Live 16 practitioner certifications live · First lesson free on every course Back to main site →
2026 India's compliance certification academy

India's compliance
certification academy.

Industry certifications across DPDP, POSH, RBI, SEBI, CERT-In, ESG + BRSR, SOC 2, Companies Act, Labour Codes, GDPR India and more compliance domains. Cited verbatim to the law. Backed by Decipher Consultancy and the dcomply SaaS platform.

First lesson free LinkedIn-shareable cert Cited to the Gazette
Issuer of

Certified Compliance Professional

Across DPDP, POSH, RBI, SEBI, CERT-In, ESG and more
16
Live courses
12
On roadmap
5
Domains
80+
Tracks planned
  • Every claim cited to the Act/Rule
  • Verifiable certificate per course
  • Publicly verifiable certificate URL
Enrolments Live
0+
learners so far ↑ +4 today
0
Active now
4.8/5
Learner rating
Recent activity
Citation-backed Verbatim statutory refs
Decipher-backed Consulting firm, India
Shareable cert Adds to LinkedIn profile
16 live courses 80+ tracks planned
Nationwide reach

Learners in every metro and every regulator's jurisdiction.

Compliance officers, DPOs, IC members and in-house counsel from 12 Indian cities are already enrolled. Your certificate is recognisable coast-to-coast.

Delhi NCR 142 LEARNERS Mumbai 129 LEARNERS Bengaluru 122 LEARNERS Hyderabad 64 LEARNERS Chennai 50 LEARNERS Kolkata 35 LEARNERS Pune 43 LEARNERS Jaipur 28 LEARNERS Ahmedabad 28 LEARNERS Chandigarh 28 LEARNERS Indore 25 LEARNERS Kochi 25 LEARNERS
The credential

A certificate your employer can verify in one click.

Every dcomply Academy cert ships with a unique public verification URL and QR. Add it to LinkedIn. Attach it to a proposal. Recruiters and clients confirm authenticity without calling us.

  • 1
    Publicly verifiable

    Every cert has a /verify/DCERT-XXXX page. No login required.

  • 2
    Numbered and dated

    Every certificate carries a unique registration number (DCA/2026/NNNNN) and issue date. Never re-issued.

  • 3
    Backed by Decipher Consultancy

    Issued by dcomply Academy, backed by a live compliance consultancy that answers audits.

See a real certificate
dcomply Academy
SAMPLE CERTIFICATE
d
dcomply Academy
Reg. No. DCA/2026/00487
India · Compliance Certifications

This is to certify that

Priya Sharma

has successfully completed the certification programme

DPDP Act 2023 · Professional Certification

dcomply academy · verified · d
VERIFIED
Joginder Poswal
Joginder Poswal
Founder, dcomply Academy
DCERT-8F42-B190
20 September 2026
Issued on
MeitY DPDP Act 2023 · DPDP Rules 2025 RBI Cyber Framework · NBFC circulars SEBI LODR · PIT · CSCRF MCA Companies Act · ROC filings CERT-In Cyber Incident Directions 2022 MoLE 4 Labour Codes · PF / ESI SH Act POSH 2013 · IC procedure NABH Healthcare · BMW rules MeitY DPDP Act 2023 · DPDP Rules 2025 RBI Cyber Framework · NBFC circulars SEBI LODR · PIT · CSCRF MCA Companies Act · ROC filings CERT-In Cyber Incident Directions 2022 MoLE 4 Labour Codes · PF / ESI SH Act POSH 2013 · IC procedure NABH Healthcare · BMW rules
Cited authorities

Every Indian regulator, one academy.

Indian compliance is fragmented across 30+ regulators. We build cited, exam-backed credentials for each. Below: the authorities behind every live and upcoming course.

MeitY
Ministry of Electronics and IT
DPDP Act 2023 · DPDP Rules 2025
RBI
Reserve Bank of India
Cyber Framework · NBFC circulars
SEBI
Securities and Exchange Board
LODR · PIT · CSCRF
MCA
Ministry of Corporate Affairs
Companies Act · ROC filings
CERT-In
Indian Computer Emergency Response
Cyber Incident Directions 2022
MoLE
Ministry of Labour and Employment
4 Labour Codes · PF / ESI
SH Act
Sexual Harassment at Workplace Act
POSH 2013 · IC procedure
NABH
National Accreditation Board
Healthcare · BMW rules
How we compare

Compare us to where you were going to learn this instead.

An honest side-by-side against the four alternatives Indian compliance professionals typically pick between. We built the table below the way we would want a competitor's table to read: verifiable, dated, and not shy about where they win.

  dcomply AcademySelf-paced, cited DSCI DCPP / DCPLAData Security Council of India NISM CertificationsSEBI-affiliated body Big 4 in-houseNot sold to individuals
Cited to primary law Verbatim, every claim Referenced, not verbatim Referenced, not verbatim Varies by engagement
Public Trust page per course Yes, per course No No Internal only
Update SLA after amendment 7 days, published Not published Annual revision cycle Ad-hoc
Named author or verifier Named + credentialled Institutional only Institutional only Anonymous
Free first lesson Every paid course Paid brochure only No N/A
Verifiable certificate URL Public verify URL PDF only NISM registry Attendance letter only
Price (single practitioner) ₹4,999 – ₹9,999 ₹30,000+ (DCPLA) ₹1,500 – ₹9,000 Not sold externally
Multi-regulator coverage One academy, 80+ tracks planned Data privacy focus SEBI / capital markets Engagement-specific

Comparison compiled from publicly-listed course pages and syllabi, as of Aug 2026. Corrections welcome at [email protected].

