


PRIVACY AFTER HOURS | EDITION 03
DPDP Has Entered the AI Chat
A closed-door checkpoint on building AI systems that hold up under DPDP.
Bengaluru | 28th July, 2026 | 50+ Senior Leaders
AI Governance and DPDP Compliance Is
A Continuous Exercise

Privacy After Hours Edition 3 brought together leaders to confront one hard truth: DPDP compliance and AI governance can no longer be treated as separate conversations.
Conversations across panels didn't shy away from addressing some potent questions: What does privacy by design actually look like inside an AI system? What happens when the Data Protection Board actually comes calling? How do you keep AI and data governance enterprise-ready while the risks keep evolving?
With the DPDP deadline closing in, the message was clear: readiness isn't a checklist you complete once, it's a discipline you run continuously, across AI inventories, DPIAs, and vendor oversight, so every decision stays traceable and every system stays accountable.

What We Covered
Unlocking AI Responsibly
A cross-industry panel featuring AWS, Sarvam, Zee Entertainment, and the Centre for Data for Public Good discussed building AI systems that respect privacy by design.
Inside a DPB Investigation
An interactive simulation walked enterprises through exactly what to expect when the Data Protection Board comes calling.
Future-Ready Privacy & Data Governance
Industry experts from Zepto, CRED, and BigBasket shared how to stay ahead of AI and cyber risk while keeping governance enterprise-ready.
Who Was In The Room
Senior leaders across:
Privacy
Legal
Security
Risk
Product
Compliance
Business Operations
Industries represented:
Banking & Lending
Fintech
Insurance
Retail & Digital
Enterprise Tech
Glimpses from Privacy After Hours Edition 3









Hear From the Attendees of Edition 3
The organisation driving an AI project is responsible for the data if it is being misused by AI. In the age of AI, privacy is no longer a luxury; it is a hygiene factor.
DPDP is already an important programme for organisations, but with AI, the conversation becomes even more complex. It's about how you manage access to data and, more importantly, how you build policies for employees around accessing and using data with AI.
Before the law comes into effect, organisations need to sit back and assess what they need to do based on their industry, identify the gaps, and understand what needs to be built from a technology perspective. This can't be done by the legal team alone; it needs a cumulative effort from all teams across the organisation. With DPDP entering the AI chat, it is really helpful not just for us but for teams across the organisation as well. AI can help answer questions and guide teams on what needs to be done, but organisations still need to understand their own requirements and prepare for what the law demands.
People are increasingly using AI tools to get faster responses, and in doing so, they may end up putting private or organisational data into these tools without fully understanding the implications. We need to educate organisations and employees about what data should not be shared with AI, because critical information could become public or potentially be used to train AI systems.


Key Takeaways from Privacy After Hours Edition 3
A quick recap of the key insights, conversations, and learnings from our third edition - exploring how organisations can navigate privacy, AI, and data governance in an evolving regulatory landscape.







