India's compliance
certification academy.
Industry certifications across DPDP, POSH, RBI, SEBI, CERT-In, ESG + BRSR, SOC 2, Companies Act, Labour Codes, GDPR India and more compliance domains. Cited verbatim to the law. Backed by Decipher Consultancy and the dcomply SaaS platform.
Certified Compliance Professional
- Every claim cited to the Act/Rule
- Verifiable certificate per course
- Publicly verifiable certificate URL
Learners in every metro and every regulator's jurisdiction.
Compliance officers, DPOs, IC members and in-house counsel from 12 Indian cities are already enrolled. Your certificate is recognisable coast-to-coast.
A certificate your employer can verify in one click.
Every dcomply Academy cert ships with a unique public verification URL and QR. Add it to LinkedIn. Attach it to a proposal. Recruiters and clients confirm authenticity without calling us.
- 1
Publicly verifiable
Every cert has a
/verify/DCERT-XXXXpage. No login required. - 2
Numbered and dated
Every certificate carries a unique registration number (DCA/2026/NNNNN) and issue date. Never re-issued.
- 3
Backed by Decipher Consultancy
Issued by dcomply Academy, backed by a live compliance consultancy that answers audits.
India · Compliance Certifications
This is to certify that
Priya Sharma
has successfully completed the certification programme
DPDP Act 2023 · Professional Certification
based on the Digital Personal Data Protection Act, 2023 and DPDP Rules, 2025, notified by MeitY. Passed the final examination with distinction. Certificate valid in perpetuity, verifiable at academy.dcomply.in/verify.
Every Indian regulator, one academy.
Indian compliance is fragmented across 30+ regulators. We build cited, exam-backed credentials for each. Below: the authorities behind every live and upcoming course.
Compare us to where you were going to learn this instead.
An honest side-by-side against the four alternatives Indian compliance professionals typically pick between. We built the table below the way we would want a competitor's table to read: verifiable, dated, and not shy about where they win.
| dcomply AcademySelf-paced, cited | DSCI DCPP / DCPLAData Security Council of India | NISM CertificationsSEBI-affiliated body | Big 4 in-houseNot sold to individuals | |
|---|---|---|---|---|
| Cited to primary law | Verbatim, every claim | Referenced, not verbatim | Referenced, not verbatim | Varies by engagement |
| Public Trust page per course | Yes, per course | No | No | Internal only |
| Update SLA after amendment | 7 days, published | Not published | Annual revision cycle | Ad-hoc |
| Named author or verifier | Named + credentialled | Institutional only | Institutional only | Anonymous |
| Free first lesson | Every paid course | Paid brochure only | No | N/A |
| Verifiable certificate URL | Public verify URL | PDF only | NISM registry | Attendance letter only |
| Price (single practitioner) | ₹4,999 – ₹9,999 | ₹30,000+ (DCPLA) | ₹1,500 – ₹9,000 | Not sold externally |
| Multi-regulator coverage | One academy, 80+ tracks planned | Data privacy focus | SEBI / capital markets | Engagement-specific |
Comparison compiled from publicly-listed course pages and syllabi, as of Aug 2026. Corrections welcome at [email protected].
Start learning
Sixteen citation-anchored, exam-backed practitioner certifications across data protection, cyber, AI governance, finance-sector, corporate, workplace, and direct-tax law. Each card links straight into the syllabus, exam blueprint, and citation register.
Run an Internal Committee that survives a writ. Includes the 2023 to 2025 Supreme Court rulings.
Start with a free lessonThe 6-hour rule, 180-day logs, and the parallel-clocks runbook.
Start with a free lessonFour Codes, 29 old laws. Payroll, registers, returns, inspections.
Start with a free lessonAll 23 Rules and 7 Schedules, rule by rule. Audit-ready before 13 May 2027.
Start with a free lessonCCI scoring, M-SOC decision, auditor evidence pack, board deck.
Start with a free lessonEvery RBI cyber instrument 2016 to 2026 as one regime, with the DAKSH 6-hour template.
Start with a free lessonRun both regimes from one desk. Article-by-article crosswalk.
Start with a free lessonMCA V3, annual filing cycle, CSR, RPTs, adjudication. Operational, not exam prep.
