Implementation of Data Privacy & Consent Management System (DPCMS) in compliance with the Digital Personal Data Protection Act, 2023
Kerala Bank
Last Date: Wed, Feb 11, 2026 11:59 PM
- Implement a centralized Data Privacy & Consent Management System (DPCMS) to ensure full compliance with the Digital Personal Data Protection Act, 2023 across all banking operations and digital channels.
- Establish compliance-by-design privacy controls aligned with DPDP Act, RBI cyber security framework, NABARD advisories, and CERT-In directions.
- Enable automated data discovery, classification, and mapping of personal data across CBS, digital banking platforms, enterprise applications, and third-party integrations.
- Deploy an enterprise-wide consent management framework supporting purpose limitation, consent lifecycle management, and auditability.
- Enable structured, SLA-driven Data Principal rights management including access, correction, erasure, consent withdrawal, and grievance redressal.
- Implement privacy governance and accountability mechanisms, including Records of Processing Activities (RoPA), data retention controls, and audit-ready evidence generation.
- Establish an integrated data breach and incident management framework to support timely detection, assessment, reporting, and remediation as mandated under the DPDP Act.
- Provide role-based dashboards and regulatory reports for the Board, senior management, IT, and compliance teams.
- Integrate seamlessly with Finacle 10.2.25 CBS , allied solutions &digital platforms through secure, API-first architecture.