Course Catalog

Start learning

Sixteen citation-anchored, exam-backed practitioner certifications across data protection, cyber, AI governance, finance-sector, corporate, workplace, and direct-tax law. Each card links straight into the syllabus, exam blueprint, and citation register.

Data Protection
DPDP Act 2023: Professional Certification
India's Digital Personal Data Protection Act 2023 and DPDP Rules 2025
Free

The full Act and Rules 2025, section by section. Free. Certificate on passing.

8 modules 38 lessons ~6h All-levels
Start learning
Workplace
POSH Act Practitioner: Advanced Certification
Run an Internal Committee that holds up in court. India's most current POSH practitioner programme.
₹4,999
inclusive of 18% GST

Run an Internal Committee that survives a writ. Includes the 2023 to 2025 Supreme Court rulings.

8 modules 41 lessons ~8h Advanced
Start with a free lesson
Cybersecurity
New
CERT-In Directions Practitioner Certification
The 6-hour rule, decoded. Every Indian company is subject to it.
₹4,999
inclusive of 18% GST

The 6-hour rule, 180-day logs, and the parallel-clocks runbook.

8 modules 22 lessons ~4h Intermediate
Start with a free lesson
Workplace
Labour Codes 2020 Practitioner: HR, Payroll & Compliance Certification
Master the four new Labour Codes that replaced 29 old laws. Written for people who actually restructure payroll, register unions, file returns, and defend inspections.
₹4,999
inclusive of 18% GST

Four Codes, 29 old laws. Payroll, registers, returns, inspections.

8 modules 40 lessons ~6h Advanced
Start with a free lesson
Data Protection
New
DPDP Rules 2025 Deep Dive / DPO Practitioner
The 23 Rules that make you audit-ready by 13 May 2027
₹4,999
inclusive of 18% GST

All 23 Rules and 7 Schedules, rule by rule. Audit-ready before 13 May 2027.

8 modules 28 lessons ~5h Intermediate
Start with a free lesson
Cybersecurity
New
SEBI CSCRF Practitioner Certification
The Cyber Capability Index, the M-SOC decision, the auditor evidence pack, and the board deck
₹9,999
inclusive of 18% GST

CCI scoring, M-SOC decision, auditor evidence pack, board deck.

8 modules 28 lessons ~5h Advanced
Start with a free lesson
Cybersecurity
New
RBI Cybersecurity Framework Practitioner Certification
The 2016 CSF, the 2023 ITGRCA, the 2026 Commercial Banks Directions, and every RBI incident-clock a CISO has to hit
₹9,999
inclusive of 18% GST

Every RBI cyber instrument 2016 to 2026 as one regime, with the DAKSH 6-hour template.

9 modules 40 lessons ~9h Advanced
Start with a free lesson
Privacy
New
GDPR for Indian Companies (with DPDP Crosswalk) Practitioner
One programme, two regimes: run GDPR and DPDP from one operating desk
₹4,999
inclusive of 18% GST

Run both regimes from one desk. Article-by-article crosswalk.

9 modules 35 lessons ~7h Intermediate
Start with a free lesson
Corporate
New
Companies Act + MCA Practitioner Certification
The MCA V3 portal, the annual filing cycle, and the Monday-morning job for CS, CA, in-house counsel and founders
₹4,999
inclusive of 18% GST

MCA V3, annual filing cycle, CSR, RPTs, adjudication. Operational, not exam prep.

9 modules 34 lessons ~6h Intermediate
Start with a free lesson
Esg
New
ESG + BRSR Practitioner Certification
BRSR Core assurance-ready reporting for the sustainability lead who has to file it, not the consultant selling it
₹9,999
inclusive of 18% GST

File BRSR Core with assurance. Scope 1-2-3, NGRBC policies, XBRL.

8 modules 41 lessons ~9h Intermediate
Start with a free lesson
Cybersecurity
New
SOC 2 Readiness Practitioner Certification
For the Indian SaaS founder and CISO who has to pass SOC 2 to sell to US customers, not the Big 4 consultant selling readiness services
₹9,999
inclusive of 18% GST

Pass a first Type II to sell to US customers. Control matrix and 10-policy pack included.

8 modules 40 lessons ~9h Intermediate
Start with a free lesson
Cybersecurity
New
ISO/IEC 27001 Lead Implementer Practitioner Certification
For the Indian CISO and ISMS Manager who has to build, run and pass an ISO/IEC 27001:2022 certification, not the PECB classroom trainer selling exam prep
₹9,999
inclusive of 18% GST

Build and certify an ISMS with a NABCB body. All 93 controls mapped.

8 modules 40 lessons ~7h Intermediate
Start with a free lesson
Corporate
New
SEBI LODR + PIT Practitioner Certification
For the Company Secretary, compliance officer and IR head at a BSE / NSE listed entity who has to file Reg 30 within 12 hours and pass a Reg 24A secretarial audit, not the ICSI exam-prep tutor selling classroom hours
₹9,999
inclusive of 18% GST

Reg 30 clocks, SDD, trading window, Reg 24A audit. 12 templates.

