Skip to main content
Company Secretary’s Role in DPDP & Cybersecurity
Back to Court News
SEBIcybercompliancecorporate_governance

Company Secretary’s Role in DPDP & Cybersecurity

September 27, 2026

Company Secretaries now play key roles in DPDP Act compliance, cybersecurity incident reporting, and Board-level oversight under SEBI LODR.

Company Secretary’s Role in DPDP & Cybersecurity

In response to evolving data privacy and cybersecurity mandates, Company Secretaries (CS) are increasingly integral to corporate governance under SEBI’s Listing Obligations and Disclosure Requirements (LODR). Their responsibilities now extend to coordinating compliance under the Digital Personal Data Protection (DPDP) Act, 2023, and facilitating Board oversight of cybersecurity frameworks.

The CS supports incident assessment, ensures timely disclosures of data breaches, and coordinates with data protection officers. They also assist in drafting board reports on data governance, aligning with SEBI’s emphasis on proactive risk management. Under LODR Regulation 27, listed entities must disclose material cybersecurity incidents.

Legal teams should integrate CS professionals early in DPDP and cyber-risk planning. Their role bridges regulatory compliance and board accountability, especially in sectors with high data sensitivity. Firms must formalize internal protocols defining CS responsibilities in cyber-risk escalation and data governance disclosures.

Citations

  • SEBI LODR Regulations
  • Digital Personal Data Protection Act, 2023
Company Secretary’s Role in DPDP & Cybersecurity | Gatim AI Court News | Gatim AI