User Perception Survey on Privacy Software Compliance with DPDPA 2023

Welcome to this survey assessing user perceptions of how privacy software platforms support compliance with India’s Digital Personal Data Protection Act (DPDPA), 2023. This survey is conducted by Naavi, Chairman, FDPPI. (Credentials: www.fdppi.in | www.naavi.org)


This survey is intended for professionals with experience using relevant privacy or compliance software products. The questionnaire is detailed and may take approximately 30 minutes to complete.


The purpose of this survey is to build a community knowledge base on DPDPA compliance tools and to develop an aggregated industry research report.


Responses are based on your professional experience and opinions. Most questions are optional. Where a response is not provided, it may indicate that the feature is not used or the respondent is not aware.


Use of Information
Information collected will be used only for research and analysis, preparation of an aggregated industry report, and sharing the final findings with participants who opt to receive them.


Confidentiality
Name, phone number, and email are not mandatory. Any contact information voluntarily provided will be used only for research communication purposes by FDPPI. Individual identities or organization-specific responses will not be disclosed in published findings. Data will not be shared with vendors or used for marketing purposes.


Participants will receive a copy of the final research report. They may also receive information about FDPPI knowledge resources or educational programs.


The survey seeks professional evaluation of business software products, not individuals. All contact information provided will be handled responsibly in line with the research purpose described above.


1.
Business Name
2.
Business Address
3.
Contact business email
4.
Contact Business Phone number:
*
5.
Current Role[Checkboxes]
DPO
CISO
CTO
Legal officer
Consultant
Other..Specify
*
6.
Number of years experience
Less than 2 years
2 to 5 years
5-10 years
More than 10 years
*
7.
How Big is Your Organization?
Less than 50 employees
50 to 200 employees
200 to 1000 employees
1000-5000 employees
More than 5000 employees
*
8.
What is the type of activity of your company
Manufacturing
Software Development
Health Care
Fintech
Digital marketing
Others...Specify
*
9.
Country Exposure for Data Processing
India Only
Multinational
*
10.
Depth of awareness about the product
Evaluation only
Implementation of few modules only
Organization wide deployment
I have only heard about the product
*
11.
Which Software you have been exposed to (if you are familiar with more than one, Kindly fill up separate form)
OneTrust
BigID
TrustArc
Securiti
Data Safeguard
IDfy
Concur
Skyflow
Posidex
Redacto
Go Trust
Others..Specify bellow
PriveZi
*
12.
What Options are provided by the Software or used by the organization[Checkboxes]
Risk Assessment
Data Discovery-Structured Data
Discovery of Unstructured Data
Classification of Data As per DPDPA Requirememnts
Creation of ROPA/Inventory of Processes
Privacy Notice generation
Consent Collection
Consent Lifecycle Management
Consent Manager Handling
Rights of Access and Deletion
Rights for Grievance Redressal
Rights of Nomination
Management of Pseudonymization
Management of Encryption
Management of CIA of Personal Data
Management of Data Breach identification
Data Beach Notification
Cross border Data Transfer
Management of Verifiable Consent of Guardian
Management of Legitimate use based processing
Identification of Significant Data Fiduciary Status
Management of Data processing contracts
Management of Processing at Processor's control
Management of Employee Data as an exclusive category
Management of DRP/BCP
Creation of Personal Data Inventory
Management of the Data Governance Structure
Management of Data Retention
Data Audit Management
Additional Options..Specify
13.
How easy was the software to install and integrate?
Dissatisfied(0)
Satisfied(10)
14.
How expensive was the software?
Economical(0)
Expensive(10)
15.
How was the customer support during installation?
Dissatisfied(0)
Satisfied(10)
16.
How effective was the software in discovering DPDPA related personal data from legacy store?
Not effective(0)
Effective(10)
17.
How effective was the software in discovering personal data from unstructured data ?
Effective
Not Effective
Not aware
18.
How effective was the software in creating a ROPA or an inventory of processes?
Dissatisfied(0)
Satisfied(10)
19.
How effective was the software in developing purpose specific notices in multiple languages?
Dissatisfied(0)
Satisfied(10)
20.
How effective was the software in capturing authenticated and legally binding consent?
Dissatisfied(0)
Satisfied(10)
21.
How effective was the software in handling Data Access and Data Correction/deletion request?
Dissatisfied(0)
Satisfied(10)
22.
How effective was the software in handling grievances?
Dissatisfied(0)
Satisfied(10)
23.
How effective was the software in designing a Nomination system?
Dissatisfied(0)
Satisfied(10)
24.
How effective was the software in capturing Verifiable consent of a minor with verification of age and guardianship?
Dissatisfied(0)
Satisfied(10)
25.
How effective was the software in monitoring the consent expiry and withdrawal of consent?
Dissatisfied(0)
Satisfied(10)
26.
Does the software recognize the sensitivity of the data processed and the Significant Data Fiduciary status?
Dissatisfied(0)
Satisfied(10)
27.
Does the software assist in drafting of Data processing contracts?
Dissatisfied(0)
Satisfied(10)
28.
Does the software capture data breach incidents effectively?
Dissatisfied(0)
Satisfied(10)
29.
Does the software generate data breach notifications effectively?
Dissatisfied(0)
Satisfied(10)
30.
Does the software assist in managing cross border transfer of data?
Dissatisfied(0)
Satisfied(10)
31.
Does the software generate distinct ID for Consent and Customer or tracking and exercising of rights ?
Dissatisfied(0)
Satisfied(10)
32.
Does the software help identify and coordinate deletion across across systems?
Dissatisfied(0)
Satisfied(10)
33.
Does the software assist in following privacy principals such as data collection minimisation, Data Retention minimization, accuracy etc?
Dissatisfied(0)
Satisfied(10)
34.
Does the software assist in the handling of inquiries with the Data protection Board?
Dissatisfied(0)
Satisfied(10)
35.
Is the time line required for implementation and employee training reasonable?
Very lengthy(0)
Reasonable(10)
36.
Does the software use AI
yes
No
Not aware
37.
If the software uses AI, has the vendor provided any assurance on the reliability of AI with an audit report or explainability report?
Yes
No
I am not aware
38.
Is the software compatible with DGPSI framework?
Yes
No
I am not aware what is DGPSI
39.
Have you observed errors in the output
Yes many times
Yes but occasionally
No
I am not aware
40.
Would you recommend this software to your friends
Yes , without doubt
Yes, with conditions
No
I am still evaluating
*
41.
Overall Satisfaction Score with the purchase and use of the software
Dissatisfied(0)
Satisfied(10)
*
42.
Any other Comment?
image result
wait loading