8 modules 40 lessons ~8h Intermediate
Start with a free lesson
Corporate
New
Telecommunications Act 2023 + DoT Compliance Practitioner Certification
For the CISO, DPO and regulatory affairs lead at an Indian telco, ISP, OTT platform, satcom licensee or cloud CTN operator migrating from Unified Licence to the 2026 authorisation regime
₹9,999
inclusive of 18% GST

Migrate from UL to the 2026 authorisation regime. CTSO, 6-hour SLA, BIVS.

8 modules 40 lessons ~8h Intermediate
Start with a free lesson
Corporate
New
Income-tax Act 2025 Practitioner Certification
For the working CA, CFO, Head of Tax and in-house counsel running FY 2026-27 compliance under the new Income-tax Act 2025 in force from 1 April 2026
₹9,999
inclusive of 18% GST

FY 2026-27 under the new 536-section Act. Section 393 TDS, faceless assessment.

8 modules 40 lessons ~8h Intermediate
Start with a free lesson
Cybersecurity
New
ISO/IEC 42001 AI Management System Practitioner Certification
For the Indian CIO, CISO, Head of AI, DPO and General Counsel who has to build, run and pass a first-time ISO/IEC 42001:2023 certification — written the way an advocate teaches a student, not the way an ISO PDF is translated.
₹9,999
inclusive of 18% GST

A citation-anchored, exam-backed practitioner course on ISO/IEC 42001:2023 as it actually runs for an Indian enterprise, IT services company, GCC, SaaS or fintech deploying AI in production and going for first certification by a body accredited under ANAB, UKAS or RvA (with NABCB scheme extension expected). Not a PECB / BSI five-day exam-prep flyover — this course teaches the working AI Management System (AIMS) the way a senior advocate teaches a student: what the clause actually says, what it means in practice, where teams get it wrong, what the auditor will look for, and how the India AI Governance Guidelines (November 2025) + IT Amendment Rules 2026 + SEBI 5-May-2026 AI Advisory + RBI FREE-AI Framework Report (13-Aug-2025) + DPDP Act 2023 + EU AI Act extraterritorial reach sit on top of the standard. Covers all ten clauses of ISO/IEC 42001:2023, all 38 Annex A controls across the 9 groups A.2 through A.10, Annex B implementation guidance, Annex C organisational objectives, and Annex D domain-application guidance. Includes ten downloadable working templates the student can lift straight into a live AIMS build. Written against primary sources current to 19 September 2026.

8 modules 40 lessons ~9h Intermediate
Start with a free lesson
Financial Regulatory
Soon · Q1 2027
IRDAI Compliance for Insurers
2026 cyber security guidelines plus core insurer compliance obligations.

Notify me and I'll get early access the moment this track is live. No spam, just the launch email.

Data Privacy
Soon · Q1 2027
CCPA + US State Privacy
California, Virginia, Colorado, and the 2026 wave of US state privacy laws.

Notify me and I'll get early access the moment this track is live. No spam, just the launch email.

Sector
Soon · Q1 2027
Healthcare: NABH + BMW
Hospital accreditation and biomedical waste rules for clinical operations.

Notify me and I'll get early access the moment this track is live. No spam, just the launch email.

See the full course roadmap
Compliance Domains

Every certification you need, one academy

Indian compliance is fragmented across 30+ regulators. We're building cited, exam-backed credentials for each. Here's the roadmap.

Data Privacy
  • DPDP Act 2023 Live
  • DPDP Rules 2025 / DPO Live
  • GDPR (India + DPDP) Live
Security & Risk
  • CERT-In Directions Live
  • ISO 27001 Live
  • SOC 2 Live
Financial Regulatory
  • SEBI CSCRF Live
  • RBI Cybersecurity Live
  • SEBI LODR + PIT Live
Corporate & Direct Tax
  • Companies Act / MCA Live
  • Income-tax Act 2025 Live
  • Telecom Act 2023 Live
Workplace & Sector
  • POSH Practitioner Live
  • Labour Codes Live
  • ESG + BRSR Live
Compliance Calendar

The next 18 months you have to plan for, on one page.

Selected notified dates from the primary instruments each course teaches to. Cross-check the exact clause in the underlying gazette copy before you brief your board.

SEBI · Notified

CSCRF Master Circular issued

SEBI Cybersecurity and Cyber Resilience Framework becomes the single-instrument stack replacing 9 legacy circulars.

20 Aug 2024
14 Nov 2025
MeitY · Notified

DPDP Rules 2025 notified

23 Rules and 7 Schedules published in the Gazette, triggering the 18-month transition window for Data Fiduciaries.

RBI · Notified

RBI Digital Governance Framework

Directives on IT governance, third-party risk, and outsourcing for regulated entities in the payments and lending stack.

Jul 2026
Aug 2026 · live
SEBI · Upcoming

CSCRF Technical Clarifications in force

Cyber Capability Index, Cloud Framework, and Interoperability Rules now binding on QRTAs, MFs, and portfolio managers.

MeitY · Upcoming

DPDP first compliance milestone

Significant Data Fiduciaries and consent artefact readiness expected under the phased Rules commencement.

Jan 2027
May 2027
MeitY · Upcoming

DPDP full effective date

End of the 18-month transition. Data Principal rights, Board complaint route, and monetary penalties fully live.

IRDAI · Upcoming

IRDAI 2026 cyber guidelines readiness

Insurer readiness for the 2026 Cyber Security Guidelines including CISO reporting and third-party audit cadence.

