IT Compliance Matrix
Map your compliance requirements across regulations — DPDP, ISO 27001, IT Act, and more.
Purpose
This matrix maps compliance requirements across multiple regulations, making it easy to identify gaps and overlaps.
Matrix Structure
| Control | DPDP Act | ISO 27001 | IT Act | Status |
|---|---|---|---|---|
| Access control | Required | A.9 | Section 43A | |
| Encryption | Recommended | A.10 | Section 43A | |
| Audit logging | Required | A.12 | Section 43A | |
| Data retention | Required | A.8 | Section 6 | |
| Breach notification | 72 hours | A.16 | Section 43A |
Related reading
Data Classification Policy Template
A policy that defines how data is classified, handled, stored, and deleted based on sensitivity levels — essential for DPDP and ISO 27001 compliance.
Read moreResourceAccess Control Matrix
Map users, roles, and permissions across your tools and systems to identify security gaps.
Read moreResourceIT Training Matrix
Map training requirements by role — who needs what training and when.
Read moreArticleData Localization Requirements for India
Understanding data localization under DPDP Act — what data must stay in India and how to comply.
Read moreArticleIT Compliance Checklist for Indian Startups
A comprehensive compliance checklist covering ISO 27001, GST, DPDP Act, and IT Act requirements for Indian startups and SMEs.
Read moreFree toolSLA Compliance Calculator
Measure your SLA compliance rate, identify breach patterns, and see how improvements in response time impact your overall score.
Read morePut this into practice with workro desk.