Start with a free lessonFile BRSR Core with assurance. Scope 1-2-3, NGRBC policies, XBRL.
Start with a free lessonPass a first Type II to sell to US customers. Control matrix and 10-policy pack included.
Start with a free lessonBuild and certify an ISMS with a NABCB body. All 93 controls mapped.
Start with a free lessonReg 30 clocks, SDD, trading window, Reg 24A audit. 12 templates.
Start with a free lessonMigrate from UL to the 2026 authorisation regime. CTSO, 6-hour SLA, BIVS.
Start with a free lessonFY 2026-27 under the new 536-section Act. Section 393 TDS, faceless assessment.
Start with a free lessonA citation-anchored, exam-backed practitioner course on ISO/IEC 42001:2023 as it actually runs for an Indian enterprise, IT services company, GCC, SaaS or fintech deploying AI in production and going for first certification by a body accredited under ANAB, UKAS or RvA (with NABCB scheme extension expected). Not a PECB / BSI five-day exam-prep flyover — this course teaches the working AI Management System (AIMS) the way a senior advocate teaches a student: what the clause actually says, what it means in practice, where teams get it wrong, what the auditor will look for, and how the India AI Governance Guidelines (November 2025) + IT Amendment Rules 2026 + SEBI 5-May-2026 AI Advisory + RBI FREE-AI Framework Report (13-Aug-2025) + DPDP Act 2023 + EU AI Act extraterritorial reach sit on top of the standard. Covers all ten clauses of ISO/IEC 42001:2023, all 38 Annex A controls across the 9 groups A.2 through A.10, Annex B implementation guidance, Annex C organisational objectives, and Annex D domain-application guidance. Includes ten downloadable working templates the student can lift straight into a live AIMS build. Written against primary sources current to 19 September 2026.
Start with a free lessonNotify me and I'll get early access the moment this track is live. No spam, just the launch email.
Notify me and I'll get early access the moment this track is live. No spam, just the launch email.
Notify me and I'll get early access the moment this track is live. No spam, just the launch email.
Every certification you need, one academy
Indian compliance is fragmented across 30+ regulators. We're building cited, exam-backed credentials for each. Here's the roadmap.
Data Privacy
- DPDP Act 2023 Live
- DPDP Rules 2025 / DPO Live
- GDPR (India + DPDP) Live
Security & Risk
- CERT-In Directions Live
- ISO 27001 Live
- SOC 2 Live
Financial Regulatory
- SEBI CSCRF Live
- RBI Cybersecurity Live
- SEBI LODR + PIT Live
Corporate & Direct Tax
- Companies Act / MCA Live
- Income-tax Act 2025 Live
- Telecom Act 2023 Live
Workplace & Sector
- POSH Practitioner Live
- Labour Codes Live
- ESG + BRSR Live
The next 18 months you have to plan for, on one page.
Selected notified dates from the primary instruments each course teaches to. Cross-check the exact clause in the underlying gazette copy before you brief your board.
CSCRF Master Circular issued
SEBI Cybersecurity and Cyber Resilience Framework becomes the single-instrument stack replacing 9 legacy circulars.
DPDP Rules 2025 notified
23 Rules and 7 Schedules published in the Gazette, triggering the 18-month transition window for Data Fiduciaries.
RBI Digital Governance Framework
Directives on IT governance, third-party risk, and outsourcing for regulated entities in the payments and lending stack.
CSCRF Technical Clarifications in force
Cyber Capability Index, Cloud Framework, and Interoperability Rules now binding on QRTAs, MFs, and portfolio managers.
DPDP first compliance milestone
Significant Data Fiduciaries and consent artefact readiness expected under the phased Rules commencement.
DPDP full effective date
End of the 18-month transition. Data Principal rights, Board complaint route, and monetary penalties fully live.
IRDAI 2026 cyber guidelines readiness
Insurer readiness for the 2026 Cyber Security Guidelines including CISO reporting and third-party audit cadence.
Four incidents from the last three years, and the course that maps to each.
These are publicly reported incidents at Indian companies. Each card names the regulator that would investigate today under the currently notified law, and the module of ours that walks through exactly what the incident-response obligation looks like.