Q2 2027
Field cases

Four incidents from the last three years, and the course that maps to each.

These are publicly reported incidents at Indian companies. Each card names the regulator that would investigate today under the currently notified law, and the module of ours that walks through exactly what the incident-response obligation looks like.

Capital Markets · PII exposure May 2025

Angel One: 7.9M customer records reportedly exposed via a compromised AWS asset.

SEBI-regulated intermediary Cloud misconfiguration

The company disclosed a security event that impacted a third-party cloud service holding customer data. SEBI's CSCRF, in force since 2024, prescribes a specific incident-response playbook for regulated intermediaries including intimation to SEBI within stipulated timelines and CERT-In notification.

What our course covers: Cloud Framework obligations, M-SOC alert routing, Incident Response and BCP under CSCRF Part-C, and the DPDP breach-intimation obligation now running in parallel.
Open the SEBI CSCRF course →
Source: company disclosure and public press reporting, May 2025.
Health · Sensitive data leak Sep 2024

Star Health Insurance: threat actor allegedly leaked customer PII and medical records.

IRDAI-regulated insurer Sensitive personal data

Reports indicated large-scale exposure of health-related personal data. Under the DPDP Rules 2025 Rule 8, the Data Fiduciary must intimate the Board without delay and notify each affected Data Principal. IRDAI's 2026 Cyber Security Guidelines add a parallel CISO-reporting duty.

What our course covers: Rule 8 breach clock, breach content template, Board intimation format, Data Principal notification wording, and the DPDP + IRDAI overlay when both apply.
Open the DPDP Rules 2025 course →
Source: public press reporting, Sep 2024. Regulator response is ongoing.
Healthcare · Ransomware Nov 2022

AIIMS Delhi: multi-week ransomware outage disrupting patient services.

Critical Information Infrastructure 6-hour reporting

The attack triggered CERT-In's 6-hour incident-reporting obligation under the 28 Apr 2022 Directions. It also exposed the CII-designation question under NCIIPC and the interplay with DPDP breach notice obligations that now sit on top.

What our course covers: the 6-hour CERT-In clock, the incident categories in the Annexure, the FAQ dated 18 May 2022, and how the DPDP Rule 8 obligation stacks alongside CERT-In in a health-sector incident.
Open the CERT-In course →
Source: public press reporting, Nov-Dec 2022.
Telecom · Data breach Jun 2024

BSNL: alleged 278 GB dataset containing SIM, IMSI, and network data listed on a leak forum.

Telecom Act 2023 CERT-In Directions

Under the Telecommunications Act 2023 read with the Telecom Cybersecurity Rules 2024, licensees carry incident-reporting and security-audit obligations to DoT. The DPDP Act 2023 breach obligation applies in parallel for personal data of subscribers.

What our course covers: the intersection of DoT Cybersecurity Rules 2024, CERT-In 2022 Directions, and DPDP Rule 8 for a telecom licensee, plus the specific evidentiary logs the regulator now expects on request.
Open the CERT-In course →
Source: public press reporting, Jun 2024. Verification pending regulator confirmation.
All live certifications

Every certification we currently ship, with what each one actually gets you.

Sixteen live tracks across data protection, cyber, AI governance, capital markets, prudential regulation, workplace, and corporate law. Each card links straight into the course syllabus, exam blueprint, and citation register.

Workplace · POSH Act Live

POSH Act Practitioner: Advanced Certification.

Internal Committee Court-tested

Run an Internal Committee that holds up in court. Written for IC members, HR heads, and external members who chair Internal Committees at Indian workplaces and need the procedure to survive a writ challenge.

What the course covers: IC composition and conduct rules, complaint intake, inquiry procedure, evidentiary standards Indian courts apply on judicial review, and the annual-report obligation.
Run a POSH Internal Committee that holds up in court →
Track: POSH Act Practitioner · Advanced Certification.
Workplace · Labour Codes 2020 Live

Labour Codes 2020 Practitioner: HR, Payroll and Compliance Certification.

4 new Codes 29 old laws

Master the 4 new Labour Codes that replace 29 old central labour laws. Written for HR, payroll, and compliance leads who need to translate the Codes into policies, wage structures, and register keeping their workplace can actually operate against.

What the course covers: Code on Wages, Industrial Relations Code, Social Security Code, and Occupational Safety, Health and Working Conditions Code — each mapped to the operating rhythm HR and payroll teams already run.
Master the 4 Labour Codes replacing 29 old laws →
Track: Labour Codes 2020 Practitioner · HR, Payroll and Compliance.
Prudential · RBI Cybersecurity Live

RBI Cybersecurity Framework Practitioner Certification.

Commercial banks 2026 CSF + ITGRCA

The single practitioner track that stitches together the 2016 Cyber Security Framework, the 2023 IT Governance, Risk, Controls and Assurance Practices Directions, and the 2026 Commercial Banks Directions. Written for CISOs, IT-audit heads, and RBI-inspection response teams.

What the course covers: the CSF baseline controls, ITGRCA governance and assurance structure, and the new 2026 commercial-banks obligations — each anchored to the master circular and directions text.
Open the RBI Cybersecurity Framework Practitioner course →
Track: RBI Cybersecurity Framework Practitioner · institutional attribution.
Data protection · GDPR + DPDP Live

GDPR for Indian Companies (with DPDP Crosswalk) Practitioner.

