Review data controls for the DPDP Act.
Check workload location, access policies, desktop transfers and activity records as part of your DPDP review. Assess the deployment against your organization’s obligations.
Start with the deployment and data flows
Neverinstall Private Cloud runs on your infrastructure, including offline sites, so personal data stays in the locations you choose. Neverinstall Virtual Desktops uses a hosted Management Console by default, and a local Management Console keeps management inside a disconnected deployment.
Confirm the relevant locations and access paths for workloads, backups, logs and support access. Review these details with your privacy, security and legal teams.
Technical controls to review
- Access policies
Assign access through identity, roles and policies.
- Desktop data transfers
Configure clipboard, printing and file-transfer policies for desktop sessions.
- Activity records
Review session and administrative records under your retention policy.
Match the evidence to your requirements
Request deployment architecture and the applicable data processing agreement. Use them to define the services in scope and the responsibilities of your team and Neverinstall.
Deployment review
Can we review an in-India deployment?
Yes. Discuss supported Indian cloud regions or Neverinstall Private Cloud on your infrastructure.