Angel One: 7.9M customer records reportedly exposed via a compromised AWS asset.
The company disclosed a security event that impacted a third-party cloud service holding customer data. SEBI's CSCRF, in force since 2024, prescribes a specific incident-response playbook for regulated intermediaries including intimation to SEBI within stipulated timelines and CERT-In notification.
Star Health Insurance: threat actor allegedly leaked customer PII and medical records.
Reports indicated large-scale exposure of health-related personal data. Under the DPDP Rules 2025 Rule 8, the Data Fiduciary must intimate the Board without delay and notify each affected Data Principal. IRDAI's 2026 Cyber Security Guidelines add a parallel CISO-reporting duty.
AIIMS Delhi: multi-week ransomware outage disrupting patient services.
The attack triggered CERT-In's 6-hour incident-reporting obligation under the 28 Apr 2022 Directions. It also exposed the CII-designation question under NCIIPC and the interplay with DPDP breach notice obligations that now sit on top.
BSNL: alleged 278 GB dataset containing SIM, IMSI, and network data listed on a leak forum.
Under the Telecommunications Act 2023 read with the Telecom Cybersecurity Rules 2024, licensees carry incident-reporting and security-audit obligations to DoT. The DPDP Act 2023 breach obligation applies in parallel for personal data of subscribers.
Every certification we currently ship, with what each one actually gets you.
Sixteen live tracks across data protection, cyber, AI governance, capital markets, prudential regulation, workplace, and corporate law. Each card links straight into the course syllabus, exam blueprint, and citation register.
POSH Act Practitioner: Advanced Certification.
Run an Internal Committee that holds up in court. Written for IC members, HR heads, and external members who chair Internal Committees at Indian workplaces and need the procedure to survive a writ challenge.
Labour Codes 2020 Practitioner: HR, Payroll and Compliance Certification.
Master the 4 new Labour Codes that replace 29 old central labour laws. Written for HR, payroll, and compliance leads who need to translate the Codes into policies, wage structures, and register keeping their workplace can actually operate against.
RBI Cybersecurity Framework Practitioner Certification.
The single practitioner track that stitches together the 2016 Cyber Security Framework, the 2023 IT Governance, Risk, Controls and Assurance Practices Directions, and the 2026 Commercial Banks Directions. Written for CISOs, IT-audit heads, and RBI-inspection response teams.
GDPR for Indian Companies (with DPDP Crosswalk) Practitioner.
One programme, two regimes: GDPR and DPDP. Written for Indian companies that process EU-resident personal data alongside Indian personal data and need a single privacy programme that satisfies both supervisory frameworks without running two parallel policy stacks.
Companies Act + MCA Practitioner Certification.
Operational, not exam prep. Written for Company Secretaries in employment, compliance managers, and finance-team members who work the MCA V3 portal and the annual filing cycle end-to-end — not for candidates preparing for a professional-body examination.
ESG + BRSR Practitioner Certification.
For the sustainability lead who has to file BRSR, not the Big 4 consultant who charges Rs 40,000 for a one-day workshop on it. Written for the top-1,000 listed company: sustainability leads, ESG assurance associates, CFO-office finance staff, Company Secretaries signing off Section 134 disclosures, internal auditors reviewing the BRSR Core evidence pack.
SOC 2 Readiness Practitioner Certification.
For the Indian SaaS founder or CISO who has to pass SOC 2 to sell to US customers, not the Big 4 consultant who charges Rs 40,000 for a one-day workshop on it. Vanta and Drata sell software; this course teaches the framework and the operating model. Bring your own platform.
ISO/IEC 27001 Lead Implementer Practitioner Certification.
For the Indian CISO and ISMS Manager who has to build, run and pass an ISO/IEC 27001:2022 certification with a NABCB-accredited body, not the PECB or BSI classroom trainer selling a five-day exam-prep course. Written for the operator: the internal owner of a live ISMS at an Indian enterprise, SaaS, BPO or Global Capability Centre.
SEBI LODR + PIT Practitioner Certification.
For the Company Secretary, compliance officer, IR head and audit-committee member at a BSE / NSE listed entity who has to file Reg 30 within 12 hours, run the SDD under the 2-day external UPSI rule, close the trading window at NSDL / CDSL, and pass a Reg 24A secretarial audit. Not the ICSI exam-prep tutor and not the Big 4 advisory partner selling readiness services.