Two regimes One programme

One programme, two regimes: GDPR and DPDP. Written for Indian companies that process EU-resident personal data alongside Indian personal data and need a single privacy programme that satisfies both supervisory frameworks without running two parallel policy stacks.

What the course covers: lawful bases and consent, Data Principal / Data Subject rights, cross-border transfer mechanisms, DPIA / DPO obligations, and the article-by-article crosswalk between GDPR and DPDP.
Read the GDPR + DPDP crosswalk syllabus →
Track: GDPR for Indian Companies with DPDP Crosswalk · Practitioner.
Corporate law · Companies Act Live

Companies Act + MCA Practitioner Certification.

MCA V3 portal Annual filing cycle

Operational, not exam prep. Written for Company Secretaries in employment, compliance managers, and finance-team members who work the MCA V3 portal and the annual filing cycle end-to-end — not for candidates preparing for a professional-body examination.

What the course covers: the MCA V3 portal filing flow, the statutory annual filing cycle, board and general meeting compliance, resolution and register keeping, and the DIN / DSC operating discipline the portal now enforces.
Open the Companies Act + MCA Practitioner course →
Track: Companies Act + MCA Practitioner Certification.
ESG · BRSR · SEBI LODR Live

ESG + BRSR Practitioner Certification.

BRSR Core assurance SSAE 3410

For the sustainability lead who has to file BRSR, not the Big 4 consultant who charges Rs 40,000 for a one-day workshop on it. Written for the top-1,000 listed company: sustainability leads, ESG assurance associates, CFO-office finance staff, Company Secretaries signing off Section 134 disclosures, internal auditors reviewing the BRSR Core evidence pack.

What the course covers: Regulation 34(2)(f) LODR filing perimeter, the nine NGRBC principles that structure Sections B and C, GHG Scope 1-2-3 accounting with CEA emission factors, BRSR Core reasonable assurance under ICAI SSAE 3410, and templates you can lift: NGRBC 9-Policy Pack, Data Owner Matrix, GHG Worksheet, Waste Register, Board Resolution, Assurance Engagement Letter, ESG Rating Agency QA Prep.
Open the ESG + BRSR Practitioner course →
Track: ESG + BRSR Practitioner Certification.
SaaS security · SOC 2 · AICPA SSAE 18 Live

SOC 2 Readiness Practitioner Certification.

SOC 2 Type II Trust Services Criteria

For the Indian SaaS founder or CISO who has to pass SOC 2 to sell to US customers, not the Big 4 consultant who charges Rs 40,000 for a one-day workshop on it. Vanta and Drata sell software; this course teaches the framework and the operating model. Bring your own platform.

What the course covers: AICPA SSAE 18 as currently effective, the 2017 Trust Services Criteria with Revised Points of Focus (2022), Common Criteria CC1 through CC9 walked one at a time, the four optional TSC categories with a decision matrix, the 12-month evidence collection cycle, a Vanta / Drata / Sprinto / Secureframe buy-vs-build lesson, RFP process for US CPA firms (Big 4 vs mid-tier vs SOC 2 boutique), and templates you can lift: Control Matrix, 10-Policy Pack, Risk Assessment Framework, Vendor Risk Register, Incident Response Plan, Evidence Collection Calendar, Auditor RFP, Engagement Letter, Bridge Letter, Trust Portal Copy.
Open the SOC 2 Readiness Practitioner course →
Track: SOC 2 Readiness Practitioner Certification.
Enterprise security · ISO 27001 · NABCB Live

ISO/IEC 27001 Lead Implementer Practitioner Certification.

ISO 27001:2022 Amd 1:2024 climate

For the Indian CISO and ISMS Manager who has to build, run and pass an ISO/IEC 27001:2022 certification with a NABCB-accredited body, not the PECB or BSI classroom trainer selling a five-day exam-prep course. Written for the operator: the internal owner of a live ISMS at an Indian enterprise, SaaS, BPO or Global Capability Centre.

What the course covers: ISO/IEC 27001:2022 with Amendment 1:2024 climate change addition to Clauses 4.1 and 4.2, all 93 Annex A controls across four themes (Organizational, People, Physical, Technological) including the 11 new controls of the 2022 revision, the ISO/IEC 27005:2022 risk methodology, NABCB accreditation with the Symbol mandate from 1 July 2026, CB selection RFP across Bureau Veritas, BSI, TÜV SÜD, DNV, SGS, IRQS, Stage 1 and Stage 2 audit preparation, the three-year surveillance cycle, ISO/IEC 27701:2025 privacy add-on with DPDP crosswalk, and templates you can lift: ISMS Scope Statement, Statement of Applicability, Risk Treatment Plan, Internal Audit Programme, Management Review Agenda, CAPA Register, CB RFP + Selection Matrix, Bridging Statement.
Open the ISO 27001 Lead Implementer course →
Track: ISO/IEC 27001 Lead Implementer Practitioner Certification.
Listed-company · SEBI LODR + PIT Live

SEBI LODR + PIT Practitioner Certification.

5th Amend 2025 Sch XII slabs

For the Company Secretary, compliance officer, IR head and audit-committee member at a BSE / NSE listed entity who has to file Reg 30 within 12 hours, run the SDD under the 2-day external UPSI rule, close the trading window at NSDL / CDSL, and pass a Reg 24A secretarial audit. Not the ICSI exam-prep tutor and not the Big 4 advisory partner selling readiness services.

