RBI CSITE Group conducted a thematic study on “Security of customer data” across Supervised Entities (SEs) covering multiple categories of supervised entities in 2025, to identify several best practices that are being followed for protection of customer data in the SEs’ ecosystem and published an advisory to summarise the same as guidance for SEs in strengthening their framework for protection of customer data.
Objectives of Supervised Entities (SEs)
SEs must prioritise robust customer data protection framework
Establish and continuously enhance cyber security and data‑protection mechanisms to safeguard customer information across the entire digital ecosystem
Adherence to all applicable laws, regulations, and supervisory guidelines related to data protection
Leading practices of security of customer data
Way forward
RBI advisory on customer data protection and management
Guidance for the protection of customer data in the Supervised Entities ecosystem to strengthen the overall framework
Key Contacts
How can KPMG in India help
Access our latest insights on Apple or Android devices