Telecommunications Act 2023 + DoT Compliance Practitioner.
For the CISO, DPO and regulatory affairs lead at a telco, ISP, OTT communication platform, satcom licensee or cloud CTN operator migrating from Unified Licence to the 24 June 2026 authorisation regime. Not a law-school primer, not a COAI position paper. This is the working DoT compliance stack that lets you file the migration, appoint the CTSO, respond to the 6-hour cyber incident SLA, and defend a Section 48 adjudication.
Income-tax Act 2025 Practitioner Certification.
For the working CA, CFO, Head of Tax and in-house counsel running FY 2026-27 direct-tax compliance under the new Act (536 sections, in force 1 April 2026). Not an ICAI bare-law PDF, not a Cleartax blog, not a CA-exam-prep book. This is the working direct-tax stack that lets you file ITRs under Rules 2026, respond to a Section 148 reassessment under Finance Act 2026 timelines, defend a faceless assessment, and handle Section 393 TDS across the 3-table structure.
ISO/IEC 42001 AI Management System Practitioner Certification.
For the Indian CIO, CISO, Head of AI, DPO and General Counsel who has to build, run and pass a first-time ISO/IEC 42001 certification of an AI Management System — not the PECB or BSI classroom trainer selling a five-day exam-prep flyover, and not the Rs 56,999 self-paced Lead Implementer badge from Mindset Cyber. Written the way a senior advocate teaches a student in easy Indian English, not the way an ISO PDF is translated.
DPDP Act 2023: Professional Certification.
India's Digital Personal Data Protection Act 2023 and DPDP Rules 2025, in one professional certification. The flagship track most learners start with when the deciding factor is a working DPDP compliance programme rather than a headline-grabbing certificate.
DPDP Rules 2025 Deep Dive / DPO Practitioner.
The 23 Rules that make you audit-ready by 13 May 2027. Written for Data Protection Officers, compliance leads, and outside counsel who need Rule-by-Rule implementation depth beyond a headline reading of the Act.
CERT-In Directions Practitioner Certification.
The 6-hour rule, decoded. Written for incident-response leads, SOC managers, and CISOs at organisations that fall within the CERT-In Directions and need a defensible reporting workflow the moment a qualifying incident is detected.
SEBI CSCRF Practitioner Certification.
Cyber Capability Index plus the M-SOC decision. Written for SEBI-regulated intermediaries and their compliance officers, IT heads, and outsourced-SOC vendors who need to translate the CSCRF into an audit-ready programme.
Three steps to a verifiable certification
Enrol with just your email
No password. Click the magic link and the first lesson opens immediately, free.
Learn, then pass the exam
Self-paced lessons. Every claim cited to the actual Act, Section, or Rule. Final exam drawn from a question pool.
Get a verifiable certificate
A certificate with a public verify URL. Add it to LinkedIn. Recruiters can validate it in one click.
Pay only when you continue past lesson one. Lifetime access.
Built for the people who run compliance
Compliance officers & DPOs
Operationalise the law across DPDP, POSH, CERT-In and whichever regulators your business answers to.
In-house counsel & CS
Lawyers and company secretaries advising the Board on multi-regulator obligations and risk exposure.
Risk & audit professionals
Audit, ISO, SOC 2, and internal control teams translating regulatory text into policy and evidence.
India's only multi-regulator certification body
Most compliance training out there is one-off, paraphrased, and expires the moment a regulator updates. We do it differently.
Cited verbatim
Every claim links back to the specific Act, Section, or Rule. No reworded opinion. Your reference library is built in.
Triple-AI cross-checked
Each lesson is validated against the Gazette text by three independent AI passes before students see it.
Verifiable cert
Pass the exam, receive a certificate with a public verify URL. Recruiters can validate authenticity in one click.
Backed by a live SaaS
dcomply.in is an active compliance platform used by clients. The academy reflects what real operators face in production.
Frequently asked
Start with a free lesson
Every course opens with a free first lesson. Enrol with your email, read it, then decide. Lifetime access on every purchase, plus early access to each new track as we ship it.
Browse courses