What the course covers: SEBI LODR consolidated 22 January 2026 with all eight amendments 2023-2026 (Reg 30 recast, Fifth Amendment Sch XII slab-based RPT materiality with Rs 5,000 crore cap, HVDLE Rs 5,000 crore, Reg 24A Peer-Reviewed PCS + XBRL ASCR); SEBI PIT consolidated 12 March 2025 with 4 December 2024 connected-person expansion and 11 March 2025 UPSI 16-item list; SEBI Master Circular on LODR dated 30 January 2026; automated trading window PAN freeze under 21 April 2025 circular; Reg 30(11) rumour verification top-100 / top-250; Integrated Filing (Governance) from 1 March 2025; BRSR Core Data-and-Assessment-or-Assurance framework; case law Balram Garg (SC 2022), FCRPL (SAT Feb 2024), Kunal Kashyap (SAT Jan 2025), Linde India (SAT Dec 2025); case studies RHFL Aug 2024, IEX Oct 2025, IndusInd May 2025, HDFC merger July 2025, Reliance warning June 2026; 12 templates you can lift: Materiality Assessment SOP, Reg 30 Disclosure Checklist, RPT Master Register, Audit Committee RPT Approval Backup Papers, Omnibus RPT Approval Resolution, Sch XII Materiality Calculator Workbook, UPSI Log / SDD Schema, Trading Plan Template, PIT Code of Conduct, Pre-clearance Application Form, Reg 24A Secretarial Audit Engagement Letter, Compliance Officer Quarterly Calendar.
Open the SEBI LODR + PIT Practitioner course →
Track: SEBI LODR + PIT Practitioner Certification.
Telecom regulatory · Telecom Act 2023 Live

Telecommunications Act 2023 + DoT Compliance Practitioner.

2026 regime change Authorisation + BIVS + Rule 25(3)

For the CISO, DPO and regulatory affairs lead at a telco, ISP, OTT communication platform, satcom licensee or cloud CTN operator migrating from Unified Licence to the 24 June 2026 authorisation regime. Not a law-school primer, not a COAI position paper. This is the working DoT compliance stack that lets you file the migration, appoint the CTSO, respond to the 6-hour cyber incident SLA, and defend a Section 48 adjudication.

What the course covers: Telecom Act 2023 section-by-section notification map through 6 September 2026; all 13 rule sets (Digital Bharat Nidhi Rules 2024 G.S.R. 530(E), RoW Rules 2024, TCS Rules 2024 G.S.R. 720(E) with 6-hour incident SLA and CTSO appointment, CTI Rules 2024, Suspension Rules 2024, Interception Rules 2024, Adjudication and Appeal Rules 2025, TCS Amendment Rules 2025 G.S.R. 771(E) with TIUE plus MNV, Principal Telecom Services Rules 2026 G.S.R. 513(E) with 5 principal service categories, Migration Rules 2026, Network Authorisation Rules 2026 with 6 network categories plus Rule 25(3) data localisation, User Identification Rules 2026 with live biometric SIM verification); TCCCPR Second Amendment 2025; TRAI Satcom Recommendations May 2025; DoT SIM binding directive 28 November 2025 to WhatsApp, Telegram, Signal, Arattai, Snapchat, ShareChat, JioChat and Josh; Anuradha Bhasin v UOI (2020) doctrine on Section 20 shutdowns; 12 templates you can lift: Migration Application Checklist, RoW Single-Window Application, CTSO Appointment Letter, 6-Hour Cyber Incident Reporting Form, SIM Binding Compliance Report, CTI Declaration Package, Lawful Interception Nodal Officer SOP, Section 20 5-Day Committee Review Submission, BIVS SOP, TCCCPR Sender Header Registration, Satcom Authorisation Application, Adjudication Response with Section 33 Voluntary Undertaking.
Open the Telecommunications Act 2023 Practitioner course →
Track: Telecommunications Act 2023 + DoT Compliance Practitioner Certification.
Direct Tax · Income-tax Act 2025 Live

Income-tax Act 2025 Practitioner Certification.

65-year law replaced Section 393 TDS consolidated

For the working CA, CFO, Head of Tax and in-house counsel running FY 2026-27 direct-tax compliance under the new Act (536 sections, in force 1 April 2026). Not an ICAI bare-law PDF, not a Cleartax blog, not a CA-exam-prep book. This is the working direct-tax stack that lets you file ITRs under Rules 2026, respond to a Section 148 reassessment under Finance Act 2026 timelines, defend a faceless assessment, and handle Section 393 TDS across the 3-table structure.

What the course covers: Income-tax Act 2025 (Act No. 30 of 2025) 536 sections + 23 chapters + 16 schedules; ICAI tabular mapping from 1961 Act; Section 536 Repeal and Savings with 22 sub-clauses; Finance Act 2026 56 amendments (TCS LRS 5%->2%, overseas tour 20%->2%, buyback shift to shareholder, SGB secondary market taxation, HRA 50 percent cities expansion including Bengaluru/Hyderabad/Ahmedabad/Pune, reassessment 3-month court-order timeline, APA 3-month return window); Income-tax Rules 2026 (CBDT Notification 22/2026 dated 20 March 2026) with ITR-1 through ITR-7 forms, Form 3CA/3CB/3CD tax audit, Form 24Q/26Q/27Q/27EQ TDS/TCS returns; CBDT FAQ on Interplay and Transition dated 20 March 2026 (10 thematic areas); CBDT Compulsory Complete Scrutiny Guidelines FY 26-27 (F.No.225/56/2026/ITA-II dated 4 June 2026); Section 393 TDS consolidation (60+ old sections into one section with 3 tables) with substantive changes (uniform interest threshold, co-op bank exemption removed, advertising as professional service, rent expanded to factory buildings); Section 394 TCS with Finance Act 2026 rate rationalisation; Tiger Global International Holdings v UOI (SC 15 January 2026, 2026 INSC 60) on treaty abuse in indirect transfer; DTAA + MLI Principal Purpose Test; Transfer Pricing framework; APA under Finance Act 2026; faceless assessment via NFAC; 12 templates: FY 26-27 Compliance Calendar, Tax Audit Report Pack, TDS Master Register (Section 393 Tables A/B/C), TDS Quarterly Return Preparation Checklist, Advance Tax Calculator, Capital Gains Worksheet (post buyback shift + post SGB change), Faceless Assessment Response, Reassessment Defence (with FA 2026 3-month timeline), HRA + Salary TDS Calculator (with expanded 50 percent cities), Transfer Pricing Documentation Master, Section 536 Transitional Provisions Checklist, Litigation and Appeals Response Template.
Open the Income-tax Act 2025 Practitioner course →
Track: Income-tax Act 2025 Practitioner Certification.
AI governance · ISO 42001 · MeitY Guidelines Live

ISO/IEC 42001 AI Management System Practitioner Certification.

ISO/IEC 42001:2023 India AI Guidelines + SGI Rules 2026

For the Indian CIO, CISO, Head of AI, DPO and General Counsel who has to build, run and pass a first-time ISO/IEC 42001 certification of an AI Management System — not the PECB or BSI classroom trainer selling a five-day exam-prep flyover, and not the Rs 56,999 self-paced Lead Implementer badge from Mindset Cyber. Written the way a senior advocate teaches a student in easy Indian English, not the way an ISO PDF is translated.

What the course covers: ISO/IEC 42001:2023 read end-to-end (10 clauses + all 38 Annex A controls across the 9 groups A.2 through A.10) with the same discipline used for our SOC 2 and ISO 27001 courses; ISO/IEC 23894:2023 AI risk methodology; ISO/IEC 42005:2025 AI Impact Assessment methodology walked with a worked NBFC credit-underwriting example; ISO/IEC 22989:2022 terminology; certification body selection RFP across A-LIGN, BSI, Bureau Veritas, DNV, Schellman, SGS, TÜV SÜD and TÜV Nord (NABCB scheme extension pending as of 19 September 2026); Stage 1 documentation review and Stage 2 operating-effectiveness audit; three-year sustain cycle with surveillance and recertification. India overlay: India AI Governance Guidelines (MeitY, November 2025) seven sutras + six pillars with Annexure 6 recommending ISO 42001; IT Amendment Rules 2026 SGI obligations under Rule 3(1)(v) with 2-3 hour deepfake takedown; SEBI Circular 5 May 2026 on advanced AI vulnerability detection tools and the Cyber-suraksha.ai task force; RBI FREE-AI Committee Report of 13 August 2025 (Bhattacharyya Committee, seven sutras, 26 recommendations, six pillars); DPDP Act 2023 intersection (no Article 22 equivalent, no right to explanation); EU AI Act 2024/1689 extraterritorial reach through 2 December 2027 Annex III and 2 August 2028 Annex I; NIST AI RMF 1.0 official crosswalk mapping 71 categories to ISO 42001. 10 templates you can lift: AI System Inventory Register, AI Policy (Clause 5.2 + A.2.2 compliant), AI Impact Assessment template mapping to A.5, AI Risk Assessment Methodology aligned to ISO 23894, Statement of Applicability across all 38 controls, AIMS Scope Statement, Internal Audit Programme, Management Review Agenda + Minutes, AI Incident Response Playbook, DPDP + ISO 42001 + NIST AI RMF + EU AI Act crosswalk matrix.
Open the ISO 42001 AI Management System Practitioner course →
Track: ISO/IEC 42001 AI Management System Practitioner Certification.
Data protection · DPDP Act 2023 Live

DPDP Act 2023: Professional Certification.

Flagship Rules 2025

India's Digital Personal Data Protection Act 2023 and DPDP Rules 2025, in one professional certification. The flagship track most learners start with when the deciding factor is a working DPDP compliance programme rather than a headline-grabbing certificate.

What the course covers: the Act text, the Rules 2025 operationalisation, consent architecture, Data Principal rights, breach obligations, and the Data Fiduciary / Consent Manager / SDF distinctions the Board applies.
Open the flagship DPDP Act 2023 course →
Track: DPDP Act 2023 Professional Certification.
Data protection · DPDP Rules 2025 Live

DPDP Rules 2025 Deep Dive / DPO Practitioner.

23 Rules Audit-ready

The 23 Rules that make you audit-ready by 13 May 2027. Written for Data Protection Officers, compliance leads, and outside counsel who need Rule-by-Rule implementation depth beyond a headline reading of the Act.

What the course covers: each of the 23 notified Rules mapped to the operational artefact it produces — policies, notices, registers, breach templates, and the DPO reporting line the Rules now formalise.
Open the DPDP Rules 2025 Deep Dive course →
Track: DPDP Rules 2025 Deep Dive / DPO Practitioner.
Cyber · CERT-In Directions Live

CERT-In Directions Practitioner Certification.

6-hour rule Annexure I

The 6-hour rule, decoded. Written for incident-response leads, SOC managers, and CISOs at organisations that fall within the CERT-In Directions and need a defensible reporting workflow the moment a qualifying incident is detected.

What the course covers: the 28 April 2022 Directions, the Annexure incident categories, the 18 May 2022 FAQ, log-retention and KYC obligations for intermediaries, and the interplay with DPDP Rule 8 breach intimation.
Open the CERT-In Directions Practitioner course →
Track: CERT-In Directions Practitioner Certification.
Capital markets · SEBI CSCRF Live

SEBI CSCRF Practitioner Certification.

Cyber Capability Index M-SOC

Cyber Capability Index plus the M-SOC decision. Written for SEBI-regulated intermediaries and their compliance officers, IT heads, and outsourced-SOC vendors who need to translate the CSCRF into an audit-ready programme.

What the course covers: CSCRF Parts A through D, the Cyber Capability Index scoring, the M-SOC vs self-SOC decision, incident response and BCP, and the specific intimation timelines SEBI expects.
Open the SEBI CSCRF Practitioner course →
Track: SEBI CSCRF Practitioner Certification.
How it works

Three steps to a verifiable certification

1
Enrol with just your email

No password. Click the magic link and the first lesson opens immediately, free.

2
Learn, then pass the exam

Self-paced lessons. Every claim cited to the actual Act, Section, or Rule. Final exam drawn from a question pool.

3
Get a verifiable certificate

A certificate with a public verify URL. Add it to LinkedIn. Recruiters can validate it in one click.

Pay only when you continue past lesson one. Lifetime access.

Audience

Built for the people who run compliance

Compliance officers & DPOs

Operationalise the law across DPDP, POSH, CERT-In and whichever regulators your business answers to.

In-house counsel & CS

Lawyers and company secretaries advising the Board on multi-regulator obligations and risk exposure.

Risk & audit professionals

Audit, ISO, SOC 2, and internal control teams translating regulatory text into policy and evidence.

Why dcomply Academy

India's only multi-regulator certification body

Most compliance training out there is one-off, paraphrased, and expires the moment a regulator updates. We do it differently.

01
Cited verbatim

Every claim links back to the specific Act, Section, or Rule. No reworded opinion. Your reference library is built in.

02
Triple-AI cross-checked

Each lesson is validated against the Gazette text by three independent AI passes before students see it.

03
Verifiable cert

Pass the exam, receive a certificate with a public verify URL. Recruiters can validate authenticity in one click.

04
Backed by a live SaaS

dcomply.in is an active compliance platform used by clients. The academy reflects what real operators face in production.

Signed & verified

Every course carries a named author or a named practice.

Cyber Law and data-protection tracks are authored by counsel with courtroom practice in the field. Finance-sector regulation tracks are attributed to the dcomply Cyber Practice because they are institutional in nature. Either way, the person or team standing behind the content is on the record.

JP
Advocate Joginder Poswal
DPDP · Cyber Law · Corporate Compliance

Practising advocate in the field of data-protection, cyber-law, and corporate compliance. Authors dcomply Academy courses in the Cyber Law practice area, working directly from the primary text of the Act, Rules, and notified circulars. Verifies each lesson against the gazette copy before it is published.

DC
dcomply Cyber Practice
SEBI · RBI · IRDAI · Sectoral

Institutional attribution for finance-sector and sectoral-regulator courses. These are capital-markets and prudential regulation tracks written by the dcomply Cyber Practice, cross-checked against the current master circulars and technical clarifications published by SEBI, RBI, and IRDAI. Verifier of record on every lesson is named on the course Trust page.

FAQ

Frequently asked

No. Sixteen certifications are live: DPDP Act 2023 (free), DPDP Rules 2025, POSH, CERT-In, SEBI CSCRF, Labour Codes, RBI Cybersecurity, GDPR India, Companies Act + MCA, ESG + BRSR, SOC 2, ISO 27001, ISO 42001 AI Management System, SEBI LODR + PIT, Telecom Act 2023 and Income-tax Act 2025. Sixty-plus more including CCPA, IRDAI, Healthcare NABH + BMW and E-Commerce Rules are on the roadmap.
The DPDP Act 2023 Professional Certification is fully free. On every other course the first lesson is free with no payment; the full course, final exam and certificate are paid. All purchases include lifetime access.
Each certificate is issued by dcomply Academy, backed by Decipher Consultancy, and carries a unique public verification URL. They are industry certifications, not government credentials, and are designed to give recruiters and clients a one-click way to verify authenticity.
No. Courses are written for practitioners. They assume no prior legal training and walk through the law from first principles. Lawyers still find value in the verbatim citation structure.
Each course ends with a multi-choice final exam drawn from a question pool. Questions are randomised, so retakes are not identical. You can retake if you fail, with no penalty.
Compliance is operational. Reading a blog doesn't tell your CFO you can run a DPIA or a POSH inquiry. A structured, exam-backed credential does, and a verifiable certificate gives the credential weight.
2026 Free first lesson · 16 tracks live

Start with a free lesson

Every course opens with a free first lesson. Enrol with your email, read it, then decide. Lifetime access on every purchase, plus early access to each new track as we ship it.

Browse courses