not by its number
  • Jump from any section to every judgment that has applied it
  • Search 300 million+ Indian court records alongside the statute
  • Ask a research agent to find and read the case law on a provision for you

Free account. No card. About a minute to create.

Create a free account

Need this as data, not as a page? The Aadhaar (Data Security) Regulations, 2016. is one of 49,000+ enactments on CourtMesh. The Indian court cases API serves the case law that cites these provisions over JSON, with API documentation and plans and pricing. See also the judgment library.