NEW DELHI: The Ministry of Electronics and IT (MeitY) released draft documents on data anonymisation and mobile security for the government’s e-governance projects on Tuesday. The documents are available for public comment until September 21st.
The data anonymisation document includes guidelines for all stakeholders involved in the processing of personal data and subtypes via e-governance projects.
However, the department added that private entities processing personal information could also refer to the guidelines.
Data generated by e-governance projects such as the National Health Mission, Cowin vaccination, Aarogya Setu and healthcare data, Smart cities, and Payment ecosystem (Account Aggregators) is massive. The draft rules are intended to establish the best practises for processing this data.
The Standardisation Testing Quality Certification (STQC) Directorate and the Centre for Development of Advanced Computing (C-DAC), Pune, were commissioned in February 2021 to develop standards and guidelines for e-Governance.
To achieve mobile security goals such as confidentiality, integrity, authentication, accountability, and so on, the Mobile Security Guidelines (MSG) have been proposed. Mobile security is divided into three categories: mobile device security, mobile communication security, and mobile services security.
In addition, the document defines three types of mobile security controls: policy-based measures, technology-based measures, and user-oriented measures. These would aid in the protection of privacy, sensitive data, and transaction security.
The proposed guidelines are intended for mobile ecosystem stakeholders such as device manufacturers, application developers, network operators, mobile service providers, security testing organisations, and mobile phone users.
The draft also recommends best practises for mobile security testing and application vetting. It has established security levels for entities as well as technological components. According to the document, identifying an entity’s or component’s current security level can help measure the gap and improve toward higher security levels.
Follow The420.in on