Skip to content

Menu

LexBlog, Inc. logo
NetworkSub-MenuBrowse by SubjectBrowse by PublisherJoin the NetworkGet StartedSubscribeSupportContact
Search
Close

Data Protection Laws Could Increase After Jio Data Break

By Jim Merrifield on July 18, 2017
Email this postTweet this postLike this postShare this post on LinkedIn

Reliance Jio, an Indian telecom upstart, compromised the personal data of over 100 million customers. This has prompted a call for increased data protection laws in India.

At present, companies in India do not have to disclose data breaches to clients. Of course this is stark contrast to companies in the European Union, which have strict data protection laws.

Pranesh Prakash, policy director at a research organization, the Centre for Internet and Society (CIS), said “this occurrence raises question of security and accountability. A rule to report a breach exists, but it is unenforceable. It says you’re not liable if you’re following reasonable security practices. What ‘reasonable’ means is not defined.”

Separately, a CIS report said Aadhaar numbers of as many as 135 million Indians had leaked from government databases and could not be found online. An Aadhaar number is similar to a U.S. social security number, but also stores a user’s biometric data.

Since 2012, India has unsuccessfully sought “data-secure” status from the European Union. Because many large multinational companies have its back offices stationed in India, it will be important for India to successfully meet this “data-secure” status. Only then will European Union citizens be satisfied with India’s information sharing standards and be willing to send EU citizens to the country.

It will be interesting to see how India responds after the Jio data breach. Nonetheless, it seems that radical changes in connection with data protection laws are on the horizon.

Photo of Jim Merrifield Jim Merrifield

Jim Merrifield is Robinson+Cole’s Chief Data Officer, a member of the Data Privacy + Cybersecurity Team, and a non-attorney contributor to the Data Privacy + Cybersecurity Insider blog. He has spent nearly 20 years helping organizations of all sizes, including law firms and…

Jim Merrifield is Robinson+Cole’s Chief Data Officer, a member of the Data Privacy + Cybersecurity Team, and a non-attorney contributor to the Data Privacy + Cybersecurity Insider blog. He has spent nearly 20 years helping organizations of all sizes, including law firms and Fortune 500 companies, develop and implement practical information governance strategies, policies, and best practices. Jim is a well-respected expert in the information governance industry. With an extensive background in policy development and enforcement, enterprise program deployment, and technology solutions, he has earned a strong reputation as a knowledgeable practitioner and reliable consultant. His deep understanding of the space is reflected by his many publications, lectures, and consulting services for top-tier companies and law firms. Jim holds a bachelor degree in Legal Studies from Quinnipiac University and is a certified information governance professional (IGP).

Jim’s innovative thinking and commitment for the industry has enabled him to create the popular podcast, InfoGov Hot Seat, a platform for candid conversations featuring practitioners, consultants and solution providers – offering valuable perspectives to listeners about legal technology and managing information as an asset.

Read more about Jim MerrifieldEmail
Show more Show less
  • Posted in:
    Privacy and Cybersecurity
  • Blog:
    Data Privacy + Cybersecurity Insider
  • Organization:
    Robinson & Cole LLP
  • Article: View Original Source

Call us at 1-800-913-0988 or email sales@lexblog.com.

Facebook LinkedIn Twitter RSS
The Library at LexBlog
  • About LexBlog
  • The Field We Built
  • Library at LexBlog
  • Our Beliefs
  • Our Team
  • Contact LexBlog
  • Disclaimer
  • Editorial Policy
  • Terms of Service
  • Get Started
  • Publishing Solutions
  • Compass
  • Submit a Request
  • Support Center
  • System Status
Copyright © 2026, LexBlog, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo